[OpenID] [OpenID board] [Board-ec] Fwd: JTC1_N13405-Proposal for a liaison C between Open ID Foundation and ISO/IEC JTC1 SC27 WG5

John Bradley ve7jtb at ve7jtb.com
Fri Mar 21 03:46:24 UTC 2014


In discussions I have had with Mobile operators privacy has been a concern, though that may be influenced by many of them being in Europe and having to conform to much stricter privacy laws than in the US.

The connect profile is intended to create a common set of features and possibly a single registration point to make it possible for RP to deal with potentially 800 IdP given that the internet is global.

I think many people will agree that creating a common identity layer rather than regional ones is a good thing.

Asking about persona on the device may have confused the issue.  It would surprise me if multiple persona including non corralatable ones are not supported for asserting to RP.

That is different from multiple persona on the device being used for authentication to the MNO as the IdP.  

In developing the profile support for pairwise identifiers will need to be sorted out.  They have privacy benefits as long as you are not handing out other corralatable attributes.

One value add the MNO have is that they can provide proofed attributes with the users consent.   In the multiple persona case there may be legal restrictions on them providing attributes they know are not true.  So outside of the technical profile that we are developing there may be policy issues that the operators need to deal with.

One side benefit of this is if the we get RP into the ecosystem this way and can move them to a world where they have to allow selection between hundreds of IdP then the NASCAR breaks down and there is more opportunity for specialist IdP like UnitedID to be accepted.

John B.



On Mar 20, 2014, at 9:47 PM, Nat Sakimura <sakimura at gmail.com> wrote:

> Removing: board at openid.net and board-ec at openid.net from the Cc list and adding openid-general since this is more of a community question and not the board discussion. 
> 
> 2014-03-21 7:31 GMT+09:00 Kaliya Identity Woman <identitywoman at gmail.com>:
> I asked Don last time we were in person if the GSMA in its use/adoption of OpenID was going to enable people to easily have more then one profile on their device. He basically said they hadn't thought of it and in effect said "nope". 
> 
> Actually, this is not true. Many telcos are perfectly willing to give ability to the consumers multiple "identities". 
> The credential being SIM based and the support of multiple "identity/partial identity/paersona" is an orthogonal thing. 
> Perhaps Torsten can chime in here as well. 
> 
> -- 
> Nat Sakimura (=nat)
> Chairman, OpenID Foundation
> http://nat.sakimura.org/
> @_nat_en
> _______________________________________________
> general mailing list
> general at lists.openid.net
> http://lists.openid.net/mailman/listinfo/openid-general

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-general/attachments/20140321/f3ff1f02/attachment.html>


More information about the general mailing list