FROM PASSPORT ON-LINE TO NATIONAL ROUTING SYSTEM A Journey in Building a System for Identity Management Presented to the RED GEAL -- OAS March 07, 2006.

Slides:



Advertisements
Similar presentations
PEPPOL is owned by OpenPEPPOL AISBL OpenPEPPOL – Making Procurement Better André Hoddevik Head of e-procurement unit, Agency for Public Management.
Advertisements

KENYA COUNTRY EXPERIENCE ePhyto Workshop Vitoria Espirito Santo, Brazil 19 – 22 Nov Josiah Musili Syanda.
© ITU Telecommunication Development Bureau (BDT) – E-Strategy Unit.. Page - 1 Seminar on Standardization and ICT Development for the Information.
1 ABCs of PKI TAG Presentation 18 th May 2004 Paul Butler.
© State Services Commission, 2006 Authentication to access government services What might the future hold? Laurence Millar Deputy Commissioner Information.
AFACT eCOO WG interim meeting - Conference Call 1st March of 2011 Mahmood Zargar eCOO Experiences and Standards.
EDUCAUSE 2001, Indianapolis IN Securing e-Government: Implementing the Federal PKI David Temoshok Federal PKI Policy Manager GSA Office of Governmentwide.
Janice Kephart Director of National Security Policy, Center for Immigration Studies Heritage Foundation July 14, 2009.
© Southampton City Council Sean Dawtry – Southampton City Council The Southampton Pathfinder for Smart Cards in public services.
FIPS 201 Personal Identity Verification For Federal Employees and Contractors National Institute of Standards and Technology Information Technology Laboratory.
Chapters 14 & 15 Internet Databases. E-Commerce  Bringing new products, services, or ideas to market, supporting and enhancing business operations 
ESign-Online Digital Signature Service February 2015 Controller of Certifying Authorities Department of Electronics and Information Technology Ministry.
Vision 2015 & Immigration ONLINE Schools Reference Group Terrace Chambers 21 st May 2014.
Opening Presentation of Notary Reqs 8/5/2004 Tobias Gondrom.
Chief Information Officer Branch Gestion du dirigeant principal de l’information “We will have a world class public key infrastructure in place” Prime.
David L. Wasley Information Resources & Communications Office of the President University of California Directories and PKI Basic Components of Middleware.
Introduction to PKI Seminar What is PKI? Robert Brentrup July 13, 2004.
CSE 4482, 2009 Session 21 Personal Information Protection and Electronic Documents Act Payment Card Industry standard Web Trust Sys Trust.
Asper School of Business University of Manitoba Systems Analysis & Design Instructor: Bob Travica System interfaces Updated: November 2014.
Inter-jurisdictional Service Delivery Initiatives Overview of Key Potential Opportunities Victor Abele Public Sector Service Delivery Council February.
Digital Signature Technologies & Applications Ed Jensen Fall 2013.
LOGO MIRJANA SEKULOVSKA, PhD, DEPUTY MINISTER OF INFORMATION SOCIETY Republic of Macedonia Ministry of Information Society.
National Smartcard Project Work Package 8 – Security Issues Report.
Chapter 3 Mohammad Fozlul Haque Bhuiyan Assistant Professor CITI Jahangirnagar University.
Vilnius, October 21st, 2002 © eEurope SmartCards Securing a Telework Infrastructure: Smart.IS - Objectives and Deliverables Dr. Lutz Martiny Co-Chairman,
2006 CACR Privacy and Security Conference November 3, 2006 Identity: Setting the Larger Context, Achieving the Right Outcomes.
Dao Dinh Kha National Centre of Digital Signature Authentication - Agency of Information Technology Application A vision on a national Electronic Authentication.
Government of CanadaGouvernement du Canada Service Transformation through Government On-Line Helen McDonald Director General, Office of the Chief Information.
Transforming Services Creating Efficiencies Empowering Citizens Transforming Services Creating Efficiencies Empowering Citizens Transforming Services Creating.
Trade Software Developer Technical Seminar Document Imaging System March 7, 2012.
National Infrastructure Tina Yule Technical Assurance Co-ordinator 21 st Century Government Unit.
Lecture 23 Internet Authentication Applications modified from slides of Lawrie Brown.
1 PRIVACY SUB-COMMITTEE Update/Project Proposal Privacy enablers for Integrated Service Delivery for Canadians PSCIOC Meeting May 18, 2004 Chris Norman,
Presented by: Jay Maxwell CIO, AAMVA The Driver’s License: Finally, National Standards Presented by: Jay Maxwell CIO, AAMVA.
Nationwide Health Information Network: Conditions for Trusted Exchange Request For Information (RFI) Steven Posnack, MHS, MS, CISSP Director, Federal Policy.
State Alliance for e-Health Conference Meeting January 26, 2007.
Cyber Authentication Renewal Project Executive Overview June – minute Brief.
NAPHSIS REAL ID Overview June 6, 2007 In support of this key requirement,
E-Commerce Security Professor: Morteza Anvari Student: Xiaoli Li Student ID: March 10, 2001.
Strategies for Improving Civil Registration and Vital Statistics Systems: The Canadian Experience Presentation to the United Nations Expert Group Meeting.
Risks of data manipulation and theft Gateway Average route travelled by an sent via the Internet from A to B Washington DC A's provider Paris A.
XMPP Concrete Implementation Updates: 1. Why XMPP 2 »XMPP protocol provides capabilities that allows realization of the NHIN Direct. Simple – Built on.
HIT Policy Committee NHIN Workgroup Recommendations Phase 2 David Lansky, Chair Pacific Business Group on Health Danny Weitzner, Co-Chair Department of.
GRA Implementations using Open Source Technologies Mark Perbix and Yogesh Chawla SEARCH.
1 7 th CACR Information Workshop Vulnerabilities of Multi- Application Systems April 25, 2001 MAXIMUS.
North East Lincolnshire Council delivering change through partnership ( Physical Regeneration, Property and Technical Services Partnership) Planning in.
VITAL STATISTICS COUNCIL FOR CANADA CONSEIL DE LA STATISTIQUE DE L’ÉTAT CIVIL DU CANADA Vital Statistics Council for Canada Partnership Activities of your.
 Promote coordinated procedures amongst Government Agencies  Enhance Government Vision of One Stop Centers  Facilitate and promote “Doing Business.
Public Works and Government Services Canada Travaux publics et Services gouvernementaux Canada Brenda Watkins Director Policy and Business Strategies Information.
Scalable Trust Community Framework STCF (01/07/2013)
HIT Policy Committee NHIN Workgroup HIE Trust Framework: HIE Trust Framework: Essential Components for Trust April 21, 2010 David Lansky, Chair Farzad.
A Solution Perspective An Open Source Collaborative and Foundational Solution Targeted at Non-OECD Member Countries February 9, 2016.
On the Road Again: The AAMVA EVVE Pilot Project Rose Trasatti NAPHSIS Project Manager June 7, 2005.
19-20 October 2010 IT Directors’ Group meeting 1 Item 6 of the agenda ISA programme Pascal JACQUES Unit B2 - Methodology/Research Local Informatics Security.
1 Overview of the Hub Concept & Prototype for Secure Method of Information Exchange (SMIE) April 2013 Prepared by NZ & USA.
1 Virtual broker system Zlatica Tomašević. 2 Content External domain - Submission of customs declaration Introduction Croatian practise.
TAG Presentation 18th May 2004 Paul Butler
The Solution SSIVS.
TAG Presentation 18th May 2004 Paul Butler
Module 8: Securing Network Traffic by Using IPSec and Certificates
A Guide to Canadian Immigration
The 3rd IPPC Global Symposium on ePhyto
Goals Introduce the Windows Server 2003 family of operating systems
Central e-Government Products: Current & Planned
Regional Initiatives – South Asia Civil Registration Group (CR8)
Dashboard eHealth services: actual mockup
Module 8: Securing Network Traffic by Using IPSec and Certificates
Enterprise Integration
E-identities (and e-signatures)
Presentation transcript:

FROM PASSPORT ON-LINE TO NATIONAL ROUTING SYSTEM A Journey in Building a System for Identity Management Presented to the RED GEAL -- OAS March 07, 2006

Outline Passport Canada Overview Passport On-line Identity Management Context Project Vision and Benefits Description of the System and how it works Status of the project and Lessons Learned

Passport Canada Snapshot 1,800 employees 33 offices across Canada 93 Receiving Agents across Canada 3 million passports issued per year $ 200 million in revenue An Agency in transition

Where Are We? 4  33 Passport Canada offices  2 print centres  2 call centres  58 Canada Post outlets  35 Service Canada Centres  Passport On-Line  33 Passport Canada offices  2 print centres  2 call centres  58 Canada Post outlets  35 Service Canada Centres  Passport On-Line 4 Passport Canada Offices Receiving Agent

Our Clients & What We Know 39% of all Canadians currently hold a valid passport 3 million passports issued per year in Canada, 120,000 abroad. All stateless and refugees accepted to reside in Canada

Passport Volumes

Passport On-line The concept -- PoL –Characteristics –One key-element (enabler): electronic validation of identity (including citizenship) –Build a pilot 9/11 –Temporarily suspend activities on PoL to take stock –Electronic validation of identity for ALL applicants retained as a measure for integrity enhancement –Resume “PoL Pilot” with emphasis on the electronic validation functionnality

Identity Management in Canada Context Key Drivers for Action –Heightened threats to national and personal security (aftermath of terrorist events of 9/11) –Identity theft and resultant fraud Counterfeit birth or citizenship certificates Day of the Jackal identity theft – “tombstoning” Using a deceased persons identity –Entitlement fraud and commercial fraud –Border concerns, international pressures What underpins effective identity management in Canada is the efficient sharing and use of vital events information

Background - Who holds this vital events information? Vital Statistics is a provincial/territorial responsibility. Vital Statistics Organizations (VSOs) record/register all of the vital events from “cradle to grave” For persons not born in Canada, Citizenship and Immigration Canada (CIC) possess the initial information, i.e. immigration and citizenship information

The Use of Vital Events Information by the NRS Partners NRS Partners needs to be able to authenticate/verify vital events information and be notified when an event takes place. This defines two functionalities: –Query functionality –Notification functionality The key is to “route” this vital events information, whether it is in the form of a query/response or a notice, by increasing inter-operability amongst vital events information holders and users.

Project Vision Enable 100% real-time verification of birth certificates and citizenship documents used by applicant to confirm Canadian citizenship Real-time exchange of data among all partners All provinces / territories and CIC –No weak “links” as any weaknesses will most certainly be exploited by criminal/terrorist elements Secondary Objective/Benefit –Leverage the service by making it available to other partners

Key Benefits An automated system and processes for verifying the validity of Canadian birth certificates and citizenship documents submitted with passport applications A secure electronic connection to each Province/Territory enabling real-time queries Enables timely death notification between provincial/territorial vital stats organizations significantly reducing risk of “tombstoning”

Ancillary Benefits Potential savings if entitlement programs have access to timely death notification Enables electronic transmittal of vital events information to Statistics Canada Other partners can be easily added Shared service/ownership among jurisdictions No databases created, no major privacy issues

What is the National Routing “System”? The NRS is made up of several inter- dependant components that are required for the “system” to operate effectively

NATIONAL ROUTING SYSTEM The National Routing System and its Components Funding, Authorities and Approvals Information Transfer System (SMRS, Internet) Security Legislation, policy and agreements Standards and Business Rules Source Information Extraction System (VSOs, CIC) Information Integration System (Back end Systems) Project Management, Governance and Sustainment

The Database

The NRS’s Technical Solution A B2B, real-time, secure, reliable electronic mechanism for exchange of sensitive data Current NRS technical components : –Secure Channel (Secure Message Routing Service (R1); –Communication link between trading partners; –Authentication and authorization functions; –Digital Certificates (Digital Signature and Encryption);

The NRS’s Technical Solution Current NRS technical components (continued): –Trading Partner Specific Business Rules Mutually agreed-to-rules are implemented at either end –Change Management Process –Help Desk Infrastructure –Electronic Technical/Business Library

The NRS’s Technical Solution What is the NRS Messaging Technology: –ebXML (electronic business using eXtensible Markup Language); –Provides reliable and secure messaging between two or more business entities (trading partners); –Based on an Open Standard (non-proprietary); –Platform independent; –Offered by a number of Product Vendors; –Scalable (can quickly add additional Trading Partners)

The NRS’s Technical Solution What is the NRS Messaging Technology (continued): –Adds reliability (guaranteed delivery of messages); –Add Security (message level encryption, in addition to transport level encryption); –Supported by independent 3 rd party product interoperability cross certifications (e.g. Drummond Group); and –ebXML provides a low barrier to entry for any organization.

NRS Conceptual View Secure Routing Environment Passport Database Prov/TerrVSO PPTC Examiner VSO Data Base OGD Partner Other VSO

Processing of Query Results

Current Status and Next Steps Successful pilot between five partners is being conducted Plans have been developed to engage other partners including all thirteen provinces and territories Authority and funding to implement will be sought by late fall 2006 The NRS will subsequently be rolled out on a national basis with the solution in place by summer 2008

VSO Other SIN-BASED FED PROG NON SIN-BASED PROG Passport Others, e.g. Pensions SIN / SIR NGOs CIC Legend --- Notification Only — Query --- Both... To Be Determined Secure Routing Environment Project elements as developed in support of NRS/NRS Pilot: Policy (ID Policy Framework) Requirements Business Rules Data Standards Security Technical Documentation Provincial / Territorial Through NRS, VSOs notify each other Private Sector FEDERAL FAMILY StatsCan SUBSCRIBERS Long Term Vision

Conclusions and Lessons Learned NRS contributes to a number of national and international initiatives related to identity management The technology exists to support a secure system for the exchanging of vital events information Concerns for the safeguarding of personal information must be addressed Standards (technology, data) are an important inter- operability issue Keep it simple – limit your scope and roll out in manageable chunks