{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,2]],"date-time":"2026-05-02T06:54:59Z","timestamp":1777704899810,"version":"3.51.4"},"reference-count":53,"publisher":"SAGE Publications","issue":"6","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IFS"],"published-print":{"date-parts":[[2023,12,2]]},"abstract":"<jats:p>Cloud computing is a cost-effective way for organizations to access and use IT resources. However, it also exposes data to security threats. Authentication and authorization are crucial components of access control that prevent unauthorized access to cloud services. Organizations are turning to identity management solutions to help IT administrators face and mitigate security concerns. Identity management (IDM) has been recognized as a more robust solution for validating and maintaining digital identities. Identity management (IDM) is a key security mechanism for cloud computing that helps to ensure that only authorized users have access to data and resources. Traditional IDM solutions are centralized and rely on a single authority to manage user identities, which makes them vulnerable to attack. However, existing identity management solutions need to be more secure and trustworthy. Blockchain technology can create a more secure and trustworthy cloud transaction environment. Purpose: This paper investigates the security and trustworthiness of existing identity management solutions in cloud computing. Comparative results: We compared 14 traditional IDM schemes in cloud systems to explore contributions and limitations. This paper also compared 17 centralized, decentralized, and federated IDM models to explain their functions, roles, performance, contribution, primary metrics, and target attacks. About 17 IDM models have also been compared to explore their efficiency, overhead consumption, effectiveness to malicious users, trustworthiness, throughput, and privacy. Major conclusions: Blockchain technology has the potential to make cloud transactions more secure and reliable. It featured strong authentication and authorization mechanisms based on smart contracts on the Ethereum platform. As a result, it is still regarded as a reliable and immutable solution for protecting data sharing between entities in peer-to-peer networks. However, there is still a large gap between the theoretical method and its practical application. This paper also helps other scholars in the field discover issues and solutions and make suggestions for future research.<\/jats:p>","DOI":"10.3233\/jifs-231911","type":"journal-article","created":{"date-parts":[[2023,10,3]],"date-time":"2023-10-03T11:42:30Z","timestamp":1696333350000},"page":"11295-11317","source":"Crossref","is-referenced-by-count":6,"title":["An identity management scheme for cloud computing: Review, challenges, and future directions"],"prefix":"10.1177","volume":"45","author":[{"given":"Ayman Mohamed","family":"Mostafa","sequence":"first","affiliation":[{"name":"Faculty of Computers and Informatics, Zagazig University, Egypt"},{"name":"College of Computers and Information Sciences, Jouf University, Kingdom of Saudi Arabia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ehab","family":"Rushdy","sequence":"additional","affiliation":[{"name":"Faculty of Computers and Informatics, Zagazig University, Egypt"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Reham","family":"Medhat","sequence":"additional","affiliation":[{"name":"Faculty of Computers and Informatics, Zagazig University, Egypt"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Asmaa","family":"Hanafy","sequence":"additional","affiliation":[{"name":"Faculty of Computers and Informatics, Zagazig University, Egypt"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"179","reference":[{"issue":"12","key":"10.3233\/JIFS-231911_ref1","doi-asserted-by":"crossref","first-page":"38","DOI":"10.5815\/ijmecs.2017.12.05","article-title":"Srivastava, Cloud Computing: A Paradigm Shift in the Way of Computing","volume":"9","author":"Agarwal","year":"2017","journal-title":"International Journal of Modern Education and Computer Science"},{"key":"10.3233\/JIFS-231911_ref2","doi-asserted-by":"crossref","unstructured":"Ghaffari F. , Gilani K. , Bertin E. and Crespi N. , Identity and Access Management Using Distributed Ledger Technology: A survey, International Journal of Network Management 32(2) (2021).","DOI":"10.1002\/nem.2180"},{"issue":"8","key":"10.3233\/JIFS-231911_ref3","doi-asserted-by":"crossref","first-page":"414","DOI":"10.14445\/22312803\/IJCTT-V9P174","article-title":"Identity Management issues in Cloud Computing","volume":"9","author":"Saini","year":"2014","journal-title":"International Journal of Computer Trends and Technology"},{"issue":"4","key":"10.3233\/JIFS-231911_ref4","first-page":"574","article-title":"Identity and access management in cloud environment: Mechanisms and challenges, Engineering Science and Technology","volume":"21","author":"Indu","year":"2018","journal-title":"an International Journal"},{"issue":"2","key":"10.3233\/JIFS-231911_ref5","doi-asserted-by":"crossref","first-page":"38","DOI":"10.1109\/MSP.2008.41","article-title":"Privacy and Identity Management","volume":"6","author":"Hansen","year":"2008","journal-title":"IEEE Security & Privacy Magazine"},{"issue":"1","key":"10.3233\/JIFS-231911_ref6","doi-asserted-by":"crossref","first-page":"63","DOI":"10.4018\/IJSDS.2018010105","article-title":"Identity Management Systems","volume":"9","author":"Kumar","year":"2018","journal-title":"International Journal of Strategic Decision Sciences"},{"issue":"1","key":"10.3233\/JIFS-231911_ref8","doi-asserted-by":"crossref","first-page":"95","DOI":"10.1109\/TCE.2012.6170060","article-title":"Enhancing privacy and dynamic federation in IdM for consumer cloud computing","volume":"58","author":"Sanchez","year":"2012","journal-title":"IEEE Transactions on Consumer Electronics"},{"issue":"2","key":"10.3233\/JIFS-231911_ref9","doi-asserted-by":"crossref","first-page":"40","DOI":"10.1109\/MSP.2016.37","article-title":"Privacy Engineering: Shaping an Emerging Field of Research and Practice","volume":"14","author":"Gurses","year":"2016","journal-title":"IEEE Security & Privacy"},{"issue":"4","key":"10.3233\/JIFS-231911_ref10","doi-asserted-by":"crossref","first-page":"1008","DOI":"10.1109\/TEM.2019.2926471","article-title":"Blockchain-Based Identity Management: A Survey from the Enterprise and Ecosystem Perspective","volume":"67","author":"Kuperberg","year":"2020","journal-title":"in IEEE Transactions on Engineering Management"},{"issue":"8","key":"10.3233\/JIFS-231911_ref11","first-page":"2018","article-title":"Secure cloud-based EHR system using attribute-based cryptosystem and blockchain","volume":"42","author":"Wang","journal-title":"Journal of Medical Systems"},{"key":"10.3233\/JIFS-231911_ref12","doi-asserted-by":"crossref","first-page":"102491","DOI":"10.1016\/j.cose.2021.102491","article-title":"Authentication and identity management of IOHT devices: Achievements, challenges, and Future Directions","volume":"111","author":"Mamdouh","year":"2021","journal-title":"Computers & Security"},{"key":"10.3233\/JIFS-231911_ref13","doi-asserted-by":"crossref","first-page":"170","DOI":"10.1016\/j.procs.2016.03.117","article-title":"Identity and Access Management as Security-as-a-Service from Clouds","volume":"79","author":"Sharma","year":"2016","journal-title":"Procedia Computer Science"},{"issue":"1","key":"10.3233\/JIFS-231911_ref14","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1186\/s40294-014-0005-9","article-title":"Cloud identity management security issues & solutions: a taxonomy","volume":"2","author":"Habiba","year":"2014","journal-title":"Complex Adaptive Systems Modeling"},{"issue":"2","key":"10.3233\/JIFS-231911_ref16","doi-asserted-by":"crossref","first-page":"552","DOI":"10.3390\/s21020552","article-title":"A smart biometric identity management framework for personalised IOT and cloud computing-based healthcare services","volume":"21","author":"Farid","year":"2021","journal-title":"Sensors"},{"key":"10.3233\/JIFS-231911_ref18","doi-asserted-by":"crossref","first-page":"199","DOI":"10.1007\/s10207-014-0230-4","article-title":"BlindIdM: A privacy-preserving approach for identity management as a service","volume":"13","author":"Nu\u00f1ez","year":"2014","journal-title":"International Journal of Information Security"},{"key":"10.3233\/JIFS-231911_ref22","doi-asserted-by":"crossref","first-page":"2274","DOI":"10.1109\/ACCESS.2017.2782733","article-title":"BIDaaS: Blockchain Based ID As a Service","volume":"6","author":"Lee","year":"2018","journal-title":"IEEE Access"},{"issue":"3","key":"10.3233\/JIFS-231911_ref23","doi-asserted-by":"crossref","first-page":"546","DOI":"10.1016\/j.jcss.2013.06.010","article-title":"A new definition of homomorphic signature for identity management in mobile cloud computing","volume":"80","author":"Wang","year":"2014","journal-title":"Journal of Computer and System Sciences"},{"key":"10.3233\/JIFS-231911_ref26","doi-asserted-by":"crossref","first-page":"29","DOI":"10.1016\/j.comnet.2017.04.030","article-title":"Cloud identity management: A survey on privacy strategies","volume":"122","author":"Werner","year":"2017","journal-title":"Computer Networks"},{"issue":"3","key":"10.3233\/JIFS-231911_ref27","doi-asserted-by":"crossref","first-page":"1","DOI":"10.4018\/irmj.2012070101","article-title":"A Consolidated Process Model for Identity Management","volume":"25","author":"Ng","year":"2012","journal-title":"Information Resources Management Journal"},{"issue":"6","key":"10.3233\/JIFS-231911_ref33","doi-asserted-by":"crossref","first-page":"50","DOI":"10.5815\/ijcnis.2015.06.06","article-title":"Single Sign-On in Cloud Federation using CloudSim","volume":"7","author":"Thomas","year":"2015","journal-title":"International Journal of Computer Network and Information Security"},{"key":"10.3233\/JIFS-231911_ref36","doi-asserted-by":"crossref","first-page":"99","DOI":"10.1016\/j.comnet.2014.03.015","article-title":"Consolidated Identity Management System for secure mobile cloud computing","volume":"65","author":"Khalil","year":"2014","journal-title":"Computer Networks"},{"issue":"4","key":"10.3233\/JIFS-231911_ref39","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3403954","article-title":"Blockchain Technology for Cloud Storage","volume":"53","author":"Sharma","year":"2020","journal-title":"ACM Computing Surveys"},{"issue":"1","key":"10.3233\/JIFS-231911_ref40","doi-asserted-by":"crossref","first-page":"1","DOI":"10.3390\/cryptography2010001","article-title":"Multi-Factor Authentication: A Survey","volume":"2","author":"Ometov","year":"2017","journal-title":"Cryptography"},{"issue":"2","key":"10.3233\/JIFS-231911_ref42","doi-asserted-by":"crossref","first-page":"82","DOI":"10.1109\/MNET.2019.1800240","article-title":"Challenges of Multi-Factor Authentication for Securing Advanced IoT Applications","volume":"33","author":"Ometov","year":"2019","journal-title":"IEEE Network"},{"issue":"9","key":"10.3233\/JIFS-231911_ref43","first-page":"2016","article-title":"SecAuthn: Provably Secure Multi-Factor Authentication for the Cloud Computing Systems","volume":"9","author":"Nagaraju","journal-title":"Indian Journal of Science and Technology"},{"issue":"5","key":"10.3233\/JIFS-231911_ref44","doi-asserted-by":"crossref","first-page":"529","DOI":"10.3233\/JCS-2007-15503","article-title":"\u201cPrivacy preserving multi-factor authentication with biometrics","volume":"15","author":"Bhargav-Spantzel","year":"2007","journal-title":"Journal of Computer Security"},{"issue":"5","key":"10.3233\/JIFS-231911_ref47","doi-asserted-by":"crossref","first-page":"508","DOI":"10.1002\/sec.340","article-title":"Mobile one-time passwords: two-factor authentication using mobile phones","volume":"5","author":"Eldefrawy","year":"2021","journal-title":"Security and Communication Networks"},{"issue":"1","key":"10.3233\/JIFS-231911_ref48","doi-asserted-by":"crossref","first-page":"383","DOI":"10.20533\/ijisr.2042.4639.2014.0044","article-title":"Two-Factor User Authentication with SMS and Voiceprint Challenge Response","volume":"4","author":"Fujii","year":"2014","journal-title":"International Journal for Information Security Research"},{"issue":"2","key":"10.3233\/JIFS-231911_ref50","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1002\/spy2.64","article-title":"A novel security scheme for behavioral authentication systems based on keystroke dynamics","volume":"2","author":"Salem","year":"2019","journal-title":"Security and Privacy"},{"issue":"2","key":"10.3233\/JIFS-231911_ref52","doi-asserted-by":"crossref","first-page":"430","DOI":"10.3390\/fi4020430","article-title":"A Survey of Patterns for Web Services Security and Reliability Standards","volume":"4","author":"Fernandez","year":"2012","journal-title":"Future Internet"},{"issue":"10","key":"10.3233\/JIFS-231911_ref53","doi-asserted-by":"crossref","first-page":"2233","DOI":"10.1016\/j.comnet.2012.11.027","article-title":"Integration of the OAuth and Web Service family security standards","volume":"57","author":"Torroglosa-Garc\u00eda","year":"2013","journal-title":"Computer Networks"},{"key":"10.3233\/JIFS-231911_ref56","first-page":"2009","article-title":"Security for Web Services and Service-Oriented Architectures","author":"Bertino","journal-title":"Springer Science & Business Media"},{"key":"10.3233\/JIFS-231911_ref58","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1016\/j.cose.2019.03.003","article-title":"Understanding and mitigating OpenID Connect threats","volume":"84","author":"Navas","year":"2019","journal-title":"Computers & Security"},{"key":"10.3233\/JIFS-231911_ref60","first-page":"41","article-title":"Web Single Sign-On Authentication using SAML","volume":"1","author":"Lewis","year":"2009","journal-title":"International Journal of Computer Science Issues (IJCSI)"},{"issue":"9","key":"10.3233\/JIFS-231911_ref63","doi-asserted-by":"crossref","first-page":"2621","DOI":"10.3390\/s20092621","article-title":"DLT Based Authentication Framework for Industrial IoT Devices","volume":"20","author":"Lupascu","year":"2020","journal-title":"Sensors"},{"key":"10.3233\/JIFS-231911_ref69","doi-asserted-by":"crossref","first-page":"647","DOI":"10.4028\/www.scientific.net\/AMM.40-41.647","article-title":"Identity Management Architecture: Paradigms and Models","volume":"40-41","author":"Cao","year":"2010","journal-title":"Applied Mechanics and Materials"},{"issue":"1","key":"10.3233\/JIFS-231911_ref73","first-page":"21","article-title":"Privacy-preserving digital identity management for cloud computing","volume":"32","author":"Bertino","year":"2009","journal-title":"IEEE Data Eng. Bull"},{"issue":"1","key":"10.3233\/JIFS-231911_ref75","first-page":"494","article-title":"A Survey of Zero-Knowledge Proof for Authentication","volume":"5","author":"Kurmi","year":"2015","journal-title":"International Journal of Advanced Research in Computer Science and Software Engineering"},{"issue":"6","key":"10.3233\/JIFS-231911_ref80","doi-asserted-by":"crossref","first-page":"948","DOI":"10.1109\/JPROC.2004.827372","article-title":"Biometric cryptosystems: issues and challenges","volume":"92","author":"Uludag","year":"2004","journal-title":"Proceedings of the IEEE"},{"issue":"1","key":"10.3233\/JIFS-231911_ref82","first-page":"1","article-title":"Blockchain-based trust management in cloud computing systems: a taxonomy, review and future directions","volume":"10","author":"Li","year":"2021","journal-title":"Journal of Cloud Computing"},{"issue":"2","key":"10.3233\/JIFS-231911_ref84","doi-asserted-by":"crossref","first-page":"102468","DOI":"10.1016\/j.ipm.2020.102468","article-title":"\u201cBlockchain-based authentication and authorization for smart city applications","volume":"58","author":"Esposito","year":"2021","journal-title":"Information Processing & Management"},{"key":"10.3233\/JIFS-231911_ref86","doi-asserted-by":"crossref","first-page":"270","DOI":"10.1016\/j.cose.2019.06.011","article-title":"FCMDT: A novel fuzzy cognitive maps dynamic trust model for cloud federated identity management","volume":"86","author":"Bendiab","year":"2019","journal-title":"Computers & Security"},{"issue":"10","key":"10.3233\/JIFS-231911_ref87","doi-asserted-by":"crossref","first-page":"2058","DOI":"10.3390\/app9102058","article-title":"Identity Management and Access Control Based on Blockchain under Edge Computing for the Industrial Internet of Things","volume":"9","author":"Ren","year":"2019","journal-title":"Applied Sciences"},{"issue":"4","key":"10.3233\/JIFS-231911_ref88","doi-asserted-by":"crossref","first-page":"54","DOI":"10.5815\/ijwmt.2018.04.04","article-title":"Preserving Privacy in Cloud Identity Management Systems Using DCM (Dual Certificate Management)","volume":"8","author":"Khajehei","year":"2018","journal-title":"International Journal of Wireless and Microwave Technologies"},{"issue":"2","key":"10.3233\/JIFS-231911_ref89","doi-asserted-by":"crossref","first-page":"552","DOI":"10.3390\/s21020552","article-title":"A Smart Biometric Identity Management Framework for Personalised IoT and Cloud Computing-Based Healthcare Services","volume":"21","author":"Farid","year":"2021","journal-title":"Sensors"},{"key":"10.3233\/JIFS-231911_ref90","doi-asserted-by":"crossref","first-page":"115281","DOI":"10.1109\/ACCESS.2019.2933989","article-title":"EIDM: A Ethereum-Based Cloud User Identity Management Protocol","volume":"7","author":"Wang","year":"2019","journal-title":"IEEE Access"},{"key":"10.3233\/JIFS-231911_ref91","doi-asserted-by":"crossref","first-page":"102050","DOI":"10.1016\/j.cose.2020.102050","article-title":"A zero-knowledge-proof-based digital identity management scheme in blockchain","volume":"99","author":"Yang","year":"2020","journal-title":"Computers & Security"},{"key":"10.3233\/JIFS-231911_ref92","doi-asserted-by":"crossref","first-page":"26372","DOI":"10.1109\/ACCESS.2020.2971519","article-title":"Distributed Machine Learning Oriented Data Integrity Verification Scheme in Cloud Computing Environment","volume":"8","author":"Zhao","year":"2020","journal-title":"IEEE Access"},{"key":"10.3233\/JIFS-231911_ref93","doi-asserted-by":"crossref","first-page":"582","DOI":"10.1016\/j.future.2017.03.030","article-title":"A unified face identification and resolution scheme using cloud computing in Internet of Things","volume":"81","author":"Hu","year":"2018","journal-title":"Future Generation Computer Systems"},{"issue":"3","key":"10.3233\/JIFS-231911_ref95","doi-asserted-by":"publisher","first-page":"1264","DOI":"10.3390\/s23031264","article-title":"A blockchain-based Authentication and Authorization Scheme for Distributed Mobile Cloud Computing Services","volume":"23","author":"Yu","year":"2023","journal-title":"Sensors"},{"key":"10.3233\/JIFS-231911_ref96","doi-asserted-by":"publisher","first-page":"197","DOI":"10.1016\/j.future.2022.11.010","article-title":"A peer-to-peer file storage and sharing system based on consortium blockchain","volume":"141","author":"Peng","year":"2023","journal-title":"Future Generation Computer Systems"},{"key":"10.3233\/JIFS-231911_ref97","doi-asserted-by":"publisher","first-page":"16605","DOI":"10.1109\/access.2023.3245046","article-title":"Sec-Health: A Blockchain-based protocol for Securing Health Records","volume":"11","author":"Costa","year":"2023","journal-title":"IEEE Access"},{"key":"10.3233\/JIFS-231911_ref98","doi-asserted-by":"publisher","DOI":"10.1109\/AIIoT54504.2022.9817349"}],"container-title":["Journal of Intelligent &amp; Fuzzy Systems"],"original-title":[],"link":[{"URL":"https:\/\/content.iospress.com\/download?id=10.3233\/JIFS-231911","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,4,29]],"date-time":"2026-04-29T09:42:19Z","timestamp":1777455739000},"score":1,"resource":{"primary":{"URL":"https:\/\/journals.sagepub.com\/doi\/full\/10.3233\/JIFS-231911"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,12,2]]},"references-count":53,"journal-issue":{"issue":"6"},"URL":"https:\/\/doi.org\/10.3233\/jifs-231911","relation":{},"ISSN":["1064-1246","1875-8967"],"issn-type":[{"value":"1064-1246","type":"print"},{"value":"1875-8967","type":"electronic"}],"subject":[],"published":{"date-parts":[[2023,12,2]]}}}