Burton Group Catalyst Workshop June Leung on behalf of Stephen Wilson Chair, OASIS PKI Adoption TC The OASIS PKI Adoption TC Objectives and Work Program.

Slides:



Advertisements
Similar presentations
Multi-Application in Smart Card-based Devices Christophe Colas, Chief Software Architect August 2002.
Advertisements

Overview of US Federal Identity Management Initiatives Peter Alterman, Ph.D. Chair, Federal PKI Policy Authority and Asst. CIO E-Authentication, NIH.
What is the W-SPES Project? Carlo Pentimalli (Prato, Italy)
15June’061 NASA PKI and the Federal Environment 13th Fed-Ed PKI Meeting 15 June ‘06 Presenter: Tice DeYoung.
ULTIMA*HIS - WEB ENABLED -  ITC Software All rights reserved. ITC Software.
August 2004 Providing Industry-wide Security and Identity Management Solutions.
Opening Presentation of Notary Reqs 8/5/2004 Tobias Gondrom.
1/13/05NCASSR PNNL Visit1 Security Tools Area Overview, Credential Management Services, and the PKI Testbed Jim Basney Senior Research Scientist
Page 1 Issues in and perspectives on electronic authentication of health professionals Pascal POITEVIN Marketing and Communication manager GIP-CPS e-Health.
The OASIS IDtrust (I M The OASIS IDtrust (Identity and Trusted Infrastructure ) Member Section For more information please see:
Digital Identities for Networks and Convergence Joao Girao, Amardeo Sarma.
David L. Wasley Information Resources & Communications Office of the President University of California Directories and PKI Basic Components of Middleware.
10/20/2011Pomcor 1 Deployment and Usability of Cryptographic Credentials Francisco Corella Karen Lewison Pomcor.
Click to edit Master title style OASIS PKI Workshop.
Sentry: A Scalable Solution Margie Cashwell Senior Sales Engineer Sept 2000 Margie Cashwell Senior Sales Engineer
Public Key Superstructure It’s PKI Jim, but not as we know it! 7 th Annual “IDtrust” Symposium 5 March 2008, Gaithersburg MD, USA Stephen Wilson Lockstep.
Authentication choices! Vincent van Kooten: Business Sales Manager Benelux Distributed by -
Stephen Wilson Chair, PKI Adoption Technical Committee Managing Director, Lockstep, Australia PKIA Goals for 2007 Stephen Wilson Chair, PKI Adoption Technical.
Obstacles to PKI Deployment and Usage – Conclusions Relevant to pki4ipsec Steve Hanna, Co-chair, OASIS PKI TC.
Enterprise Key Management Infrastructure (EKMI) Arshad Noor CTO, StrongAuth, Inc. Chair, EKMI TC – OASIS
EDUCAUSE Fed/Higher ED PKI Coordination Meeting
Obstacles to PKI Deployment and Usage - Survey Results and Draft Action Plan Steve Hanna, Co-chair, OASIS PKI TC.
Burton Group Catalyst Meeting Barcelona, Spain 22 October 2007 June Leung OASIS PKI Adoption TC The OASIS PKI Adoption TC Objectives and Case Studies Burton.
OASIS PKI Action Plan – Overcoming Obstacles to PKI Deployment and Usage Steve Hanna, Co-Chair, OASIS PKI Technical Committee.
1 DoD Public Key-Enabling (PK-E) of Applications 1st Annual PKI Research Workshop NIST 4/25/02.
Alcatel Identity Server Alcatel SEL AG. Alcatel Identity Server — 2 All rights reserved © 2004, Alcatel What is an Identity Provider?  
Aligning Health Information Standards Development with the National eHealth Agenda HEALTH INFORMATION MANAGEMENT ASSOCIATION OF AUSTRALIA LIMITED 26 September.
CAMP - June 4-6, Copyright Statement Copyright Robert J. Brentrup and Mark J. Franklin This work is the intellectual property of the authors.
Public Key Infrastructure Ammar Hasayen ….
Digital Certificates Public Key Deception Digital Certificates Certificate Authorities Public Key Infrastructures (PKIs)
Deploying a Certification Authority for Networks Security Prof. Dr. VICTOR-VALERIU PATRICIU Cdor.Prof. Dr. AUREL SERB Computer Engineering Department Military.
Vilnius, October 21st, 2002 © eEurope SmartCards Securing a Telework Infrastructure: Smart.IS - Objectives and Deliverables Dr. Lutz Martiny Co-Chairman,
Copyright OASIS, 2001 OASIS Election & Voter Services Technical Committee John Borras Office of e-Envoy Cabinet Office UK Government May 2002.
Best Practices in Deploying a PKI Solution BIEN Nguyen Thanh Product Consultant – M.Tech Vietnam
PRESENTATION OF ETSI © ETSI All rights reserved Sophia Antipolis, 22 May 2014 Luis Jorge Romero Director General, ETSI.
APKIF WWCWG Meeting Beijing 4 November 2005 Stephen Wilson OASIS Liaison Representative to APKIF Managing Director, Lockstep Consulting The OASIS Third.
Burton Group Catalyst Meeting xxxxxxxxx Stephen Wilson Chair, OASIS PKI Adoption TC The OASIS PKI Adoption TC Objectives and Work Program Burton Group.
ULTIMA*HIS - WEB ENABLED -  ITC Software All rights reserved. ITC Software.
PKI interoperability and policy in the wireless world.
Special Publication : Interfaces for Personal Identity Verification Jim Dray NIST NPIVP Workshop March 3, 2006.
GC Credential Management Evolution for the OASIS/World Bank eGov Workshop 17 th April, 2009For information, please contact:
Security Protocols and E-commerce University of Palestine Eng. Wisam Zaqoot April 2010 ITSS 4201 Internet Insurance and Information Hiding.
Chapter 23 Internet Authentication Applications Kerberos Overview Initially developed at MIT Software utility available in both the public domain and.
September, 2005What IHE Delivers 1 Mike Schmidt, Carl Zeiss Meditec IHE Eye Care Webinar Business Overview of IHE Eye Care June 6-7, 2006.
Europe's work in progress: quality of mHealth Pēteris Zilgalvis, J.D., Head of Unit, Health and Well-Being, DG CONNECT Voka Health Community 29 September.
PKI Forum Business Panel March 6, 2000 Dr. Ray Wagner Sr. Director, Technology Research.
PKI Survey Chet Ensign OASIS Individual Member Chet Ensign OASIS Individual Member Study on the Use of PKI in OASIS Standards March 26th, 2008.
Digital Signatures to support Trust Ronny Bjones Security Architect Microsoft Corporate
Cellular Device – Versatile personal identification Joint workshop on mobile web privacy W3C presentation, Dec
PKI and the U.S. Federal E- Authentication Architecture Peter Alterman, Ph.D. Assistant CIO for e-Authentication National Institutes of Health Internet2.
1 Using GSM/UMTS for Single Sign-On 28 th October 2003 SympoTIC 2003 Andreas Pashalidis and Chris J. Mitchell.
Standards in E government Harm Jan van Burg OASIS E-gov Technical Committee Oasis adoption forum, London October 17,
Cloud Computing, Policy Management and Standardization Europe Identity Conference 2011 John Sabo, Director Global Government Relations, CA Technologies.
User Interface Requirement for the Internet X.509 PKI Jaeho Yoon (on behalf of Tae K. Choi) KOREA INFORMATION SECURITY AGENCY August 4, 2004.
OASIS Trust Elevation Elevate Trust in Electronic Identities Gershon Janssen, Member OASIS Trust Elevation TC
Libpkix & CertPath: Bringing High Quality Certificate Handling to the Masses PKI Higher Education Summit July 14, 2004 Steve Hanna, Sun Microsystems, Inc.
PKI: The Key to Electronic Identity Initiatives? Overview of models and examples Stijn Bijnens, SVP Identity Management, Cybertrust.
Update on ETSI Security work Charles Brookson OCG Security Chairman DOCUMENT #:GSC13-PLEN-57 FOR:Information SOURCE:Charles Brookson AGENDA ITEM:6.3
Fundamental Digital Electronics
The Trusted Network · · · LEFIS PKI · · · 2 nd June, 2006 · Sofia by Leonardo Catalinas · May 2006
Expectations for the New Secure Network Age panel discussion Asia PKI Forum Conference Tokyo 24 February 2005 Stephen Wilson (OASIS liaison to APKIF) PKI.
OASIS Juan Carlos Cruellas – UPC Stefan Drees - DSS-X co-chair Nick Pope – Thales eSecurity OASIS Digital Signature Services and ETSI standards Juan Carlos.
OASIS IDtrust Member Section June Leung Chair, OASIS IDtrust Member Section Steering Committee
The Future Digital Identity Landscape in Europe Stefane Mouille/Detlef Houdeau World eID Congress, 27th of Sep. 2017, Marseille, France.
DHA 724 Education for Service/tutorialrank.com
U.S. Federal e-Authentication Initiative
Organization for the Advancement of Structured Information Standards
My name is Pascal Urien, ENST
WG 1.5 b Summary Statement: Qualitative e-Government-services and effective front-office are conditioned by a good back-office Presentation of Emmanuel.
Presentation transcript:

Burton Group Catalyst Workshop June Leung on behalf of Stephen Wilson Chair, OASIS PKI Adoption TC The OASIS PKI Adoption TC Objectives and Work Program Burton Group Catalyst Workshop June Leung on behalf of Stephen Wilson Chair, OASIS PKI Adoption TC

The PKI environment c n PKI is resurgent n Embedded PKI is commonplace n We’re all in the midst of a paradigm shift to identity plurality n Digital Certificates can be about relationships as well as (or instead of) personal identity n Successful PKI has always been application specific, not general purpose

Resurgent, embedded PKI n Closed (vertical) schemes l US PIV, Identrus, ICAO e-passports, CableLabs, Skype, BankID (Sweden) n Health smartcards l France, Germany, Taiwan, Italy, Austria, Australia … n Digital Credentials l US Patent Office, France, Taiwan, Australia …

Identity plurality n “Identity 2.0” (archetype: Cardspace) l Too soon to tell precise outcomes l But it’s a progressive re-think of identity, context, privacy, control etc. l Fundamental concept is plurality of identities. n Stephen Kent’s critique: “For big CAs, there is an implicit assumption that a single certificate is all that a user should need. This assumes that one identity is sufficient for all applications, which contradicts experience”

The top five obstacles According to OASIS Surveys 1 & 2: 1. Software applications don’t support PKI 2. Costs too high 3. PKI poorly understood 4. Too much focus on technology (not need) 5. Poor interoperability

PKIA TC: Fresh objectives n Continue to overcome obstacles with targeted practical initiatives that improve understanding of PKI n Disseminate case studies n Develop position papers n Liaise more closely with other OASIS efforts, esp. under the umbrella of the new IDtrust Member Section

Embedded PKI application: Device authentication Some of the oldest, most successful PKIs are for device authentication: n GSM SIM cards n SSL server certificates n IPsec VPN devices n Cable Open TV set-top boxes

Embedded PKI application: Skype n Each Skype subscriber receives a digital certificate embedded in Skype install n “Zero User Interface” (ZUI) principle; i.e. Subscriber unaware of their certificate! n

Embedded PKI application: Medicos’ smartcards n France (500,000) n Taiwan (300,000) n Australia (10,000) l wide range of PKI enabled lodgments l electronic prescribing in development l certificates represent doctor’s qualifications l wholesale supply to hospitals etc.

Case Studies n Digital Signatures deployed in US Notary n Digital Signatures used in an international clinical company improve workflow and efficiency. n Certificates provided to Health Care Providers in Australia for business to government transactions. More information? Please visit Idtrust.xml.org

OASIS PKI AdoptionTechnical Committee Stephen Wilson