%0 Journal Article %T User and Machine Authentication and Authorization Infrastructure for Distributed Wireless Sensor Network Testbeds %A Markus Anwander %A Torsten Braun %A Philipp Hurni %A Thomas Staub %A Gerald Wagenknecht %J Journal of Sensor and Actuator Networks %D 2013 %I MDPI AG %R 10.3390/jsan2010109 %X The intention of an authentication and authorization infrastructure (AAI) is to simplify and unify access to different web resources. With a single login, a user can access web applications at multiple organizations. The Shibboleth authentication and authorization infrastructure is a standards-based, open source software package for web single sign-on (SSO) across or within organizational boundaries. It allows service providers to make fine-grained authorization decisions for individual access of protected online resources. The Shibboleth system is a widely used AAI, but only supports protection of browser-based web resources. We have implemented a Shibboleth AAI extension to protect web services using Simple Object Access Protocol (SOAP). Besides user authentication for browser-based web resources, this extension also provides user and machine authentication for web service-based resources. Although implemented for a Shibboleth AAI, the architecture can be easily adapted to other AAIs. %K authentication %K authorization %K wireless sensor networks %K experimentation %K testbeds %U http://www.mdpi.com/2224-2708/2/1/109