Skip to main content

A Taxonomy of Trust Models for Attribute Assurance in Identity Management

  • Conference paper
  • First Online:
Book cover Web, Artificial Intelligence and Network Applications (WAINA 2020)

Abstract

Attribute providers are trusted third parties in decentralized and federated identity management patterns. Service providers evaluate trust in delivered attributes with attribute assurance techniques because user properties are highly important for service provisioning. Levels of assurance define verification measures forming common ground for trust in attributes delivered by a particular provider. Beyond that, trust models that are tailored to attribute assurance in identity management enable flexible trust decisions that consider multiple attribute providers. Over time, various trust schemes for attribute assurance that address different characteristics have been proposed. We present existing models in this domain and analyze them with regard to trust scale, trust applicability, attribute aggregation, trust composition and centralization of trust. Based on the results, we create a taxonomy to arrange the trust models. Supported by this classification scheme, we devise gaps in the model coverage and propose associated future research directions.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 229.00
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 299.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

References

  1. Grüner, A., Mühle, A., Gayvoronskaya, T., Meinel, C.: A comparative analysis of trust requirements in decentralized identity management. In: Proceedings of the International Conference on Advanced Information Networking and Applications. Springer (2019)

    Google Scholar 

  2. Grassi, P.A., Garcia, M.E., Fenton, J.L.: NIST special publication 800-63. Digital identity guidelines (2017)

    Google Scholar 

  3. Grandison, T., Sloman, M.: A survey of trust in internet applications. Commun. Surv. Tutor. 3, 2–16 (2000)

    Article  Google Scholar 

  4. Sabater, J., Sierra, C.: Review on computational trust and reputation models. Artif. Intell. Rev. 24, 33–60 (2005)

    Article  MATH  Google Scholar 

  5. Ruohomaa, S., Kutvonen, L.: Trust management survey. In: Trust Management. Springer (2005)

    Google Scholar 

  6. Jøsang, A., Ismail, R., Boyd, C.: A survey of trust and reputation systems for online service provision. Decis. Support Syst. 43, 618–644 (2007)

    Article  Google Scholar 

  7. Yan, Z., Zhang, P., Vasilakos, A.: A survey on trust management for internet of things. J. Netw. Comput. Appl. 42, 120–134 (2014)

    Article  Google Scholar 

  8. Cho, J.-H., Chan, K., Adali, S.: A survey on trust modeling. ACM Comput. Surv. 48, 1–40 (2015)

    Article  Google Scholar 

  9. Perlman, R.: An overview of PKI trust models. IEEE Network 13, 38–43 (1999)

    Article  Google Scholar 

  10. Jøsang, A.: PKI trust models. In: Theory and Practice of Cryptography Solutions for Secure Information Systems (2013)

    Google Scholar 

  11. Internet Engineering Task Force. Rfc 5280. internet x.509 public key infrastructure certificate and certificate revocation list (crl) profile (2008). https://tools.ietf.org/html/rfc5280. Accessed 25 Aug 2019

  12. Zimmermann, P.R.: The Official PGP User’s Guide. MIT Press, Cambridge (1995)

    Google Scholar 

  13. Abdul-Rahman, A.: The pgp trust model. J. Electron. Commer. 10, 27–31 (1997)

    Google Scholar 

  14. Jonczy, J., Wüthrich, M., Haenni, R.: A probabilistic trust model for GnuPG. In: 23C3, 23rd Chaos Communication Congress (2006)

    Google Scholar 

  15. Thomas, I., Meinel, C.: Enhancing claim-based identity management by adding a credibility level to the notion of claims. In: 2009 IEEE International Conference on Services Computing (2009)

    Google Scholar 

  16. Thomas, I., Meinel, C.: An attribute assurance framework to define and match trust in identity attributes. In: Proceedings of the 2011 IEEE International Conference on Web Services. IEEE (2011)

    Google Scholar 

  17. Mohan, A., Blough, D.M.: Attributetrust a framework for evaluating trust in aggregated attributes via a reputation system. In: Proceedings of 6th Annual Conference on Privacy, Security and Trust, PST 2008 (2008)

    Google Scholar 

  18. Huang, J., Nicol, D.: A calculus of trust and its application to pki and identity management. In: Proceedings of the 8th Symposium on Identity and Trust on the Internet. ACM (2009)

    Google Scholar 

  19. Grüner, A., Mühle, A., Gayvoronskaya, T., Meinel, C.: A quantifiable trust model for blockchain-based identity management. In: Proceedings of the 2018 International Conference on Blockchain, pp. 1475–1482, July 2018

    Google Scholar 

  20. Grüner, A., Mühle, A., Meinel, C.: Using quantified attribute aggregation for increasing trust in attribute assurance. In: Proceedings of the IEEE Symposium Series on Computational Intelligence. IEEE (2019, to be published)

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Andreas Grüner .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2020 Springer Nature Switzerland AG

About this paper

Check for updates. Verify currency and authenticity via CrossMark

Cite this paper

Grüner, A., Mühle, A., Meinig, M., Meinel, C. (2020). A Taxonomy of Trust Models for Attribute Assurance in Identity Management. In: Barolli, L., Amato, F., Moscato, F., Enokido, T., Takizawa, M. (eds) Web, Artificial Intelligence and Network Applications. WAINA 2020. Advances in Intelligent Systems and Computing, vol 1150. Springer, Cham. https://doi.org/10.1007/978-3-030-44038-1_7

Download citation

Publish with us

Policies and ethics