Belgian proposal of an organization model for an electronic identity card Frank Robben General Manager Crossroads Bank for Social Security Sint-Pieterssteenweg.

Slides:



Advertisements
Similar presentations
© fedict All rights reserved Legal aspects Belgian electronic identity card Samoera Jacobs – November 2008.
Advertisements

1 ABCs of PKI TAG Presentation 18 th May 2004 Paul Butler.
© State Services Commission, 2006 Authentication to access government services What might the future hold? Laurence Millar Deputy Commissioner Information.
Public Key Infrastructure A Quick Look Inside PKI Technology Investigation Center 3/27/2002.
E-government programme of the Belgian social sector for small and medium-sized enterprises Frank Robben General manager Crossroads Bank for Social Security.
© Southampton City Council Sean Dawtry – Southampton City Council The Southampton Pathfinder for Smart Cards in public services.
Certification Authority. Overview  Identifying CA Hierarchy Design Requirements  Common CA Hierarchy Designs  Documenting Legal Requirements  Analyzing.
Department of Labor HSPD-12
Respecting Privacy in Global Networks/ Guernsey, Wednesday 11 th April, Paula Ortiz López Spanish Data Protection Agency.
Legal Issues on PKI & qualified electronic certificates. THIBAULT VERBIEST Attorney-at-law at the Brussels and Paris Bar Professor at the Universities.
Chief Information Officer Branch Gestion du dirigeant principal de l’information “We will have a world class public key infrastructure in place” Prime.
Information security An introduction to Technology and law with focus on e-signature, encryption and third party service Yue Liu Feb.2008.
6/1/20151 Digital Signature and Public Key Infrastructure Course:COSC Instructor:Professor Anvari Student ID: Name:Xin Wen Date:11/25/00.
1 ARPA A regional infrastructure for secure role-based access to RTRT services Ing. Laura Castellani Tuscany Region.
Crossroads Bank for Social Security & eHealth platform How federal institutions support Belgian social and health care sector.
E-government in the Belgian social sector coordinated by the Crossroads Bank for Social Security Frank Robben General manager Crossroads Bank for Social.
Page 1 ©2000 Bull Major Challenges in e-Government Value System in modern IS’s for Public services Claude Boulle, European Affairs FP 6 Consultation Meeting.
WAP Public Key Infrastructure CSCI – Independent Study Fall 2002 Jaleel Syed Presentation No 5.
Conditions for an effective and efficient E-government Frank Robben General manager Crossroads Bank for Social Security Strategic advisor Federal Public.
Some initiatives of the Belgian government in order to stimulate E-government Frank Robben General manager Crossroads Bank for Social Security Sint-Pieterssteenweg.
Federal Information Processing Standard (FIPS) 201, Personal Identity Verification for Federal Employees and Contractors Tim Polk May.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 9: Planning and Managing Certificate Services.
Polytechnic University of Tirana Faculty of Information Technology Computer Engineering Department Identification of on-line users and Digital Signature.
Designing and Implementing Secure ID Management Systems: BELGIUM’s Experience Washington - September 27 th, 2010 Frank LEYMAN © fedict All rights.
The Crossroads Bank for Social Security, a model for the health care sector ? Frank Robben General manager Crossroads Bank for Social Security Sint-Pieterssteenweg.
E-Government Security and necessary Infrastructures Dimitrios Lekkas Dept. of Systems and Products Design Engineering University of the Aegean
Workshop on registered electronic mail policies and implementation Ankara, March 2015 Davide Mula REM country practice in legal infrastructure,
© Julia Wilk (FHÖV NRW) 1 Digital Signatures. © Julia Wilk (FHÖV NRW)2 Structure 1. Introduction 2. Basics 3. Elements of digital signatures 4. Realisation.
Ministry of Transport, Information Technology and Communications Technological base: Interoperability Tsvetanka Kirilova Ministry of TITC Bulgaria.
E-government in the Belgian social security sector: a successful combination of back- office integration and an e-portal solution Crossroads Bank for Social.
Digital Signature Xiaoyan Guo/ Xiaohang Luo/
Controller of Certifying Authorities Public Key Infrastructure for Digital Signatures under the IT Act, 2000 : Framework & status Mrs Debjani Nag Deputy.
Secure Systems Research Group - FAU Patterns for Digital Signature using hashing Presented by Keiko Hashizume.
National Smartcard Project Work Package 8 – Security Issues Report.
“NATIONAL CHAMBER OF PRIVATE BAILIFF OFFICERS ” in the new era of the online execution SIAIP INTRODUCTION 16 th of December 2014.
1st MODINIS workshop Identity management in eGovernment Frank Robben General manager Crossroads Bank for Social Security Strategic advisor Federal Public.
Chapter © 2012 Pearson Education, Inc. Publishing as Prentice Hall.
Copyright © 2008, CIBER Norge AS 1 Using eID and PKI – Status from Norway Nina Ingvaldsen and Mona Naomi Lintvedt 22 nd October 2008.
Introduction to Secure Messaging The Open Group Messaging Forum April 30, 2003.
(DRAFT LAW “ON ELECTRONIC GOVERNMENT”)
Registration Processing for the Wireless Internet Ian Gordon Director, Market Development Entrust Technologies.
Nationwide Health Information Network: Conditions for Trusted Exchange Request For Information (RFI) Steven Posnack, MHS, MS, CISSP Director, Federal Policy.
Electronic information exchange within the Belgian social sector coordinated by the Crossroads Bank for Social Security Frank Robben General manager Crossroads.
Possible elements of the technical standards Pre-sessional consultations on registries Bonn, 2-3 June 2002 Andrew Howard UNFCCC secretariat
Configuring Directory Certificate Services Lesson 13.
Multi-platform service delivery Frank Robben General manager CBSS Strategic advisor FEDICT.
Electronic identity management for eGovernment Conceptual framework and objectives Frank Robben General manager Crossroads Bank for Social Security Strategic.
Integrated services delivery based on eGovernment Frank Robben General manager Crossroads Bank for Social Security & eHealth-platform Sint-Pieterssteenweg.
E-government in the Belgian social sector, co-ordinated by the Crossroads Bank for Social Security Frank Robben General manager Crossroads Bank for Social.
Certificate-Based Operations. Module Objectives By the end of this module participants will be able to: Define how cryptography is used to secure information.
1 7 th CACR Information Workshop Vulnerabilities of Multi- Application Systems April 25, 2001 MAXIMUS.
Some identification needs related to workers’ mobility eGovernment – eIDM ad hoc group meeting 4-5 May 2006 CBSS Crossroads Bank for Social Security Frank.
1 European eGovernment Awards 2007 European eGovernment Awards 2007 Workshop for Finalists July, Brussels LIMOSA Belgium Reference project number.
DIGITAL SIGNATURE.
The pillars of E-government Frank Robben General manager Crossroads Bank for Social Security Strategic advisor Federal Public Service for ICT Sint-Pieterssteenweg.
Data protection as an integral part of OOP implementations: The Austrian approach Peter Kustor.
Back office integration for better E-government services Crossroads Bank for Social Security Frank Robben General manager Crossroads Bank for Social Security.
Chapter © 2012 Pearson Education, Inc. Publishing as Prentice Hall.
PKI Services for CYPRUS STOCK EXCHANGE Kostas Nousias.
A model for electronic data exchange in the public sector Kruispuntbank van de Sociale Zekerheid Banque Carrefour de la Sécurité sociale KSZ-BCSS Frank.
Electronic Banking & Security Electronic Banking & Security.
Guided by : VIPUL GAJJAR Prepared by: JIGAR KAKADIYA.
TAG Presentation 18th May 2004 Paul Butler
Training for developers of X-Road interfaces
Efficient and secure transborder exchange of patient data
TAG Presentation 18th May 2004 Paul Butler
Public Sector Institutional Reform Project
Dashboard eHealth services: actual mockup
E-identities (and e-signatures)
Towards a frictionless social security
Presentation transcript:

Belgian proposal of an organization model for an electronic identity card Frank Robben General Manager Crossroads Bank for Social Security Sint-Pieterssteenweg 375 B-1040 Brussels

2 Crossroads Bank for Social Security What is E-government ? n E-government is a continuous optimization of service delivery and governance by transforming internal and external relationships through technology, internet and new media n internal relationships -government to government -government to employees n external relationships -government to citizen -government to business user of public services provider of services

3 Crossroads Bank for Social Security Why E-government ? n provision of better service to the customer (citizens and companies) and service providers n modernization of the public sector -example and catalyst for the adoption of new technologies -improvement of cost efficiency -more challenging work environment for government employees

4 Crossroads Bank for Social Security  reduce burdens (travel, queuing, paperwork, …)  realtime feedback  permanent access from any location  easy to find information  personalized service  unique data collection  proactive governance  more participation in decisions  direct contact with competent public agency  access to personal data Better service

5 Crossroads Bank for Social Security E-government: a structural reform process n E-government requires -re-engineering of processes -re-organization -change of mindsets (customer centric) -changes of legal environment -cooperation between several government levels

6 Crossroads Bank for Social Security Back office integration is the key n unique data collection n integrated data management (principle of the authentic source) n electronic data exchange and work flow n architecture & horizontal services: -unique identification keys (electronic identity card) -PKI -messaging and transaction services -portal architecture -content management system n standards (XML, IP, etc) n global but decentralized approach

7 Crossroads Bank for Social Security Customer centric n portal interaction triggered on -life events (birth, marriage, etc.) -life styles (sport, culture, etc.) -life status (unemployed, retired, etc.) n p-channels and e-channels must co-exist n multi device access (PC, TV, WAP GSM, PDA, …) n integrated services -information -interaction -transaction

8 Crossroads Bank for Social Security Customer centric n critical reflection on principles of data collection and creation of new added value -readable and understandable text -analysis of the requirement of data collection -harmonization of basic concepts -first data verification, then data collection -default values based on previously entered data -on-line help -simulation environments

9 Crossroads Bank for Social Security Levels of service maturity of E-government Level 1 Information Government agencies publish information on the web Level 2 Interaction Users can communicate electronically with single government agencies, but agencies don’t necessarily communicate electronically with the user Level 3 Transaction User can communicate electronically with single government agencies, and applications of the agencies respond electronically to the user Level 4 Integration Cross-agency information and transactions are available via intention based portals Back offices are integrated and business processes are re-engineered Complexity / Costs Constituency Value

10 Crossroads Bank for Social Security Electronic identity card n possible functions -identification of the holder -authentification of the holder -generation of electronic signature -electronic proof of characteristics of the holder -execution of programs -electronic data storage -electronic purse

11 Crossroads Bank for Social Security Electronic identity card n retained functions -visual and electronic identification of the holder -authentification of the holder via the technique of the digital signature -generation of electronic signature via the technique of the digital signature -proof of characteristics of the holder via the technique of the digital signature on the initiative of the holder -only identification data storage -no electronic purse -no biometry

12 Crossroads Bank for Social Security Identification n visual -basic identification data: name, first names, place and date of birth, sex, nationality, unique identification number – no address -photograph n electronic -cfr. visual basic identification data (+ address ?) -digital photograph

13 Crossroads Bank for Social Security Digital versus electronic signature n digital signature -technique based on asymmetric cryptography -permitting to determine the origin and the integrity of electronic data n certificate -confirmation that a pair of keys proves something (e.g. identity, characteristic, …) n electronic signature -use of a certain technique, e.g. the technique of the digital signature -as an electronic and legally valid alternative of a manual signature

14 Crossroads Bank for Social Security Scheme digital signatureelectronic signature electronic signature by means of the technique of a digital signature

15 Crossroads Bank for Social Security Technique of the digital signature CA public key CA public key digital signature

16 Crossroads Bank for Social Security Some concepts n identity certificate: proof of identity n attribute certificate: proof of characteristics (e.g. function, quality, mandate) n function of registration authority (RA): -‘counter’ where the certificate is requested and that verifies if communicated identity or characteristic is correct -if so, approves the request and reports it to the certification authority n function of certification authority (CA): -produces on the base of the information from the RA a certificate which is linked with a pair of keys -manages that certificate

17 Crossroads Bank for Social Security Use of the technique of the digital signature n 3 applications -electronic storage private key with related identity certificate for electronic authentification -electronic storage private key with related identity certificate for the generation of an electronic signature -electronic storage of one or more private keys with related attribute certificates in order to proof characteristics

18 Crossroads Bank for Social Security Use of the digital signature n model -private keys with related identity certificates automatically stored on the card unless opposition of the holder (opting- out) delivered by CA chosen by the government as a result of a public call for tenders -private keys with related attribute certificates storage place available on the card free choice of the holder (opting-in) delivered by CA chosen by the holder

19 Crossroads Bank for Social Security Law on electronic signature n article 1322, paragraph 2 Civil Code “For the purpose of this article can meet the requirement of a signature, a set of electronic data that can be attributed to a particular person and that proves that the content of the act has been maintained”.

20 Crossroads Bank for Social Security Law certification service providers n implementation European Directive into Belgian law -provision that qualified electronic signature meets the requirements of article 1322, paragraph 2 Civil Code -scheme of minimal missions (issuance, management, revocation of certificates) and liability of certification-service- providers -rules at suspension of activities by certification-service- provider -voluntary accreditation scheme -rules regarding liability of certificate holder -supervision and sanctions -possibility to make the use of electronic signatures in the public sector subject to additional requirements

21 Crossroads Bank for Social Security Goals n promote rapid availability of identity certificates n guarantee quality of identity certificates n promote multifunctional and free use of identity certificates n guarantee open market of independent evolving certification authorities n guarantee interoperability between certification authorities n guarantee conformity with evolving technical standards n conformity with the European Directive

22 Crossroads Bank for Social Security Organization model n government chooses card producer and CA issuing the identity certificates as a result of a public call for tenders n the municipality calls the holder for the issuing of the electronic identity card n the holder can choose to have or not 2 private keys associated to identity certificates, on his identity card; if so, the municipality acts as registration authority for the identity certificates

23 Crossroads Bank for Social Security Organization model n electronic identity card contains necessary space to store other private keys associated to attribute certificates that holder can obtain at CA of his choice n private key associated to identity certificate on electronic identity card can be used to generate electronic signature within the scope of E-government applications which require an electronic signature

24 Crossroads Bank for Social Security Organization model CM/CP/CI (7) (8)(9) Matti ERA Face to face identification De Gemeenten (1) RCRC (3) Bull Meikäläinen PIN & PUK1 (10b) (10a1) (11) (13) - (10a2) (2), (12) VRK (4) CA (5) (6) -code

25 Crossroads Bank for Social Security No storage of electronic data n why not ? -preventing perception of the card as a big brother -preventing loss of data, when the card is lost -preventing frequent updates of the card n stimulation of the controlled access to data over networks, using the card as an access tool, rather than storage of data on the card n thus, no integration of SIS-card and electronic identity card

26 Crossroads Bank for Social Security Advantages n to the user -faster communicaton / service delivery -better quality of service -more personalized approach -reduction of administration cost -higher availability of services (24/7) -more transparancy

27 Crossroads Bank for Social Security Advantages n to the government -higher work satisfaction for employees by avoiding useless work -better control of administration cost -better image of public agencies -more direct relation with target groups -more efficient policy support -more efficient fraud detection

you ! Crossroads Bank for Social Security