25
From alias to SPID The evolution of Digital Identity Raffaele Poli

From alias to SPID

Embed Size (px)

Citation preview

Page 1: From alias to SPID

From alias to SPID

The evolution of Digital Identity Raffaele Poli

Page 2: From alias to SPID

What is identity?Persona

l• family• friends

Job

• co-worker• customer

s• providers

Public• law• chance

Page 3: From alias to SPID

What is digital identity?Persona

l• mobile• whatsapp

Job• linkedin• twitter• E-mail

Public• certified

email• blog

Page 4: From alias to SPID

Virtual Identity vs Digital IdentitySecond life - 2003

• 47 million users• 40 thousand active

every day

There is no longer the idea of virtual reality, or rather it is not effective

Facebook - 2004

• Billions of users• milions active every

day

Our reality is expanded, not replaced by digital

Page 5: From alias to SPID

The future of digital identity?

Identity ( void )Access manager

IoT Account

eIDAS

SPID*

*Italian acronym

Page 6: From alias to SPID

What is digital identity?

Digital identity is that thing that allows us to maximize the user experience, it's that level of profiling that once was "the usual?" at the bar. But now the bar is as big as the whole

world.

Page 7: From alias to SPID

Issues of digital identity

Security User experience

Privacy

Page 8: From alias to SPID

Data leak? (data breach)The problem exists, but how easy is it to understand if it is overvalued or undervalued?

Security is a perception ...

'Data breach: $ 150 million by 2020 in the US, with the global annual cost forecast to be $ 2.1 trillion "

Cyber warfare: yes, it is a problem, but is it relevant?

Page 9: From alias to SPID

Access manager - Facebook

Identity ( void )Access manager

IoT Account

eIDAS

SPID

Access manager

Page 10: From alias to SPID

From cookies to proximity marketingIn theory

• Who I am

• What I know

• What I have

In practice

• Password• Token

• Biometric• One-time password

Page 11: From alias to SPID

From cookies to proximity marketingUser experience

• Cookies• SSO

• Password manager• Smartphone as a token

Defer the burden of proof!

Page 12: From alias to SPID

Internet of Things (Apple)

Identity ( void )Access manager

IoT Account

eIDAS

SPIDIoT

Page 13: From alias to SPID

What do they talk about the whole day?

Page 14: From alias to SPID

Identity provider for IoT?Info gathering• Sensors• Customers

Info processing• Machine learning• Augmented reality

Product• Automation• 3d printing

Process• Integration• On-demand

Page 15: From alias to SPID

Account manager (google)

Identity ( void )Access manager

IoT Account

eIDAS

SPIDAccount

Page 16: From alias to SPID

Log-in TO google, not WITH google• operating system • browser • e-mail • social network • maps• music• app • games • news• books • files• videos • IM • developer ’s platform• laptop • glasses • … • …..

• Vendor lock-in• Problems (limited)

of interoperability• Problems of

marketing

Page 17: From alias to SPID

SPID – login unico per la PA

Identity ( void )Access manager

IoT Account

eIDAS

SPIDSPID

Page 18: From alias to SPID

What is SPID?• 3 livels of security

– User and password– User and password and one-time password– User and password and smartcard

• Different identity providers• Different services, the whole PA by the end of 2017• Free (do providers agree?)• Information reserved (but available aggregated)

Page 19: From alias to SPID

eIDAS – legal digital documents

Identity ( void )Access manager

IoT Account

eIDAS

SPID

eIDAS

Page 20: From alias to SPID

What is eIDAS?

Common European legislation for:• SPID• Digital Signature• Time stamps• Certified e-mail

Page 21: From alias to SPID

Timeline eIDAS

Page 22: From alias to SPID

Il futuro ?

Identity managerAccess manager

IoT Account

eIDAS

SPID

Page 23: From alias to SPID

4 keys questions …

Who?Citizens, internet users, refugees

When?eIDAS fully operational by 2018IdP +18% in the next 5 years

Dove?EU, USA, UK(eIDAS, NSTIC, gov.UK.verify)

Cosa?Digital citizenshipIoT

Page 24: From alias to SPID

… +1: Why?• In the history of technology there is no «convergence», but

a proliferate of solutions around a problem• Even when one is dominant, it never remains aloneThe fact is that:• Technologically it is possible• The best possible UX is that of a single account, an

extension of user’s self

Page 25: From alias to SPID

Raffaele PoliMailcode: 10.000.004

Thanks!