Identity: Future directions (David Orrell, Eduserv Foundation)


Published in: Business, Technology
  1. 2. Identity 2.0 <ul><li>“ In Identity 2.0, usage of identity more closely resembles today's offline identity systems, but with the advantages of a digital medium.” </li></ul><ul><li>The Burton Group </li></ul>
  2. 4. <ul><ul><li>Inconsistent </li></ul></ul><ul><ul><li>Confusing </li></ul></ul><ul><ul><li>Leaves door open to identity theft/phishing </li></ul></ul><ul><ul><li>...but, on the whole, it works! </li></ul></ul>
  3. 5. “ OpenID lowers user frustration by letting users have control of their login.”
  4. 7. <ul><ul><li>http:// </li></ul></ul><ul><ul><li>http:// </li></ul></ul><ul><ul><li>=david.orrell </li></ul></ul>
  5. 12. <ul><ul><li>OpenID is an ‘identity network’ </li></ul></ul><ul><li>No one provider holds the key </li></ul><ul><li>Users choose who holds their identity </li></ul><ul><li>Technology is open </li></ul><ul><li>Built on existing web technologies </li></ul>
  6. 13. <ul><ul><li>Do users really care? </li></ul></ul><ul><ul><li>Why change from email address + password when it works for me? </li></ul></ul>
  7. 14. Information Cards, CardSpace, Identity Metasystem, and all that… “ Now, with the debut of the InfoCard identity management system, Microsoft is leading a network-wide effort to address the [phishing] issue. To those of us long skeptical of the technology giant's intentions, the plan seems too good to be true. Yet the solution is not only right, it could be the most important contribution to Internet security since cryptography.” Lawrence Lessig, Wired Magazine, March 2006.
  8. 17. <ul><ul><li>Personal cards: </li></ul></ul><ul><ul><li>Self-asserted claims </li></ul></ul><ul><ul><li>Managed cards: </li></ul></ul><ul><ul><li>‘ Trusted’ claims, asserted by identity provider </li></ul></ul>
  9. 22. <ul><ul><li>Human is integrated into login process </li></ul></ul><ul><ul><li>Which is… </li></ul></ul><ul><ul><li>Consistent between sites </li></ul></ul><ul><ul><li>Personal to individual </li></ul></ul>
  10. 23. <ul><ul><li>Requires identity selector to be installed </li></ul></ul><ul><ul><li>Little, if any, current support for mobile devices </li></ul></ul><ul><ul><li>Cards are not easily portable </li></ul></ul>
  11. 24. <ul><ul><li>Future directions? </li></ul></ul>
  12. 26. Clear, unambiguous messages
  13. 27. Consistency through browser support?
