Skip to main content

Federated Authorization for Managed Data Sharing: Experiences from the ImPACT Project

Publication ,  Conference
Chase, JS; Baldin, I
Published in: Proceedings - International Conference on Computer Communications and Networks, ICCCN
July 1, 2021

This paper presents the rationale and design of the trust plane for ImPACT, a federated platform for managed sharing of restricted data. Key elements of the architecture include Web-based notaries for credential establishment based on declarative templates for Data Usage Agreements, a federated authorization pipeline, integration of popular services for identity management, and programmable policy based on a logical trust model with a repository of linked certificates. We show how these elements of the trust plane work in concert, and set the ideas in context with principles of federated authorization. A focus and contribution of the paper is to explore limitations of the resulting architecture and tensions among competing design goals. We also point the way toward future extensions, including policy-checked data access from cloud-hosted data enclaves with enhanced defenses against data leakage and exfiltration.

Duke Scholars

Published In

Proceedings - International Conference on Computer Communications and Networks, ICCCN

DOI

ISSN

1095-2055

ISBN

9780738113302

Publication Date

July 1, 2021

Volume

2021-July
 

Citation

APA
Chicago
ICMJE
MLA
NLM
Chase, J. S., & Baldin, I. (2021). Federated Authorization for Managed Data Sharing: Experiences from the ImPACT Project. In Proceedings - International Conference on Computer Communications and Networks, ICCCN (Vol. 2021-July). https://doi.org/10.1109/ICCCN52240.2021.9522208
Chase, J. S., and I. Baldin. “Federated Authorization for Managed Data Sharing: Experiences from the ImPACT Project.” In Proceedings - International Conference on Computer Communications and Networks, ICCCN, Vol. 2021-July, 2021. https://doi.org/10.1109/ICCCN52240.2021.9522208.
Chase JS, Baldin I. Federated Authorization for Managed Data Sharing: Experiences from the ImPACT Project. In: Proceedings - International Conference on Computer Communications and Networks, ICCCN. 2021.
Chase, J. S., and I. Baldin. “Federated Authorization for Managed Data Sharing: Experiences from the ImPACT Project.” Proceedings - International Conference on Computer Communications and Networks, ICCCN, vol. 2021-July, 2021. Scopus, doi:10.1109/ICCCN52240.2021.9522208.
Chase JS, Baldin I. Federated Authorization for Managed Data Sharing: Experiences from the ImPACT Project. Proceedings - International Conference on Computer Communications and Networks, ICCCN. 2021.

Published In

Proceedings - International Conference on Computer Communications and Networks, ICCCN

DOI

ISSN

1095-2055

ISBN

9780738113302

Publication Date

July 1, 2021

Volume

2021-July