Difference between revisions of "Distributed Identity"

From MgmtWiki
Jump to: navigation, search
(Full Title or Meme)
Line 1: Line 1:
==Full Title or Meme==
==Full Title or Meme==
A means to distribute the sources of identity and give more choice to [[User]]s.
A means to distribute the sources of [[Identifer]]s and [[Attribute]]s while giving more choice to [[User]]s.

Revision as of 22:10, 5 August 2018

Full Title or Meme

A means to distribute the sources of Identifers and Attributes while giving more choice to Users.


  • The current paradigm in open identity is for each conforming Relying Party to provide a list Identifier or Attribute Providers that the use could chose from to allow access.
    • In this model it was up to the Relying Party to establish a link and share a secret with the Identifier or Attribute Provider in advance of any transactions.
    • It also required the user to pre-register with one or more of those providers, typically one of the big social sites, like: Google, Microsoft or Facebook.
  • The current most common protocol for this version of a Distributed Identity was OpenID Connect which also enabled Self-issued Identity, but that concept never succeeded in the marketplace.
  • Now other organizations believe that they can succeed where the OpenID foundation failed.


  • The big problem is Trust where there are no standards or examples of any trust without a history of trusted behavior.
  • Beware of time-stamping services posing as trust anchors. Bellcore created such a service in the early 1990 and spun it off into a separate company in 1994.[1] None of these services provide any trust in the contents of the documents.
  • Proof of Persistent Identity must be provided. This can be little more than the inclusion of a public key in a blockchain, which cannot have any Assurance of protection of the Credential.



  1. BELLCORE SPINS OFF NEW COMPANY TO OFFER DIGITAL NOTARY (TM)(SM) SERVICE http://seclists.org/interesting-people/1994/Mar/100
  2. Decentralized Identity Foundation working groups http://identity.foundation/working-groups