SlideShare une entreprise Scribd logo
1  sur  37
Télécharger pour lire hors ligne
Empowering
Trust
Indicio.tech
Maya Kanehara, VP Growth & Development
maya@indicio.tech
Trusted Data Ecosystems:
What, why and how
December 23, 2021
本日のプレゼンテーションの内容
・自己紹介 
・インディシオについて
・Trusted Data Ecosystem
・テクノロジー
・Building Blocks
・How the technology works
・Code Architecture
・Cardea Project (Linux Foundation Public Health Project)
・Trusted Data Ecosystem Components
・事例
・ワークショップ
About
Maya Kanehara
セキュリティ・プライバシーの世界との出会い
2017年自身のクレジットカードが盗まれる
非営利団体Women in Security & Privacyに参加
2017年ブロックチェーンとの出会い
デジタルガレージ サンフランシスコ支店にて、イン
キュベータ・コミュニティ作り
2019年 SSI Incubatorを通して、インディシオファウン
ダーチームと出会う
2020年 インディシオ設立
(Co-founder/VP, Growth & Development)
About
Ken Ebert
Indicio前の主な経験
・Chief Technology Officer, Perfect Search/IMAT
Solutions
・Senior Manager Software Development/Senior
Software Architect, シマンテック
・Software Architect & Open Standards Engineer,
Sovrin Foundation
2020年 インディシオ設立(co-founder/ CTO)
Creation of Cardea, a complete ecosystem for the
transmission of digital health credentials, as a project
to Linux Foundation Public Health.
About Indicio
Indicio provides development and hosting for
Trusted Data Ecosystems (TDEs).
Enterprise, consumer, and mobile applications run on Indicio’s
network and use its comprehensive ecosystem of software to
issue, verify, and exchange verifiable digital credentials. Founded
on the belief in reducing fraud, privacy by design, and
user-friendly security, Indicio supports the open source and
interoperability goals of the decentralized identity community.
About Indicio
Indicio is committed to advancing Trusted Data
Ecosystems as a public good that enables
transparency, consent, and control of data
exchange for all participants.
Identity and application teams rely on Indicio’s
simplicity, extensibility, and expertise to make
trusted data work for everyone.
Copyright 2021
Trusted Data
Ecosystem (TDE)
A TDE allows seamless, efficient
data exchange that eliminates
the cost of untrustworthy
data, bringing immediate value to
participants
Value
Trusted Data Ecosystem
ISSUER
HOLDER
VERIFIER
TRUST (or lack of)
The main reason we have identity systems is to
establish trust.
The goal of decentralized identity
Analog functionality with digital efficiency
Analog World
3200 BC ~ 1964
TRUST EFFICIENCY
Physical documents sent, shown,
signed, notarized, sealed…
PRIVACY
The goal of decentralized identity
Analog functionality with digital efficiency
Hybrid World
~1964 - 2020
Analog World
3200 BC ~ 1964
TRUST EFFICIENCY
TRUST EFFICIENCY
Physical documents sent, shown,
signed, notarized, sealed…
Duplicate and/or digitized
documents sent electronically
PRIVACY
PRIVACY
The goal of decentralized identity
Analog functionality with digital efficiency
Hybrid World
~1964 - 2020
Analog World
3200 BC ~ 1964
Decentralized World
~2020 ---
TRUST EFFICIENCY
TRUST EFFICIENCY TRUST EFFICIENCY
Physical documents sent, shown,
signed, notarized, sealed…
Duplicate and/or digitized
documents sent electronically
Verification of digital document
authenticity and integrity is possible!
PRIVACY
PRIVACY
PRIVACY
Why does it work in “analog” life?
•Trusted issuers and trusted physical credentials
•Individuals who hold the credentials
•Independent verifiers
DMV
Trust
Business
It works, because I can visually
verify where the data came from
and whether it’s been altered by
the presenter
TRUST in the DATA
Trust in data comes from two forms of verification:
Integrity Being able to identify if the data is “real,” or has arrived “as-issued”
Has it been altered or tampered with?
Authenticity Being able to identify the source of the data
Does it come from the place it claims to be from?
DM
V
Trust
Business
I know it’s real, unaltered, and it
comes from a source that I trust
Placing Trust in Representations and Attestations
Carries Cost and Risk in a Hybrid World
SCAN
Email/Uploa
d
How do I know it’s real?
How do I know it hasn’t been digitally altered?
How do I know it’s coming from the person they
claim to be?
No one has ever used a fake email, or had their
email hacked, have they??
2FA with email is fine… really…
SCAN
Email/Uploa
d
A Forced Choice
Between Trust and Efficiency TRUST Processes?
Integration or callback
to origin database?
In-person /zoom
presentation?
Manual review?
Migration effort to put
data in your system?
IAM processes -
passwords
Privacy / GDPR Expensive Inefficient
Expensive Inefficient
Privacy / GDPR Expensive Inefficient
Expensive Inefficient
Fraud / Security Expensive Inefficient
Fraud / Security
SCAN
Email/Uploa
d
A Forced Choice
Between Trust and Efficiency TRUST Processes?
RISK Assumption?
Integration or callback
to origin database?
In-person /zoom
presentation?
Manual review?
Migration effort to put
data in your system?
IAM processes -
passwords
Trust the
representation, scan,
upload, password, etc
Efficient
Fraud / Security Expensive
Privacy / GDPR
Privacy / GDPR Expensive Inefficient
Expensive Inefficient
Privacy / GDPR Expensive Inefficient
Expensive Inefficient
Fraud / Security Expensive Inefficient
Fraud / Security
A Forced Choice
Between Trust and Efficiency
Trust or Efficiency Choice
Until now you couldnʼt have both and still
minimize risk/fraud/errors
Risk
Efficiency
Trust
TRUST Processes?
Integration or callback
to origin database?
In-person /zoom
presentation?
Manual review?
Migration effort to put
data in your system?
IAM processes -
passwords
Privacy / GDPR Expensive Inefficient
Expensive Inefficient
Privacy / GDPR Expensive Inefficient
Expensive Inefficient
Fraud / Security Expensive Inefficient
Fraud / Security
Trust
Decentralized Identity in a Trusted Data Ecosystem (TDE)
No longer forces a choice
Trust
Efficiency
Risk
The Trust Model
DECENTRALIZED IDENTITY
NETWORK
Credential
Issuer
Credential
Verifier
PROOF OF DATA
AUTHENTICITY
VALIDATION OF DATA
INTEGRITY & PROVENANCE
Philosophical TRUST
Cryptographic TRUST
data
data
➔ The data resides
with its owner
政府・病院など
証明書の発行元
お店・空港など
証明書を確認する側
Trust accumulates in a TDE
CREDENTIAL
ISSUER
Trust Exercises
CREDENTIAL
HOLDER
CREDENTIAL
VERIFIER
政府・病院など
証明書の発行元 お店など証明書を
承認する側
Copyright 2021
TDE Constellations
give birth to new stars
In any given ecosystem the
participants instantly gain
measurable value from the
credential data model, which
attracts new issuers, users and
verifiers.
Value
Trusted Data Ecosystem
ISSUER
HOLDER
VERIFIER
Copyright 2021
Creating a Universe
One TDE demonstrating value can
easily link with other TDEs,
rapidly growing value for all.
Credentials issued in
one TDE provide value,
efficiency and risk
reduction for other
TDEs
Value
Travel Ecosystem
ISSUER
HOLDER
VERIFIER
Value
Financial Ecosystem
ISSUER
HOLDER
VERIFIER
Value
Health Care Ecosystem
ISSUER
HOLDER
VERIFIER
Building Blocks
Validator Nodes
Mediator
Agents
Edge Agents
Web
UIs
Cloud
Agents
Enterprise
Agents
Issuer
Agents
Verifier
Agents
Holder
Mobile
Agents
Verifier
Mobile
Agents
Hyperledger
Indy Network
PII (and all Credential Data) stays with data’s owner or authorized
controller
Privacy-by-design and compliance protections
The ledger is a means of verifying the authenticity/source and integrity of data
Issuer
Holder
Verifier
Ledger
Signed Data Signed Data
DID
Schema
Definition
Revocation
Integration and accommodation of existing infrastructure
DB DB
Issuer Agent
Verifier Agent
Holder Agent
API
API
Mobile Wallet
Mobile Agent
Integrated Wallet/Agent
Custodial Wallet/Agent
A credential is created by the “issuer”
Offered and accepted to a positively
identified data owner, the “holder”
Data holder initiates a connection
to a verifier who needs access to
the data.
Using cryptographic tools in the software, the
verifier can look up a permanent public
Decentralized Identifier (DID) for the issuer. If
the issuer is deemed trustworthy, the data
points may be deemed trustworthy.
The verifier can view the
cryptographic signature of the
issuer, and know that the data
has arrived unaltered, and as
written to the credential.
BLOCKCHAIN-BASED
Verifiable Credential Verifiable Credential
CONSENT
BASED ON PRIVACY-BY-DESIGN FUNDAMENTALS
How the technology works
Linux Foundation Public Health, Cardea (cardea.app)
A verifier can request ONLY the
data required, not the entire
credential; this protects
privacy. No data is sent until the
holder explicitly approves.
DECENTRALIZED IDENTITY NETWORK
Code architecture
Hyperledger Ursa (Cryptography Library)
Hyperledger Indy Plenum
(Consensus)
Hyperledger Indy Node
(Identity Transactions)
Hyperledger Indy Plugins
Indy Resolver
Aries SDK
Aries Agent
Enterprise, Mobile Apps
Open Source Project
Contributions
- Hyperledger Indy
- Hyperledger Aries
- Hyperledger Aries- Bifold
- Linux Foundation Public Health Cardea
Cardea, a complete ecosystem for
digital health credentials contributed
to Linux Foundation Public Health for
global public health implementation
Others
Comprehensive launch
Plans and strategies
Sales enablement
Custom design
Use of open source
Best practices
Machine readable
governance
Timeline to launch
Schemas
Transaction Endorser
Transaction Author
Node Operator
• Mediator
• Enterprise
• Holder
Professionally
staffed
Indicio Complete Identity Ecosystem Building Model
• Indicio MainNet
• Indicio DemoNet
• Indicio TestNet
Trusted Data Ecosystem Components
by Indicio
Ecosystem
Deployment & Hosting
Applications
Agents
Network
Business Technical
Launch
Customer Facing
System Design
Foundational
Governance
Marketing
Strategy
UI / UX
Architecture
Network
Governance
Customer in action
Credential infrastructure for tourism-based national
economy
Allows for scaling and expansion to border crossing prior
to departure
“…biometrics and digital identity as important but
complex enablers so that travelers can look forward to
automatic and identification and clearance… Indicio
providing a real-world case study to prove our theory.”
—Jet Blue Ventures Newsletter
SITA, Indicio pave way to safer traveler
experience with launch of Aruba Health App
Health
Customer in action
Digital wallet and platform for identity assurance using
avatars to manage online personas
Bringing together credentials from banking,
government, retailers, gaming, entertainment, and
healthcare
Focused on digital native market segment
Liquid Avatar digital identity wallet
supported by Indicio Ecosystem
Entertainment, Finance and more
Customer in action
Bonifii and GlobaliD– Financial Institution digital
credential on the Indicio Network
Bonifii credential, a decentralized digital identity that
provides underserved individuals with access to
traditional banking services in a way that maximizes
their privacy and security.
GlobaliD, a trust platform and digital wallet
Financial institutions that use the Bonifii credential can
achieve higher levels of assurance than traditional
application methods.
Bonifii Credential
Finance and Identity
Aries Workshop by Hyperledger
Indy Workshop by Hyperledger
Executive Workshop by Indicio
Thank You
Maya Kanehara, VP Growth & Development
maya@indicio.tech

Contenu connexe

Tendances

Meet with Watson to be present at Communitech waterloo
Meet with Watson to be present at Communitech waterlooMeet with Watson to be present at Communitech waterloo
Meet with Watson to be present at Communitech waterloo
Sarmad Ibrahim
 
Smart City Lecture 3 - An Open And/Or Secure Smart City
Smart City Lecture 3 - An Open And/Or Secure Smart CitySmart City Lecture 3 - An Open And/Or Secure Smart City
Smart City Lecture 3 - An Open And/Or Secure Smart City
Peter Waher
 
Development of a Multi-eID access control system.
Development of a Multi-eID access control system.   Development of a Multi-eID access control system.
Development of a Multi-eID access control system.
ePractice.eu
 
Aldo Cocchiglia - M31 - European Incubators in Silicon Valley - Stanford - Ja...
Aldo Cocchiglia - M31 - European Incubators in Silicon Valley - Stanford - Ja...Aldo Cocchiglia - M31 - European Incubators in Silicon Valley - Stanford - Ja...
Aldo Cocchiglia - M31 - European Incubators in Silicon Valley - Stanford - Ja...
Burton Lee
 
The Power of Blockchain Solving Complex Business Problems
The Power of Blockchain Solving Complex Business ProblemsThe Power of Blockchain Solving Complex Business Problems
The Power of Blockchain Solving Complex Business Problems
Nagesh Caparthy
 
Introduction to ENT (Entity Network Translation)
Introduction to ENT (Entity Network Translation)Introduction to ENT (Entity Network Translation)
Introduction to ENT (Entity Network Translation)
ENT Technologies
 

Tendances (20)

Constellation Labs - Business Whitepaper
Constellation Labs - Business WhitepaperConstellation Labs - Business Whitepaper
Constellation Labs - Business Whitepaper
 
Sample Customer Advisory Board Deck
Sample Customer Advisory Board DeckSample Customer Advisory Board Deck
Sample Customer Advisory Board Deck
 
4ire presentation
4ire presentation4ire presentation
4ire presentation
 
DLT analytics and AI workshop 13 march 2019
DLT analytics and AI workshop   13 march  2019DLT analytics and AI workshop   13 march  2019
DLT analytics and AI workshop 13 march 2019
 
Meet with Watson to be present at Communitech waterloo
Meet with Watson to be present at Communitech waterlooMeet with Watson to be present at Communitech waterloo
Meet with Watson to be present at Communitech waterloo
 
Smart City Lecture 3 - An Open And/Or Secure Smart City
Smart City Lecture 3 - An Open And/Or Secure Smart CitySmart City Lecture 3 - An Open And/Or Secure Smart City
Smart City Lecture 3 - An Open And/Or Secure Smart City
 
Acronis for SAP
Acronis for SAPAcronis for SAP
Acronis for SAP
 
Smart City Lecture 2 - Privacy in the Smart City
Smart City Lecture 2 - Privacy in the Smart CitySmart City Lecture 2 - Privacy in the Smart City
Smart City Lecture 2 - Privacy in the Smart City
 
Development of a Multi-eID access control system.
Development of a Multi-eID access control system.   Development of a Multi-eID access control system.
Development of a Multi-eID access control system.
 
Aldo Cocchiglia - M31 - European Incubators in Silicon Valley - Stanford - Ja...
Aldo Cocchiglia - M31 - European Incubators in Silicon Valley - Stanford - Ja...Aldo Cocchiglia - M31 - European Incubators in Silicon Valley - Stanford - Ja...
Aldo Cocchiglia - M31 - European Incubators in Silicon Valley - Stanford - Ja...
 
20210525_BlockchainGIG#9 Linux Foundation様 ご講演資料
20210525_BlockchainGIG#9 Linux Foundation様 ご講演資料20210525_BlockchainGIG#9 Linux Foundation様 ご講演資料
20210525_BlockchainGIG#9 Linux Foundation様 ご講演資料
 
Cisco ucs overview ibm team 2014 v.2 - handout
Cisco ucs overview   ibm team 2014 v.2 - handoutCisco ucs overview   ibm team 2014 v.2 - handout
Cisco ucs overview ibm team 2014 v.2 - handout
 
Noi siamo Ivanti: più forti insieme!
Noi siamo Ivanti: più forti insieme! Noi siamo Ivanti: più forti insieme!
Noi siamo Ivanti: più forti insieme!
 
The Power of Blockchain Solving Complex Business Problems
The Power of Blockchain Solving Complex Business ProblemsThe Power of Blockchain Solving Complex Business Problems
The Power of Blockchain Solving Complex Business Problems
 
Smart City Lecture 4 - Harmonizing the Internet of Things
Smart City Lecture 4 - Harmonizing the Internet of ThingsSmart City Lecture 4 - Harmonizing the Internet of Things
Smart City Lecture 4 - Harmonizing the Internet of Things
 
Blockchain conference cwin18 mexico
Blockchain conference cwin18 mexicoBlockchain conference cwin18 mexico
Blockchain conference cwin18 mexico
 
Fast IT Mariano O'Kon, Cisco Live Cancun 2014
Fast IT Mariano O'Kon, Cisco Live Cancun 2014Fast IT Mariano O'Kon, Cisco Live Cancun 2014
Fast IT Mariano O'Kon, Cisco Live Cancun 2014
 
IEA DSM ExCo presentation Task XXIV
IEA DSM ExCo presentation Task XXIVIEA DSM ExCo presentation Task XXIV
IEA DSM ExCo presentation Task XXIV
 
Introduction to ENT (Entity Network Translation)
Introduction to ENT (Entity Network Translation)Introduction to ENT (Entity Network Translation)
Introduction to ENT (Entity Network Translation)
 
Trust Data Sharing and Utilization Infrastructure for Sensitive Data using Hy...
Trust Data Sharing and Utilization Infrastructure for Sensitive Data using Hy...Trust Data Sharing and Utilization Infrastructure for Sensitive Data using Hy...
Trust Data Sharing and Utilization Infrastructure for Sensitive Data using Hy...
 

Similaire à Trusted Data Ecosystems(信頼できるデータエコシステム):アイデンティティに価値を見出す

Digital certificates
Digital certificates Digital certificates
Digital certificates
Sheetal Verma
 

Similaire à Trusted Data Ecosystems(信頼できるデータエコシステム):アイデンティティに価値を見出す (20)

The 10 most trusted authentication solution providers of 2021
The 10 most trusted authentication solution providers of 2021The 10 most trusted authentication solution providers of 2021
The 10 most trusted authentication solution providers of 2021
 
An Expert Panel on Safe Credentials
An Expert Panel on Safe CredentialsAn Expert Panel on Safe Credentials
An Expert Panel on Safe Credentials
 
Transaction&process integrity
Transaction&process integrityTransaction&process integrity
Transaction&process integrity
 
Self-Sovereign Identity for the Decentralized Web Summit
Self-Sovereign Identity for the Decentralized Web SummitSelf-Sovereign Identity for the Decentralized Web Summit
Self-Sovereign Identity for the Decentralized Web Summit
 
Mature Digital Trust Infrastructure - Are we there yet?
Mature Digital Trust Infrastructure - Are we there yet?Mature Digital Trust Infrastructure - Are we there yet?
Mature Digital Trust Infrastructure - Are we there yet?
 
Self-Sovereign Identity: Lightening Talk at RightsCon
Self-Sovereign Identity: Lightening Talk at RightsCon Self-Sovereign Identity: Lightening Talk at RightsCon
Self-Sovereign Identity: Lightening Talk at RightsCon
 
The Future of Authentication - Verifiable Credentials / Self-Sovereign Identity
The Future of Authentication - Verifiable Credentials / Self-Sovereign IdentityThe Future of Authentication - Verifiable Credentials / Self-Sovereign Identity
The Future of Authentication - Verifiable Credentials / Self-Sovereign Identity
 
Kerberos-PKI-Federated identity
Kerberos-PKI-Federated identityKerberos-PKI-Federated identity
Kerberos-PKI-Federated identity
 
Introduction to Mydex CIC Personal Data Stores - 7th March 2013
Introduction to Mydex CIC Personal Data Stores -  7th March 2013Introduction to Mydex CIC Personal Data Stores -  7th March 2013
Introduction to Mydex CIC Personal Data Stores - 7th March 2013
 
Fool Proof: Protecting Digital Identity in the Age of the Data Breach
Fool Proof: Protecting Digital Identity in the Age of the Data BreachFool Proof: Protecting Digital Identity in the Age of the Data Breach
Fool Proof: Protecting Digital Identity in the Age of the Data Breach
 
Introduction to Self-Sovereign Identity
Introduction to Self-Sovereign IdentityIntroduction to Self-Sovereign Identity
Introduction to Self-Sovereign Identity
 
Entrust datacard --Authentication solutions overview
Entrust datacard --Authentication solutions overviewEntrust datacard --Authentication solutions overview
Entrust datacard --Authentication solutions overview
 
Ping Identity
Ping IdentityPing Identity
Ping Identity
 
Cryptograpy Exam
Cryptograpy ExamCryptograpy Exam
Cryptograpy Exam
 
Digital certificates
Digital certificates Digital certificates
Digital certificates
 
Digital Enterprise
Digital EnterpriseDigital Enterprise
Digital Enterprise
 
Barcelona presentationv6
Barcelona presentationv6Barcelona presentationv6
Barcelona presentationv6
 
Biometrics and authentication webinar v3
Biometrics and authentication webinar v3Biometrics and authentication webinar v3
Biometrics and authentication webinar v3
 
Identity as a Service
Identity as a ServiceIdentity as a Service
Identity as a Service
 
CIS14: Are the Enterprises Ready for Identity of Everything?
CIS14: Are the Enterprises Ready for Identity of Everything?CIS14: Are the Enterprises Ready for Identity of Everything?
CIS14: Are the Enterprises Ready for Identity of Everything?
 

Plus de Hyperleger Tokyo Meetup

Plus de Hyperleger Tokyo Meetup (20)

Hyperledger Irohaを活用した海外におけるCBDCとクロスボーダー送金
Hyperledger Irohaを活用した海外におけるCBDCとクロスボーダー送金Hyperledger Irohaを活用した海外におけるCBDCとクロスボーダー送金
Hyperledger Irohaを活用した海外におけるCBDCとクロスボーダー送金
 
Hyperledger FireFly - HYPERLEDGER Workshop, WebX
Hyperledger FireFly - HYPERLEDGER Workshop, WebXHyperledger FireFly - HYPERLEDGER Workshop, WebX
Hyperledger FireFly - HYPERLEDGER Workshop, WebX
 
Hyperledger Irohaを活用した海外におけるCBDCとクロスボーダー送金
Hyperledger Irohaを活用した海外におけるCBDCとクロスボーダー送金Hyperledger Irohaを活用した海外におけるCBDCとクロスボーダー送金
Hyperledger Irohaを活用した海外におけるCBDCとクロスボーダー送金
 
エンタープライズブロックチェーン構築の基礎
エンタープライズブロックチェーン構築の基礎エンタープライズブロックチェーン構築の基礎
エンタープライズブロックチェーン構築の基礎
 
ブロックチェーンを用いた自己主権型デジタルID管理
ブロックチェーンを用いた自己主権型デジタルID管理ブロックチェーンを用いた自己主権型デジタルID管理
ブロックチェーンを用いた自己主権型デジタルID管理
 
異種ブロックチェーン統合ツールHyperledger Cactiご紹介
異種ブロックチェーン統合ツールHyperledger Cactiご紹介異種ブロックチェーン統合ツールHyperledger Cactiご紹介
異種ブロックチェーン統合ツールHyperledger Cactiご紹介
 
ファイアフライ「蛍」FireFly to Public and Private Chains
ファイアフライ「蛍」FireFly to Public and Private Chainsファイアフライ「蛍」FireFly to Public and Private Chains
ファイアフライ「蛍」FireFly to Public and Private Chains
 
Hyperledger Fabric 概説
Hyperledger Fabric 概説Hyperledger Fabric 概説
Hyperledger Fabric 概説
 
Hyperledger Besuの動向
Hyperledger Besuの動向Hyperledger Besuの動向
Hyperledger Besuの動向
 
Hyperledger Iroha
Hyperledger IrohaHyperledger Iroha
Hyperledger Iroha
 
Hyperledger Aries 101
Hyperledger Aries 101Hyperledger Aries 101
Hyperledger Aries 101
 
Introduction; Blockchain 101
Introduction; Blockchain 101Introduction; Blockchain 101
Introduction; Blockchain 101
 
ブロックチェーン間のインターオペラビリティ概論
ブロックチェーン間のインターオペラビリティ概論ブロックチェーン間のインターオペラビリティ概論
ブロックチェーン間のインターオペラビリティ概論
 
ブロックチェーン統合ツールCactusとトークンエコノミー実現への期待
ブロックチェーン統合ツールCactusとトークンエコノミー実現への期待ブロックチェーン統合ツールCactusとトークンエコノミー実現への期待
ブロックチェーン統合ツールCactusとトークンエコノミー実現への期待
 
Hyperledger Fabric 簡単構築ツール minifabricのご紹介 〜productionへの移行をminifabricで加速〜
Hyperledger Fabric 簡単構築ツール minifabricのご紹介 〜productionへの移行をminifabricで加速〜Hyperledger Fabric 簡単構築ツール minifabricのご紹介 〜productionへの移行をminifabricで加速〜
Hyperledger Fabric 簡単構築ツール minifabricのご紹介 〜productionへの移行をminifabricで加速〜
 
Hyperledger Fabric Private Chaincodeについて
Hyperledger Fabric Private ChaincodeについてHyperledger Fabric Private Chaincodeについて
Hyperledger Fabric Private Chaincodeについて
 
Hyperledger Fabric活用事例:貿易プラットフォームTradeWaltz
Hyperledger Fabric活用事例:貿易プラットフォームTradeWaltzHyperledger Fabric活用事例:貿易プラットフォームTradeWaltz
Hyperledger Fabric活用事例:貿易プラットフォームTradeWaltz
 
パネルディスカッション : エンタープライズブロックチェーンの活用例 オラクル資料
パネルディスカッション : エンタープライズブロックチェーンの活用例 オラクル資料パネルディスカッション : エンタープライズブロックチェーンの活用例 オラクル資料
パネルディスカッション : エンタープライズブロックチェーンの活用例 オラクル資料
 
ソラミツのご紹介 〜Hyperledger Irohaを活用した導入事例〜
ソラミツのご紹介 〜Hyperledger Irohaを活用した導入事例〜ソラミツのご紹介 〜Hyperledger Irohaを活用した導入事例〜
ソラミツのご紹介 〜Hyperledger Irohaを活用した導入事例〜
 
いろはを活用したデジタル地域通貨の運用開始
いろはを活用したデジタル地域通貨の運用開始いろはを活用したデジタル地域通貨の運用開始
いろはを活用したデジタル地域通貨の運用開始
 

Dernier

Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Victor Rentea
 

Dernier (20)

Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfRising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
 
CNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In PakistanCNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In Pakistan
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
 
Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptx
 
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
 
Platformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityPlatformless Horizons for Digital Adaptability
Platformless Horizons for Digital Adaptability
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Vector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxVector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptx
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
MS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsMS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectors
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
 
Six Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal OntologySix Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal Ontology
 

Trusted Data Ecosystems(信頼できるデータエコシステム):アイデンティティに価値を見出す

  • 1. Empowering Trust Indicio.tech Maya Kanehara, VP Growth & Development maya@indicio.tech Trusted Data Ecosystems: What, why and how December 23, 2021
  • 2. 本日のプレゼンテーションの内容 ・自己紹介  ・インディシオについて ・Trusted Data Ecosystem ・テクノロジー ・Building Blocks ・How the technology works ・Code Architecture ・Cardea Project (Linux Foundation Public Health Project) ・Trusted Data Ecosystem Components ・事例 ・ワークショップ
  • 3. About Maya Kanehara セキュリティ・プライバシーの世界との出会い 2017年自身のクレジットカードが盗まれる 非営利団体Women in Security & Privacyに参加 2017年ブロックチェーンとの出会い デジタルガレージ サンフランシスコ支店にて、イン キュベータ・コミュニティ作り 2019年 SSI Incubatorを通して、インディシオファウン ダーチームと出会う 2020年 インディシオ設立 (Co-founder/VP, Growth & Development)
  • 4. About Ken Ebert Indicio前の主な経験 ・Chief Technology Officer, Perfect Search/IMAT Solutions ・Senior Manager Software Development/Senior Software Architect, シマンテック ・Software Architect & Open Standards Engineer, Sovrin Foundation 2020年 インディシオ設立(co-founder/ CTO) Creation of Cardea, a complete ecosystem for the transmission of digital health credentials, as a project to Linux Foundation Public Health.
  • 5. About Indicio Indicio provides development and hosting for Trusted Data Ecosystems (TDEs). Enterprise, consumer, and mobile applications run on Indicio’s network and use its comprehensive ecosystem of software to issue, verify, and exchange verifiable digital credentials. Founded on the belief in reducing fraud, privacy by design, and user-friendly security, Indicio supports the open source and interoperability goals of the decentralized identity community.
  • 6. About Indicio Indicio is committed to advancing Trusted Data Ecosystems as a public good that enables transparency, consent, and control of data exchange for all participants. Identity and application teams rely on Indicio’s simplicity, extensibility, and expertise to make trusted data work for everyone.
  • 7. Copyright 2021 Trusted Data Ecosystem (TDE) A TDE allows seamless, efficient data exchange that eliminates the cost of untrustworthy data, bringing immediate value to participants Value Trusted Data Ecosystem ISSUER HOLDER VERIFIER
  • 8. TRUST (or lack of) The main reason we have identity systems is to establish trust.
  • 9. The goal of decentralized identity Analog functionality with digital efficiency Analog World 3200 BC ~ 1964 TRUST EFFICIENCY Physical documents sent, shown, signed, notarized, sealed… PRIVACY
  • 10. The goal of decentralized identity Analog functionality with digital efficiency Hybrid World ~1964 - 2020 Analog World 3200 BC ~ 1964 TRUST EFFICIENCY TRUST EFFICIENCY Physical documents sent, shown, signed, notarized, sealed… Duplicate and/or digitized documents sent electronically PRIVACY PRIVACY
  • 11. The goal of decentralized identity Analog functionality with digital efficiency Hybrid World ~1964 - 2020 Analog World 3200 BC ~ 1964 Decentralized World ~2020 --- TRUST EFFICIENCY TRUST EFFICIENCY TRUST EFFICIENCY Physical documents sent, shown, signed, notarized, sealed… Duplicate and/or digitized documents sent electronically Verification of digital document authenticity and integrity is possible! PRIVACY PRIVACY PRIVACY
  • 12. Why does it work in “analog” life? •Trusted issuers and trusted physical credentials •Individuals who hold the credentials •Independent verifiers DMV Trust Business It works, because I can visually verify where the data came from and whether it’s been altered by the presenter
  • 13. TRUST in the DATA Trust in data comes from two forms of verification: Integrity Being able to identify if the data is “real,” or has arrived “as-issued” Has it been altered or tampered with? Authenticity Being able to identify the source of the data Does it come from the place it claims to be from? DM V Trust Business I know it’s real, unaltered, and it comes from a source that I trust
  • 14. Placing Trust in Representations and Attestations Carries Cost and Risk in a Hybrid World SCAN Email/Uploa d How do I know it’s real? How do I know it hasn’t been digitally altered? How do I know it’s coming from the person they claim to be? No one has ever used a fake email, or had their email hacked, have they?? 2FA with email is fine… really…
  • 15. SCAN Email/Uploa d A Forced Choice Between Trust and Efficiency TRUST Processes? Integration or callback to origin database? In-person /zoom presentation? Manual review? Migration effort to put data in your system? IAM processes - passwords Privacy / GDPR Expensive Inefficient Expensive Inefficient Privacy / GDPR Expensive Inefficient Expensive Inefficient Fraud / Security Expensive Inefficient Fraud / Security
  • 16. SCAN Email/Uploa d A Forced Choice Between Trust and Efficiency TRUST Processes? RISK Assumption? Integration or callback to origin database? In-person /zoom presentation? Manual review? Migration effort to put data in your system? IAM processes - passwords Trust the representation, scan, upload, password, etc Efficient Fraud / Security Expensive Privacy / GDPR Privacy / GDPR Expensive Inefficient Expensive Inefficient Privacy / GDPR Expensive Inefficient Expensive Inefficient Fraud / Security Expensive Inefficient Fraud / Security
  • 17. A Forced Choice Between Trust and Efficiency Trust or Efficiency Choice Until now you couldnʼt have both and still minimize risk/fraud/errors Risk Efficiency Trust TRUST Processes? Integration or callback to origin database? In-person /zoom presentation? Manual review? Migration effort to put data in your system? IAM processes - passwords Privacy / GDPR Expensive Inefficient Expensive Inefficient Privacy / GDPR Expensive Inefficient Expensive Inefficient Fraud / Security Expensive Inefficient Fraud / Security
  • 18. Trust Decentralized Identity in a Trusted Data Ecosystem (TDE) No longer forces a choice Trust Efficiency Risk
  • 19. The Trust Model DECENTRALIZED IDENTITY NETWORK Credential Issuer Credential Verifier PROOF OF DATA AUTHENTICITY VALIDATION OF DATA INTEGRITY & PROVENANCE Philosophical TRUST Cryptographic TRUST data data ➔ The data resides with its owner 政府・病院など 証明書の発行元 お店・空港など 証明書を確認する側
  • 20. Trust accumulates in a TDE CREDENTIAL ISSUER Trust Exercises CREDENTIAL HOLDER CREDENTIAL VERIFIER 政府・病院など 証明書の発行元 お店など証明書を 承認する側
  • 21. Copyright 2021 TDE Constellations give birth to new stars In any given ecosystem the participants instantly gain measurable value from the credential data model, which attracts new issuers, users and verifiers. Value Trusted Data Ecosystem ISSUER HOLDER VERIFIER
  • 22. Copyright 2021 Creating a Universe One TDE demonstrating value can easily link with other TDEs, rapidly growing value for all. Credentials issued in one TDE provide value, efficiency and risk reduction for other TDEs Value Travel Ecosystem ISSUER HOLDER VERIFIER Value Financial Ecosystem ISSUER HOLDER VERIFIER Value Health Care Ecosystem ISSUER HOLDER VERIFIER
  • 23. Building Blocks Validator Nodes Mediator Agents Edge Agents Web UIs Cloud Agents Enterprise Agents Issuer Agents Verifier Agents Holder Mobile Agents Verifier Mobile Agents Hyperledger Indy Network
  • 24. PII (and all Credential Data) stays with data’s owner or authorized controller Privacy-by-design and compliance protections The ledger is a means of verifying the authenticity/source and integrity of data Issuer Holder Verifier Ledger Signed Data Signed Data DID Schema Definition Revocation
  • 25. Integration and accommodation of existing infrastructure DB DB Issuer Agent Verifier Agent Holder Agent API API Mobile Wallet Mobile Agent Integrated Wallet/Agent Custodial Wallet/Agent
  • 26. A credential is created by the “issuer” Offered and accepted to a positively identified data owner, the “holder” Data holder initiates a connection to a verifier who needs access to the data. Using cryptographic tools in the software, the verifier can look up a permanent public Decentralized Identifier (DID) for the issuer. If the issuer is deemed trustworthy, the data points may be deemed trustworthy. The verifier can view the cryptographic signature of the issuer, and know that the data has arrived unaltered, and as written to the credential. BLOCKCHAIN-BASED Verifiable Credential Verifiable Credential CONSENT BASED ON PRIVACY-BY-DESIGN FUNDAMENTALS How the technology works Linux Foundation Public Health, Cardea (cardea.app) A verifier can request ONLY the data required, not the entire credential; this protects privacy. No data is sent until the holder explicitly approves. DECENTRALIZED IDENTITY NETWORK
  • 27. Code architecture Hyperledger Ursa (Cryptography Library) Hyperledger Indy Plenum (Consensus) Hyperledger Indy Node (Identity Transactions) Hyperledger Indy Plugins Indy Resolver Aries SDK Aries Agent Enterprise, Mobile Apps
  • 28. Open Source Project Contributions - Hyperledger Indy - Hyperledger Aries - Hyperledger Aries- Bifold - Linux Foundation Public Health Cardea
  • 29. Cardea, a complete ecosystem for digital health credentials contributed to Linux Foundation Public Health for global public health implementation
  • 30. Others Comprehensive launch Plans and strategies Sales enablement Custom design Use of open source Best practices Machine readable governance Timeline to launch Schemas Transaction Endorser Transaction Author Node Operator • Mediator • Enterprise • Holder Professionally staffed Indicio Complete Identity Ecosystem Building Model • Indicio MainNet • Indicio DemoNet • Indicio TestNet Trusted Data Ecosystem Components by Indicio Ecosystem Deployment & Hosting Applications Agents Network Business Technical Launch Customer Facing System Design Foundational Governance Marketing Strategy UI / UX Architecture Network Governance
  • 31. Customer in action Credential infrastructure for tourism-based national economy Allows for scaling and expansion to border crossing prior to departure “…biometrics and digital identity as important but complex enablers so that travelers can look forward to automatic and identification and clearance… Indicio providing a real-world case study to prove our theory.” —Jet Blue Ventures Newsletter SITA, Indicio pave way to safer traveler experience with launch of Aruba Health App Health
  • 32. Customer in action Digital wallet and platform for identity assurance using avatars to manage online personas Bringing together credentials from banking, government, retailers, gaming, entertainment, and healthcare Focused on digital native market segment Liquid Avatar digital identity wallet supported by Indicio Ecosystem Entertainment, Finance and more
  • 33. Customer in action Bonifii and GlobaliD– Financial Institution digital credential on the Indicio Network Bonifii credential, a decentralized digital identity that provides underserved individuals with access to traditional banking services in a way that maximizes their privacy and security. GlobaliD, a trust platform and digital wallet Financial institutions that use the Bonifii credential can achieve higher levels of assurance than traditional application methods. Bonifii Credential Finance and Identity
  • 34. Aries Workshop by Hyperledger
  • 35. Indy Workshop by Hyperledger
  • 37. Thank You Maya Kanehara, VP Growth & Development maya@indicio.tech