4. Current Work
Creating a Pan-Canadian Trust Framework for the
Digital Identification & Authentication Council of
Canada (DIACC)
Stakeholders include: federal & provincial
governments; financial institutions; telecom
providers; credit bureaus; identity networks / hubs;
credential managers, others
Wildly divergent needs, expectations and
operational modes
5. What is a Digital Identity Trust Framework?
“Digital Identity”
• Identity: A reference or designation used to
distinguish a unique and particular individual,
organization or device.
• Trusted Digital Identity: ‘a trusted
electronic representation of who I am.’
“Framework”
• Digital Identity Trust Frameworks define
the ‘rules of the road’ for interactions
between organizations when handling
identity, authentication and authorization.
Often, these Frameworks form the basis of
agreements and contracts.
6. Functions
The DIACC Framework covers
Person Identity Proofing (Registration Authorities)
Credential Management
Authorization policy (PDP)
Access control (PEP)
Authentication of Credentials (Verifier)
Establishment of government authoritative identity
records
8. A reason for a framework?
To make negotiating agreements easier
9. Reasons for Frameworks
STANDARDIZATION of identity, authentication &
access control processes and technologies within a
trust community
LESSEN BURDEN by amalgamating published
standards to reduce burden of adopters to know all
the standards
Framework Profile creation process captures
community-specific details, regulated requirements
– GOVERNED by a designated body
Assessment & conformance approach will
acknowledge and use PRIOR USE and certifications
16. Tools and Rules
Technical protocols
Software / servers
Cryptography
Communication
protocols
Standards
Policies for proof of
identity; ‘Levels’ of
certainty
Privacy policy
Operations practices
Designated authorities
17. The Future Possibilities
Model contract clauses
Automation for contracts
Addition of new roles, responsibilities, business
functions
Build a library of framework profiles
18. Now what?
Join us in innovating and verifying trusted identity solutions for the world
Kantara Initiative members include global experts from industry and
government in the fields:
Identity assurance
Privacy
Security
Policy
Information systems assessment
Join. Innovate. Trust. Visit.:
KantaraInitiative.org
Enabling communities to verify high-value ID credentials for Trust.Kantara Members have a wealth of experience: Identity Assurance, Privacy, Policy and Information Systems Assessment. We’re here to help your community ensure Federated Identity Systems are verified for trust.