On privacy-preserving ways to porting the Austrian eID system to the public cloud

11Citations
Citations of this article
14Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Secure authentication and unique identification of Austrian citizens are the main functions of the Austrian eID system. To facilitate the adoption of this eID system at online applications, the open source module MOA-ID has been developed, which manages identification and authentication based on the Austrian citizen card (the official Austrian eID) for service providers. Currently, the Austrian eID system treats MOA-ID as a trusted entity, which is locally deployed in every service provider’s domain. While this model has indeed some benefits, in some situations a centralized deployment approach of MOA-ID may be preferable. In this paper, we therefore propose a centralized deployment approach of MOA-ID in the public cloud. However, the move of a trusted service into the public cloud brings up new obstacles since the cloud can not be considered trustworthy. We encounter these obstacles by introducing and evaluating three distinct approaches, thereby retaining the workflow of the current Austrian eID system and preserving citizens’ privacy when assuming that MOA-ID acts honest but curious.

Cite

CITATION STYLE

APA

Zwattendorfer, B., & Slamanig, D. (2013). On privacy-preserving ways to porting the Austrian eID system to the public cloud. In IFIP Advances in Information and Communication Technology (Vol. 405, pp. 300–314). Springer New York LLC. https://doi.org/10.1007/978-3-642-39218-4_23

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free