kantara trust frameworks 2016 05-08
TRANSCRIPT
![Page 1: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/1.jpg)
Trust Frameworks Explained (in 20 minutes or less)
Andrew Hughes [email protected]
KantaraInitiative.org
![Page 2: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/2.jpg)
About the Kantara Initiative
2
![Page 3: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/3.jpg)
What is Kantara? Non-profit founded in 2009. Comprises 60+ Leading Organizations, hundreds of Participants,
Enterprise & Governments. Connects the best of business, Government, Research & Education. Develops Innovations and Programs developing trustworthy on-line
experiences.
![Page 4: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/4.jpg)
Do you recognize our members?
![Page 5: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/5.jpg)
Kantara’s Values Trust
Operating Accreditation, Approval & Certification programs Privacy
Developing privacy respecting solutions. Security
Developing high security solutions and practices Community
Bridging technology and policy requirements
![Page 6: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/6.jpg)
WHAT IS A DIGITAL TRUST FRAMEWORK?
Explaining Digital Trust Frameworks in 20 minutes or less
![Page 7: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/7.jpg)
Fun and Exciting!
![Page 8: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/8.jpg)
What is a Digital Identity Trust Framework?
“Digital Identity”• Identity: A reference or designation used to
distinguish a unique and particular individual, organization or device.
• Trusted Digital Identity: ‘a trusted electronic representation of who I am.’
“Framework”• Digital Identity Trust Frameworks define
the ‘rules of the road’ for interactions between organizations when handling identity, authentication and authorization. Often, these Frameworks form the basis of agreements and contracts.
![Page 9: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/9.jpg)
Free provincial flags for Canada Day!
![Page 10: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/10.jpg)
Resident?
Alice
![Page 11: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/11.jpg)
Apply & Authorize information release
Ask Alice to Get Proof
Tell Telco to Give Proof
A=5 years
![Page 12: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/12.jpg)
Alice gets a free flag!
![Page 13: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/13.jpg)
Why does this work? Festival and a group of Telcos both comply with a Digital Trust
Framework
• UMA protocol is used to make it possible for Alice to authorize electronic information release from one org to another
![Page 14: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/14.jpg)
Did it work before? Kinda
Previously, Festival had to contract with every Telco and configure themselves differently for each one
Festival had to keep track of new Telcos Festival had to adapt to meet each Telco’s technical
requirement Festival had to agree to different terms & lawyer fees
were rising
![Page 15: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/15.jpg)
A reason for a framework?
To make negotiating agreements easier
![Page 16: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/16.jpg)
How?
Framework
Contracts and Agreements
StandardsRegulationsLaws
Framework Profile
![Page 17: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/17.jpg)
Contracts The program negotiates contracts with every
information source Policies, business processes, standards, operating
practices, formats
OR The program requires conformance to Trust
Framework Profile Negotiation burden lowered
![Page 18: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/18.jpg)
Some Details
![Page 19: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/19.jpg)
Digital Trust Framework Elements
Roles & Responsibilities
![Page 20: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/20.jpg)
Digital Trust Framework Elements
Business functions & Expected Processes
![Page 21: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/21.jpg)
Digital Trust Framework Elements
Processes & Criteria (proof of ‘sameness’ and ‘equivalency’)
![Page 22: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/22.jpg)
Digital Trust Framework Elements
Library of Profiles
![Page 23: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/23.jpg)
Tools and Rules Technical protocols Software / servers Cryptography Communication
protocols Standards
Policies for proof of
identity; ‘Levels’ of certainty
Privacy policy Operations practices Designated authorities
![Page 24: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/24.jpg)
The Future Possibilities Model contract clauses Automation for contracts Addition of new roles, responsibilities, business
functions Build a library of framework profiles
![Page 25: Kantara trust frameworks 2016 05-08](https://reader035.vdocuments.pub/reader035/viewer/2022062822/58865e9d1a28ab26598b67e3/html5/thumbnails/25.jpg)
Now what?Join us in innovating and verifying trusted identity solutions for the world Kantara Initiative members include global experts from industry and
government in the fields: Identity assurance Privacy Security Policy Information systems assessment
Join. Innovate. Trust. Visit.:
KantaraInitiative.org