Disclaimer

The SWIFT ICT FP7 Project has no relation with S.W.I.F.T. SCRL , the Belgian-based cooperative active in financial messaging services.

Swift Login

SWIFT is a EU project

EU ICT FP7 Project SWIFT 

SWIFT (Secure Widespread Identities for Federated Telecommunications) is a European Union funded project of the 7th Framework Programme. The project leverages identity technology as a key to integrate service and transport infrastructures for the benefit of users and the providers. It focuses on extending identity functions and federation to the network while addressing usability and privacy concerns.

Partners

Nine Parters form the SWIFT Consortium

The SWIFT consortium is led by Fraunhofer SIT. Other members are Alcatel-Lucent, Deutsche Telekom, Dracotic, ITAveiro, NEC (Technical Lead), Portugal Telecom, University of Murcia and University of Stuttgart.

Duration

30 Month Project Duration 

The project proposal was submitted to the EU Commission as part of Call 1 of the 7th Framework Programme. Negotiations were completed in September 2007, and the final Description of work was approved in November of the same year. The project started operation on 1st Janaury 2008 and has an overall 30 month time span. The planned completion date is 30th June 2010.

WP1

Work Methods, Dissemination and Exploitation

This WP is responsible for defining the work working methods and to manage dissemination. The task includes the definition work methods, dissemination towards the general public and towards journals and conferences, standardization co-ordination and exploitation within the participating companies and beyond.

WP2

Identity Framework

This WP drives the technical work by defining an overall architecture, the IdM platform to be adopted and dealing with the more general issues of federation, name resolution and data modelling. Based on initial scenarios and use-cases, it will identify the gaps in the SoA and address them. The WP will also handle name resolution, federation and defining the data models used in cross-layer information exchange.

WP3

Security Architecture

The WP develops the necessary security requirements and protocols. It will deal with the overall security analysis as well as specify and implement specific security primitives. Topics covered are the threat model, assurance metrics and the privacy and security implications of identity transfer. It will also instantiate some privacy and security enhancing techniques at different layers and crypto primitives.

WP4

Service and Network Architecture

This WP deals with the specific protocols which interact with the identity platform at service and network level. Whether existing protocols will be adapted to the identity architecture or new network and service level protocols need to be designed will depend on their suitability for the identity platform. The WP will deal with an network-related functions, such as AAA, billing and charging, mobility and roaming.

WP5

Scenarios and Evaluation

The WP will design scenarios based on use-cases which demonstrate the benefit of a cross-layer architecture. It will also design sub-demonstrators, taking the scenarios and use-cases as a basis, and instantiate these demonstrators using the software provided by the other work-packages.

Deductive Policies with XACML PDF Print E-mail
Friday, 18 September 2009

Mario Lischka, Yukiko Endo, Manuel Sanchëz: Deductive Policies with XACML. 2009 Workshop on Secure Web Services, co-located with 16th ACM Conference on Computer and Communications Security (CCS-16), Chicaco, Illinois, USA, 13. November 2009

Status: accepted

"SaaS technology might  comprise of a bundle of different services provided by different entities. Thus  monolithic access policies are not  feasible as each of the service partner and the companies using the service would have to provide their internal and potentially confidential rules on which they base their policies. In addition internal information such as concrete position of the user or affiliation to a specific project might be utilized in the policies and should not be provided to any external entity.


Deduction of decisions has been investigated for more than a decade, but no widely spread standard has been defined. OASIS XACML is being used in many applications and services nowadays. Additionally,  tools for modeling the policies are available and many engineers share common understanding of this approach. In this paper we present an extension of the XACML language to support deduction of decisions, together with a distributed definition of the policies and at the same time avoiding problems known from current solutions on deductive policy languages."

Comments
Add NewSearch
Only registered users can write comments!

Copyright (C) 2007 Alain Georgette / Copyright (C) 2006 Frantisek Hliva. All rights reserved.

 
Next >

SWIFT Mini-calendar

September 2010 October 2010
Su Mo Tu We Th Fr Sa
Week 35 1 2 3 4
Week 36 5 6 7 8 9 10 11
Week 37 12 13 14 15 16 17 18
Week 38 19 20 21 22 23 24 25
Week 39 26 27 28 29 30

SWIFT Latest Events

September
  • SecureComm '10
    September 07, 2010 (00:00) - September 10, 2010 (23:59)
    (General)

    6th International Conference on Security and Privacy in Communication Networks (SecureComm...

  • SEC 2010
    September 20, 2010 (00:00) - September 23, 2010 (23:59)
    (General) 25th IFIP International Information Security Conference
    Security & Privacy − Silver...
  • JITEL 2010
    September 29, 2010 (00:00) - October 01, 2010 (23:59)
    (EU Events)

    Las Jornadas de Ingeniería Telemática (JITEL) constituyen un foro propicio de reunión, debate...

November
  • IDMAN '10
    November 18, 2010 (00:00) - November 19, 2010 (23:59)
    (EU Events)

    IFIP IDMAN 2010 - 2nd IFIP WG 11.6 Working Conference on Policies & Research in Identity...

View Full Calendar

SWIFT Site Visitors

This month 's Top 5
 28 % United States
 15 % Germany
 9 % China
 9 % United Kingdom
 4 % France
RocketTheme Joomla Templates