ITI Access Control White Paper
Editorial Team
Authors
- Raik Kuhlisch (Fraunhofer ISST)
- Jörg Caumanns (Fraunhofer ISST)
- Oliver Pfaff (Siemens IT Solutions and Services)
- Markus Franke (Siemens IT Solutions and Services)
- Christof Strack (SUN Microsystems)
- Heiko Lemke (SUN Microsystems)
Supervisor
- Rob Horn (Agfa Healthcare)
IHE ITI Editorial Team
- John Moehrke (GE Healthcare)
- Lynn Felhofer (Mallinckrodt Institute of Radiology)
- Manuel Metz (GIP-DMP)
Schedule
Storyline
Outline
Standards and Specs to be considered
SAML
Any information on policies that is to be exchanged is encoded as a SAML 2.0 assertion. The respective profiling must be in line with the conventions defined for XUA. The use of WS Trust RST/RSTR is prefered for the SAML 2.0 protocol.
WS Trust
Issuing and validation of SAML-encoded security token is performed by WS Trust STS. The experiences made with the eCR implementations based on the SUN and Microsoft WS Trust frameworks should be considered in order to avoid WS Trust features that are not implemented in a compatible manner by these platforms.
XSPA
XSPA is the reference model with respect to the building blocks and the flow of control.
XACML
Anything specified in the white paper must be implementable using XACML encoded policies.