1
OpenID in domain registry CZ.NIC - http://www.nic.cz Ondrej Filip / - - PowerPoint PPT Presentation
OpenID in domain registry CZ.NIC - http://www.nic.cz Ondrej Filip / - - PowerPoint PPT Presentation
OpenID in domain registry CZ.NIC - http://www.nic.cz Ondrej Filip / ondrej.filip @nic.cz Dec 8 2010, Cartagena, Colombia ccNSO Meeting 1 Everybody experienced this ... 2 3 N O I T A S R S T A S I P G / E E M R A N U .
2
Everybody experienced this ...
3
4
R E G I S T R A T I O N 1 . U N A M E / P A S S
5
2 . U N A M E / P A S S
6
R E G I S T R A T I O N 3 . U N A M E / P A S S
7
R E G I S T R A T I O N 4 . U N A M E / P A S S
8
A N O T H E R R E G I S T R A T I O N U N A M E / P A S S
9
Annoying :( Always same data And what if something changes?
10
Regular internet usage ... A lot of usernames/passwords We forget Obstructions :(
11
Password usage
39% 22% 14% 25%
Number of passwords used by users
1 password 2 passwords 3 passwords 4 or more
12
Password usage
Other Saved in application Special file on hard drive Monitor stickie Board or other visible place Wallet Locked drawer Mobile phone memory 5 5 8 10 12 13 21 25
Common password storage (% users)
13
First name Last name Organization Address - Street Address - City Address – ZIP code Address – Country Email Phone Fax ID number Passpord number VAT ID Birth date Password
We all know these, right?
14
Open standard Decentralized authentication Digital identities consolidation Safe, faster, and easier way to log in to web sites
15
End user CZ.NIC Service provider
How OpenID works?
Registration page Login page Web page
- 1. Creates
identity
- 3. Forwarded to
login Identity database
- 2. Opens web
page
- 4a. Forwarded
back
- 4b. Data
transfer
16
(means myID in English) One username, one password, one identity .cz domain registry + OpenID Extra features and benefits – validation levels Launched October 26, 2010!
17
mojeID
- Two levels of end users
– Identified – phone, e-mail and postal address
verified
– Validated – physical ID check (Identified + name,
address, age)
- Two levels of service providers
– Free – no contract, nor personal data by default
(but user can change it!), no information about user validation
– Contract – many personal data by default (but user
can change it!), information about user validation
18
Why registry
- More OpenID providers
– Lack of trust by end users and service providers – No validation (user can have multiple identities)
- CZ.NIC
– Neutral body – Infrastructure provider – no end user services – No commercial interest in collected data – Trusted by community – Resources to validate
19
Advantages
- End user
– Single login/password, no registration – Control over personal data – Data updating
- Service provider
– Data updating – No more multiple identities (account blocking)
- CZ.NIC
– Up-to-date database
- New services requiring validated identity
20
Live demo ...
21
One month
- About 3 500 users
- About 100 Czech sites supporting
mojeID/OpenID (and many international)
- About 2000 e-shops announced support before
the end of the year
- Negotiation with some larger service providers
about services requiring validated users – brand new services
22
Thank you for your attention
MojeID – One username, one password, one identity Ondřej Filip
- ndrej.filip@nic.cz