{"id":{"repo_id":"houston","oai_identifier":"oai:uh-ir.tdl.org:10657/3381"},"canonical_url":"https://search.dev.ndltd.org/etd/houston/oai:uh-ir.tdl.org:10657/3381","repository":{"repo_id":"houston","name":"University of Houston","base_url":"https://uh-ir.tdl.org/server/oai/request"},"display":{"title":"Future of Identity and Access Management: The OpenID Connect Protocol","abstract":"As the Internet becomes the standard, and often the only, mechanism for interactions between individuals, private companies, governments and other organizations, digital identity management is exceedingly a critical component of this online communication and commerce. Identity and Access Management (IAM) is the management and control of information about users in a digital format. This information may include mechanisms to verify the identity of the users (authentication) and ensuring approved access to resources (authorization). In addition, IAM maintains descriptive details about users and provides portability of this information between disparate systems. This thesis explores the OpenID Connect (OIDC) standard introduced by the OpenID Foundation. Built on an earlier standard known as OAuth 2, the OIDC standard, also referred to as a protocol, specifies a near-complete procedure to provide authentication and authorization of users across the Internet. The first part of the thesis introduces the protocol while later parts explore the problems it purports to solve. Finally, a study of current implementations, the adoption of the OIDC standard by industry and possible ways to improve upon the standard are explored.","abstract_html":"As the Internet becomes the standard, and often the only, mechanism for interactions between individuals, private companies, governments and other organizations, digital identity management is exceedingly a critical component of this online communication and commerce. Identity and Access Management (IAM) is the management and control of information about users in a digital format. This information may include mechanisms to verify the identity of the users (authentication) and ensuring approved access to resources (authorization). In addition, IAM maintains descriptive details about users and provides portability of this information between disparate systems. This thesis explores the OpenID Connect (OIDC) standard introduced by the OpenID Foundation. Built on an earlier standard known as OAuth 2, the OIDC standard, also referred to as a protocol, specifies a near-complete procedure to provide authentication and authorization of users across the Internet. The first part of the thesis introduces the protocol while later parts explore the problems it purports to solve. Finally, a study of current implementations, the adoption of the OIDC standard by industry and possible ways to improve upon the standard are explored.","abstract_has_math":false,"creators":["Ofleh, Omer"],"institution":"University of Houston","degree_name":"Master of Science","degree_level":"Masters","degree_discipline":"Information Systems Security","degree_department":null,"school":null,"contributors":[],"advisors":["Conklin, Wm. Arthur"],"committee_chairs":[],"committee_members":["Bronk, Chris","Kinsey, Denise M."],"year":2018,"date_issued":"2018-08","date_published":"2018-08","updated_at":"2026-07-24T02:33:06Z","subjects":["OpenID","Connect","Identity","Federation","Authentication","Authorization","OAuth2","OIDC","IAM","Access","Management"],"languages":["eng"],"rights":["The author of this work is the copyright owner. UH Libraries and the Texas Digital Library have their permission to store and provide access to this work. Further transmission, reproduction, or presentation of this work is prohibited except with permission of the author(s)."],"rights_urls":[],"identifier_entries":[]},"links":{"outbound_url":"http://hdl.handle.net/10657/3381","outbound_label":"Handle","outbound_source":"dc:identifier.uri"},"metadata_groups":[{"id":"people","label":"People","entries":[{"key":"dc:contributor.advisor","label":"Advisor","values":["Conklin, Wm. Arthur"]},{"key":"dc:contributor.committeemember","label":"Committee Member","values":["Bronk, Chris","Kinsey, Denise M."]},{"key":"dc:creator","label":"Author","values":["Ofleh, Omer"]}]},{"id":"academic_context","label":"Academic Context","entries":[{"key":"dc:date.accessioned","label":"Dc Date Accessioned","values":["2018-11-21T21:48:47Z"]},{"key":"dc:date.available","label":"Dc Date Available","values":["2018-11-21T21:48:47Z"]},{"key":"dc:date.issued","label":"Date","values":["2018-08"]},{"key":"thesis:degree_discipline","label":"Discipline","values":["Information Systems Security"]},{"key":"thesis:degree_level","label":"Degree Level","values":["Masters"]},{"key":"thesis:degree_name","label":"Degree Name","values":["Master of Science"]},{"key":"thesis:institution_name","label":"Thesis Institution Name","values":["University of Houston"]}]},{"id":"subjects_keywords","label":"Subjects and Keywords","entries":[{"key":"dc:subject","label":"Dc Subject","values":["OpenID","Connect","Identity","Federation","Authentication","Authorization","OAuth2","OIDC","IAM","Access","Management"]}]},{"id":"language_rights","label":"Language and Rights","entries":[{"key":"dc:language.iso","label":"Language (ISO)","values":["eng"]},{"key":"dc:rights","label":"Dc Rights","values":["The author of this work is the copyright owner. UH Libraries and the Texas Digital Library have their permission to store and provide access to this work. Further transmission, reproduction, or presentation of this work is prohibited except with permission of the author(s)."]}]},{"id":"identifiers","label":"Identifiers","entries":[{"key":"dc:identifier.uri","label":"Identifier URI","values":["http://hdl.handle.net/10657/3381"]}]},{"id":"additional","label":"Additional Metadata","entries":[{"key":"dc:description.abstract","label":"Abstract","values":["As the Internet becomes the standard, and often the only, mechanism for interactions between individuals, private companies, governments and other organizations, digital identity management is exceedingly a critical component of this online communication and commerce. Identity and Access Management (IAM) is the management and control of information about users in a digital format. This information may include mechanisms to verify the identity of the users (authentication) and ensuring approved access to resources (authorization). In addition, IAM maintains descriptive details about users and provides portability of this information between disparate systems. This thesis explores the OpenID Connect (OIDC) standard introduced by the OpenID Foundation. Built on an earlier standard known as OAuth 2, the OIDC standard, also referred to as a protocol, specifies a near-complete procedure to provide authentication and authorization of users across the Internet. The first part of the thesis introduces the protocol while later parts explore the problems it purports to solve. Finally, a study of current implementations, the adoption of the OIDC standard by industry and possible ways to improve upon the standard are explored."]},{"key":"dc:format.mimetype","label":"Dc Format Mimetype","values":["application/pdf"]},{"key":"dc:title","label":"Title","values":["Future of Identity and Access Management: The OpenID Connect Protocol"]}]}],"canonical_facts":{"dc:contributor.advisor":["Conklin, Wm. Arthur"],"dc:contributor.committeemember":["Bronk, Chris","Kinsey, Denise M."],"dc:creator":["Ofleh, Omer"],"dc:date.accessioned":["2018-11-21T21:48:47Z"],"dc:date.available":["2018-11-21T21:48:47Z"],"dc:date.issued":["2018-08"],"dc:description.abstract":["As the Internet becomes the standard, and often the only, mechanism for interactions between individuals, private companies, governments and other organizations, digital identity management is exceedingly a critical component of this online communication and commerce. Identity and Access Management (IAM) is the management and control of information about users in a digital format. This information may include mechanisms to verify the identity of the users (authentication) and ensuring approved access to resources (authorization). In addition, IAM maintains descriptive details about users and provides portability of this information between disparate systems. This thesis explores the OpenID Connect (OIDC) standard introduced by the OpenID Foundation. Built on an earlier standard known as OAuth 2, the OIDC standard, also referred to as a protocol, specifies a near-complete procedure to provide authentication and authorization of users across the Internet. The first part of the thesis introduces the protocol while later parts explore the problems it purports to solve. Finally, a study of current implementations, the adoption of the OIDC standard by industry and possible ways to improve upon the standard are explored."],"dc:format.mimetype":["application/pdf"],"dc:identifier.uri":["http://hdl.handle.net/10657/3381"],"dc:language.iso":["eng"],"dc:rights":["The author of this work is the copyright owner. UH Libraries and the Texas Digital Library have their permission to store and provide access to this work. Further transmission, reproduction, or presentation of this work is prohibited except with permission of the author(s)."],"dc:subject":["OpenID","Connect","Identity","Federation","Authentication","Authorization","OAuth2","OIDC","IAM","Access","Management"],"dc:title":["Future of Identity and Access Management: The OpenID Connect Protocol"],"thesis:degree_discipline":["Information Systems Security"],"thesis:degree_level":["Masters"],"thesis:degree_name":["Master of Science"],"thesis:institution_name":["University of Houston"]},"updated_at":"2026-07-24T02:33:06Z"}