Difference between revisions of "Credential Aggregation"

From MgmtWiki
Jump to: navigation, search
(Created page with "==Full Title or Meme== In the real-world a person is likely to need to produce more than one certificate from the wallet to get access to high value locations. This use case l...")
 
Line 3: Line 3:
  
 
==Context==
 
==Context==
 +
 +
===Principles===
 +
 +
===Taxonomy===
 +
* [[Credential]]
 +
* [[Digital Presentation]]
 +
* [[User Experience]] or presentation of options to the user for their consent.
 +
  
 
==Problems==
 
==Problems==

Revision as of 12:48, 24 November 2021

Full Title or Meme

In the real-world a person is likely to need to produce more than one certificate from the wallet to get access to high value locations. This use case looks at how that effort might be addressed when Credentials are held in digital format.

Context

Principles

Taxonomy


Problems

  • In the real world only a few sites ask to make copies of your credentials and collect more data than they need in the process.
  • In the digital world collecting the full credential exposes the user to signification loss of Privacy.

Solutions

  • As a general rule the user's entire credential data contents should not be passed to any Relying Party whether in-person or on-line.

References