From alias to SPID

Preview:

Citation preview

From alias to SPID

The evolution of Digital Identity Raffaele Poli

What is identity?Persona

l• family• friends

Job

• co-worker• customer

s• providers

Public• law• chance

What is digital identity?Persona

l• mobile• whatsapp

Job• linkedin• twitter• E-mail

Public• certified

email• blog

Virtual Identity vs Digital IdentitySecond life - 2003

• 47 million users• 40 thousand active

every day

There is no longer the idea of virtual reality, or rather it is not effective

Facebook - 2004

• Billions of users• milions active every

day

Our reality is expanded, not replaced by digital

The future of digital identity?

Identity ( void )Access manager

IoT Account

eIDAS

SPID*

*Italian acronym

What is digital identity?

Digital identity is that thing that allows us to maximize the user experience, it's that level of profiling that once was "the usual?" at the bar. But now the bar is as big as the whole

world.

Issues of digital identity

Security User experience

Privacy

Data leak? (data breach)The problem exists, but how easy is it to understand if it is overvalued or undervalued?

Security is a perception ...

'Data breach: $ 150 million by 2020 in the US, with the global annual cost forecast to be $ 2.1 trillion "

Cyber warfare: yes, it is a problem, but is it relevant?

Access manager - Facebook

Identity ( void )Access manager

IoT Account

eIDAS

SPID

Access manager

From cookies to proximity marketingIn theory

• Who I am

• What I know

• What I have

In practice

• Password• Token

• Biometric• One-time password

From cookies to proximity marketingUser experience

• Cookies• SSO

• Password manager• Smartphone as a token

Defer the burden of proof!

Internet of Things (Apple)

Identity ( void )Access manager

IoT Account

eIDAS

SPIDIoT

What do they talk about the whole day?

Identity provider for IoT?Info gathering• Sensors• Customers

Info processing• Machine learning• Augmented reality

Product• Automation• 3d printing

Process• Integration• On-demand

Account manager (google)

Identity ( void )Access manager

IoT Account

eIDAS

SPIDAccount

Log-in TO google, not WITH google• operating system • browser • e-mail • social network • maps• music• app • games • news• books • files• videos • IM • developer ’s platform• laptop • glasses • … • …..

• Vendor lock-in• Problems (limited)

of interoperability• Problems of

marketing

SPID – login unico per la PA

Identity ( void )Access manager

IoT Account

eIDAS

SPIDSPID

What is SPID?• 3 livels of security

– User and password– User and password and one-time password– User and password and smartcard

• Different identity providers• Different services, the whole PA by the end of 2017• Free (do providers agree?)• Information reserved (but available aggregated)

eIDAS – legal digital documents

Identity ( void )Access manager

IoT Account

eIDAS

SPID

eIDAS

What is eIDAS?

Common European legislation for:• SPID• Digital Signature• Time stamps• Certified e-mail

Timeline eIDAS

Il futuro ?

Identity managerAccess manager

IoT Account

eIDAS

SPID

4 keys questions …

Who?Citizens, internet users, refugees

When?eIDAS fully operational by 2018IdP +18% in the next 5 years

Dove?EU, USA, UK(eIDAS, NSTIC, gov.UK.verify)

Cosa?Digital citizenshipIoT

… +1: Why?• In the history of technology there is no «convergence», but

a proliferate of solutions around a problem• Even when one is dominant, it never remains aloneThe fact is that:• Technologically it is possible• The best possible UX is that of a single account, an

extension of user’s self

Raffaele PoliMailcode: 10.000.004

Thanks!

Recommended