Blockchain Workspace www.blockchainworkspace.com 1
Self Sov Identity and
blockchains: symbiotic?!
Controlling my digital me’s
@henkvancann
Sept 21 2017




Blockchain Workspace www.blockchainworkspace.com 2
Today…
• Symbiotic		
• Blockchain	and	Internet	of	Value	
• Identity	
• Self	Sovereign	
• Federations	
• Attribute	based	identity
Main	message:	
After	tonight’s	meetup:	study	more	on	the	field	of	work	on	Blockchain	and	Identity,	where	it	strengthens	each	other.	
Why	would	we	be	interested	in	Self	Sov	Identity,	What	is	it?
Blockchain Workspace www.blockchainworkspace.com 3
Crypto	Currencies’	foundational	innovation
Repeat	of	essence	of	the	introduction	
Encryption	{key}	
Timestamping	and	consensus	{stamp}	
Verification	{check}	
But	you	will	always	need	(access	to)	the	original	digital	data.
Blockchain Workspace www.blockchainworkspace.com
Steal me…
A bitcoin address is your virtual identity… as long as you’re the only one that controls it!
Blockchain Workspace www.blockchainworkspace.com
1. Existence
2. Status
3. Identity
4. Acquirements
5. Location
6. Ownership
7. Purchase
ā€œESIALOPā€
Delivers proofs of…
Blockchain apps
Blockchain Workspace www.blockchainworkspace.com
ā€œATOMICā€
Blockchain touches…
1. Assets
2. Trust
3. Ownership
4. Money
5. Identity
6. Contracts
Blockchain Workspace www.blockchainworkspace.com 7
RenĆ© Descartes said,Ā Cogito ergo sum — I think, therefore I am.
• Human Dignity
• Interconnected systems need a true understanding of
identity
• Sometimes needs ofĀ securityĀ outweigh the need for
human dignity
Identity
However, modern society has muddled this concept of identity.Ā 
Open <> Visible
Why are we spending so much time with a definition of identity? The vital, simple reason isĀ human dignity.
When we build interconnected systems without a core understanding of identity, we riskĀ inadvertentlyĀ compromising human dignity. We
riskĀ accidentallyĀ building systems that deny self-expression, place individuals in harm’s way, and unintentionally oppress those most in need of self-
determination.
There are times when the needs ofĀ securityĀ outweigh the need for human dignity. Fine. It’s the job of ourĀ politicalsystems—local, national, and
international—to minimize abuse and to establish boundaries and practices that respect basic human rights.
But when engineersĀ unwittinglyĀ compromise the ability of individuals to self-express their identity, when we expose personal information in unexpected
ways, when our systems deny basic services because of a flawed understanding of identity, these areĀ avoidable tragedies. What might seem a minor
technicality in one conversation could lead to the loss of privacy, liberty, or even life for an individual whose identity isĀ unintentionally compromised.
That’s why it pays to understand identity, so the systems we build intentionally enable human dignity instead of accidentally destroy it.
Blockchain Workspace www.blockchainworkspace.com 8
Not	today…
• No	Fraude		
• No	reputation	based	Identity	systems	
• No	wallet	client	software	
• No	key	management	
• No	public	key	management		
• No	consensus	mechanisms	
• No	biometry
Blockchain Workspace www.blockchainworkspace.com 9
Chris	Allen	@ChristopherA
		1.	**Existence.**	Users	must	have	an	independent	existence.		
		2.	**Control.**	Users	must	control	their	identities.		
		3.	**Access.**	Users	must	have	access	to	their	own	data.	
		4.	**Transparency.**	Systems	and	algorithms	must	be	transparent.	
		5.	**Persistence.**	Identities	must	be	long-lived.	
		6.	**Portability.**	Information	and	services	about	identity	must	be	
transportable.	
		7.	**Interoperability.**	Identities	should	be	as	widely	usable	as	possible.	
		8.	**Consent.**	Users	must	agree	to	the	use	of	their	identity.		
		9.	**Minimalization.**	Disclosure	of	claims	must	be	minimized.		
		10.	**Protection.**	The	rights	of	users	must	be	protected.
’10 principles of self sovereign identity’
https://github.com/WebOfTrustInfo/rebooting-the-web-of-trust-fall2017/blob/master/topics-and-advance-readings/self-sovereign-identity-primer.md
Phase One: Centralized IdentityĀ (administrative control by a single authority or hierarchy)
Phase Two: Federated IdentityĀ (administrative control by multiple, federated authorities)
Phase Three: User-Centric IdentityĀ (individualĀ or administrative control across multiple authorities without requiring a federation)
Phase Four: Self-Sovereign IdentityĀ (individual control across any number of authorities)
Blockchain Workspace www.blockchainworkspace.com 10
Joe	Andrieu		@JoeAndrieu	
ā€œIdentity is how we keep track of people and things and, in turn,
how they keep track of us.ā€
’ Self-sovereign identity is centered on a person, free from
dependence on any corporation, organization, or nation-state.’
"Identity is how we keep track of people and things and, in turn, how they keep track of us.ā€
Joe Andrieu'sĀ Primer on Functional IdentityĀ offers a descriptive definition of identity. Quite simply, Andrieu says, "Identity is how we keep track of people and things and, in turn, how they keep track of us."
It's an astute description that cuts through the confusion of what an identity database should or shouldn't encompass by instead suggesting that models need only include what's required for persistent identification.
However, the content design of an identity system is only half the battle. There are also questions of jurisdiction, management, and oversight. In other words, once you have an identity system, who runs it, and who are they beholden to? That's whereĀ self-sovereign identityĀ enters the picture, as an
orthogonal way to look at the question of identity systems.
A Self-Sovereign Definition
Self-sovereign identity is centered on a person, free from dependence on any corporation, organization, or nation-state.
This core definition of self-sovereign identity is a simple one, affirming that identity belongs to an individual person and cannot be taken from them.
Blockchain Workspace www.blockchainworkspace.com 11
Dave	Birch	@dgwbirch
• 2014	Identity	is	the	new	money	
• 2017	Before	Babylon,	Beyond	Bitcoin	(youtube	https://
www.youtube.com/watch?v=e-bHGNBNRlo	)	
• Presentation	2016	Dutch	Blockchain	Conference	
• Presentation	2017	Dutch	Blockchain	Conference
ā€˜within 10 minutes, every blockchain discussion boils down to e-
Identity issues’.Ā 
ā€œThe only relevant application of blockchain for identity is virtual identities in combination with some sort of distributed application; do not use the word ā€˜smart contract’, because in fact they are not smart at all. ā€˜Contract’ is a stupid word for a distributed application,ā€ Birch stresses.
Medium article on 2016 Dutch Blockchain Conference
https://medium.com/happy-blockchains/fresh-dutch-blockchain-conference-93fd2716b088
Blockchain Workspace www.blockchainworkspace.com 12
Dave	Birch	@dgwbirch
ā€œThe only relevant application of blockchain for identity is
virtual identities in combination with some sort of distributed
application;
ā€œdo not use the word ā€˜smart contract’, because in fact they are
not smart at all. ā€˜Contract’ is a stupid word for a distributed
applicationā€
Blockchain Workspace www.blockchainworkspace.com 13
Similarities	between	Blockchain	and	IAM
• Value		
• Cryptography		
• Complexity	
• Extent	
• …
Information	Security

Meetup symbotic sept21_en_v1.0_hc

  • 1.
    Blockchain Workspace www.blockchainworkspace.com1 Self Sov Identity and blockchains: symbiotic?! Controlling my digital me’s @henkvancann Sept 21 2017 
 

  • 2.
    Blockchain Workspace www.blockchainworkspace.com2 Today… • Symbiotic • Blockchain and Internet of Value • Identity • Self Sovereign • Federations • Attribute based identity Main message: After tonight’s meetup: study more on the field of work on Blockchain and Identity, where it strengthens each other. Why would we be interested in Self Sov Identity, What is it?
  • 3.
    Blockchain Workspace www.blockchainworkspace.com3 Crypto Currencies’ foundational innovation Repeat of essence of the introduction Encryption {key} Timestamping and consensus {stamp} Verification {check} But you will always need (access to) the original digital data.
  • 4.
    Blockchain Workspace www.blockchainworkspace.com Stealme… A bitcoin address is your virtual identity… as long as you’re the only one that controls it!
  • 5.
    Blockchain Workspace www.blockchainworkspace.com 1.Existence 2. Status 3. Identity 4. Acquirements 5. Location 6. Ownership 7. Purchase ā€œESIALOPā€ Delivers proofs of… Blockchain apps
  • 6.
    Blockchain Workspace www.blockchainworkspace.com ā€œATOMICā€ Blockchaintouches… 1. Assets 2. Trust 3. Ownership 4. Money 5. Identity 6. Contracts
  • 7.
    Blockchain Workspace www.blockchainworkspace.com7 RenĆ© Descartes said,Ā Cogito ergo sum — I think, therefore I am. • Human Dignity • Interconnected systems need a true understanding of identity • Sometimes needs ofĀ securityĀ outweigh the need for human dignity Identity However, modern society has muddled this concept of identity.Ā  Open <> Visible Why are we spending so much time with a definition of identity? The vital, simple reason isĀ human dignity. When we build interconnected systems without a core understanding of identity, we riskĀ inadvertentlyĀ compromising human dignity. We riskĀ accidentallyĀ building systems that deny self-expression, place individuals in harm’s way, and unintentionally oppress those most in need of self- determination. There are times when the needs ofĀ securityĀ outweigh the need for human dignity. Fine. It’s the job of ourĀ politicalsystems—local, national, and international—to minimize abuse and to establish boundaries and practices that respect basic human rights. But when engineersĀ unwittinglyĀ compromise the ability of individuals to self-express their identity, when we expose personal information in unexpected ways, when our systems deny basic services because of a flawed understanding of identity, these areĀ avoidable tragedies. What might seem a minor technicality in one conversation could lead to the loss of privacy, liberty, or even life for an individual whose identity isĀ unintentionally compromised. That’s why it pays to understand identity, so the systems we build intentionally enable human dignity instead of accidentally destroy it.
  • 8.
    Blockchain Workspace www.blockchainworkspace.com8 Not today… • No Fraude • No reputation based Identity systems • No wallet client software • No key management • No public key management • No consensus mechanisms • No biometry
  • 9.
    Blockchain Workspace www.blockchainworkspace.com9 Chris Allen @ChristopherA 1. **Existence.** Users must have an independent existence. 2. **Control.** Users must control their identities. 3. **Access.** Users must have access to their own data. 4. **Transparency.** Systems and algorithms must be transparent. 5. **Persistence.** Identities must be long-lived. 6. **Portability.** Information and services about identity must be transportable. 7. **Interoperability.** Identities should be as widely usable as possible. 8. **Consent.** Users must agree to the use of their identity. 9. **Minimalization.** Disclosure of claims must be minimized. 10. **Protection.** The rights of users must be protected. ’10 principles of self sovereign identity’ https://github.com/WebOfTrustInfo/rebooting-the-web-of-trust-fall2017/blob/master/topics-and-advance-readings/self-sovereign-identity-primer.md Phase One: Centralized IdentityĀ (administrative control by a single authority or hierarchy) Phase Two: Federated IdentityĀ (administrative control by multiple, federated authorities) Phase Three: User-Centric IdentityĀ (individualĀ or administrative control across multiple authorities without requiring a federation) Phase Four: Self-Sovereign IdentityĀ (individual control across any number of authorities)
  • 10.
    Blockchain Workspace www.blockchainworkspace.com10 Joe Andrieu @JoeAndrieu ā€œIdentity is how we keep track of people and things and, in turn, how they keep track of us.ā€ ’ Self-sovereign identity is centered on a person, free from dependence on any corporation, organization, or nation-state.’ "Identity is how we keep track of people and things and, in turn, how they keep track of us.ā€ Joe Andrieu'sĀ Primer on Functional IdentityĀ offers a descriptive definition of identity. Quite simply, Andrieu says, "Identity is how we keep track of people and things and, in turn, how they keep track of us." It's an astute description that cuts through the confusion of what an identity database should or shouldn't encompass by instead suggesting that models need only include what's required for persistent identification. However, the content design of an identity system is only half the battle. There are also questions of jurisdiction, management, and oversight. In other words, once you have an identity system, who runs it, and who are they beholden to? That's whereĀ self-sovereign identityĀ enters the picture, as an orthogonal way to look at the question of identity systems. A Self-Sovereign Definition Self-sovereign identity is centered on a person, free from dependence on any corporation, organization, or nation-state. This core definition of self-sovereign identity is a simple one, affirming that identity belongs to an individual person and cannot be taken from them.
  • 11.
    Blockchain Workspace www.blockchainworkspace.com11 Dave Birch @dgwbirch • 2014 Identity is the new money • 2017 Before Babylon, Beyond Bitcoin (youtube https:// www.youtube.com/watch?v=e-bHGNBNRlo ) • Presentation 2016 Dutch Blockchain Conference • Presentation 2017 Dutch Blockchain Conference ā€˜within 10 minutes, every blockchain discussion boils down to e- Identity issues’.Ā  ā€œThe only relevant application of blockchain for identity is virtual identities in combination with some sort of distributed application; do not use the word ā€˜smart contract’, because in fact they are not smart at all. ā€˜Contract’ is a stupid word for a distributed application,ā€ Birch stresses. Medium article on 2016 Dutch Blockchain Conference https://medium.com/happy-blockchains/fresh-dutch-blockchain-conference-93fd2716b088
  • 12.
    Blockchain Workspace www.blockchainworkspace.com12 Dave Birch @dgwbirch ā€œThe only relevant application of blockchain for identity is virtual identities in combination with some sort of distributed application; ā€œdo not use the word ā€˜smart contract’, because in fact they are not smart at all. ā€˜Contract’ is a stupid word for a distributed applicationā€
  • 13.
    Blockchain Workspace www.blockchainworkspace.com13 Similarities between Blockchain and IAM • Value • Cryptography • Complexity • Extent • … Information Security