In federated world like Shibboleth the release policy- how a member’s personal information to be divulged is set by their home organization. The member has little say in it. In this paper we present an alternate framework where members can specify and personalize their own attribute release policy. Such personalization is however nontrivial. As opposed to simple request-reply based communication, such personalization inherently necessitates a mechanism of negotiation for which we present a new federated negotiation enabled framework. KEY WORDS Privacy, Federation, Negotiation, Authentication.
Javed I. Khan, Kailas B. Bobade, Manas Hardas