Abstract-Identity Management (IdM) on the application layer improves the usability and security for end users by offering features like Single Sign-On and attribute provisioning. Unrelated approaches on the network layer introduce identity concepts to solve mobility problems and support multihoming. This paper describes a novel approach to the integration of IdM on the application layer with identity concepts introduced by the Host Identity Protocol (HIP). We propose an integrated architecture combining the advantages of both domains. In this scope, we tackle the mapping between the HIP namespace and user IdM namespace as well as we the management and assignment of user and host identities.The new architecture provides a unified view over user and host identities, enabling the exchange of user and host attributes, while it also provides enhanced security and network features.
Abstract. Users with several devices need a convenient mechanism to transfer running service sessions from one device to another device. This paper proposes a framework that allows session mobility without modifications on the communication partner's system from application layer down to network layer. That means we can transfer ongoing sessions with minor interruptions of the communication and thus call it complete session mobility. Due to the framework's flexibility we support a multitude of technologies across all layers. The architecture has been verified by a prototype that has been implemented on a Linux system.
scite is a Brooklyn-based organization that helps researchers better discover and understand research articles through Smart Citations–citations that display the context of the citation and describe whether the article provides supporting or contrasting evidence. scite is used by students and researchers from around the world and is funded in part by the National Science Foundation and the National Institute on Drug Abuse of the National Institutes of Health.