...
Considerations on UMA Trust Model
UMA trust model can be showed through the tree phases of the entire process:
...
items | Factors | Description | Quantitative | Qualitative | Typology | ||||||
---|---|---|---|---|---|---|---|---|---|---|---|
TF1 | Level of Assurance |
| 1-4 | - | Technical and | ||||||
TF2 | Privacy Impact |
| Low=0, Medium=1, | yes |
|
| Yes | User Privacy | |||
TF3 | Country Privacy |
| - | Yes | Compliance | ||||||
TF4 | Term of Service |
| - | Yes | Legal | ||||||
TF5 | Reputation |
| - | Yes | Social | ||||||
TF6 | Maturity Level |
| - | Yes | Security |
|
|
|
|
|
|
Bootstrapping Trust
Bootstrapping trust in UMA is referred to the initial process to create a trust relationship among the three main parties: Authorizing User, Host and Authorization Manager.
The following picture shows the possible alternative approaches applicable to UMA protocol:
- Self-Registration
- Affiliate Registration through standard Identity technologies (SAML, OpenID, etc.)
- Trusted Framework
Bootstrapping Trust is the fundamental phase where the subject builds his (trust) mental state towards other agent (Host, AM), evaluating the trustworthiness factors.