dc.description.abstract |
Managing digital identities and access control for enterprise users and
applications remains one of the greatest challenges facing computing today. An
attempt to address this issue led to the proposed security paradigm called Identity
and Access Management (IAM) service based on IAM standards. Current
approaches such as Lightweight Directory Access Protocol (LDAP), Central
Authentication Service (CAS) and Security Assertion Markup Language (SAML)
lack comprehensive analysis from conception to physical implementation to
incorporate these solutions thereby resulting in impractical and fractured
solutions. In this paper, we have implemented Identity and Access Management
System (IAMSys) using the Lightweight Directory Access Protocol (LDAP) which
focuses on authentication, authorization, administration of identities and audit
reporting. Its primary concern is verification of the identity of the entity and
granting correct level of access for resources which are protected in either the
cloud environment or on-premise systems. A phased approach methodology was
used in the research where it requires any enterprise or organization willing to
adopt this must carry out a careful planning and demonstrated a good
understanding of the technologies involved. The results of the experimental
evaluation indicated that the average rating score is 72.0 % for the participants
involved in this study. This implies that the idea of IAMSys is a way to mitigating
security challenges associated with authentication, authorization, data protection
and accountability if properly deployed. |
en_US |