Federated Identity
•  Simple abstraction of “digital personas”
*To manage collections of claims
*To manage cryptographic keys
•  Grounded in metaphor of physical cards
*Citizen ID card, driver’s license, credit card
*Self-issued cards signed by user
*Managed cards signed by identity provider
*
Identity
Provider
Text Box: Policy
Policy
Text Box: Credential
Credential
Relying
Party
Text Box: Identity claims
Identity claims
Text Box: Identity claims
Identity claims
building gray w awning C:\Users\vijayg\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CZK0FF4A\MCj04316370000[1].png
enables seamless portability of identity across security domains
Client: Identity Selector