Re: [Din] WSJ article on Identity and Blockchains

Brian E Carpenter <brian.e.carpenter@gmail.com> Mon, 09 April 2018 01:44 UTC

Return-Path: <brian.e.carpenter@gmail.com>
X-Original-To: din@ietfa.amsl.com
Delivered-To: din@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1DE3E126C83 for <din@ietfa.amsl.com>; Sun, 8 Apr 2018 18:44:40 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id rJ9UdEZQD0ML for <din@ietfa.amsl.com>; Sun, 8 Apr 2018 18:44:38 -0700 (PDT)
Received: from mail-pf0-x22e.google.com (mail-pf0-x22e.google.com [IPv6:2607:f8b0:400e:c00::22e]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 38BB2124D68 for <din@irtf.org>; Sun, 8 Apr 2018 18:44:38 -0700 (PDT)
Received: by mail-pf0-x22e.google.com with SMTP id j2so4854706pff.10 for <din@irtf.org>; Sun, 08 Apr 2018 18:44:38 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=subject:to:references:from:organization:message-id:date:user-agent :mime-version:in-reply-to:content-language:content-transfer-encoding; bh=pf/TbyR54waTyoQ0coLhZ05tUZQElOZ9DlikG8VbA0U=; b=PUjcSNmZFCwh+rV8/GDPqek5b5tEq7SXiVNLvlfS9LpK0jrE0nDTg4x2V1ynM08kzk qmzhrc7stupE3ZuBrPqtK1EtprNbZ3pvCXTdoVeVIUcybscbkPrJmJ1HFg75EL0aIyD1 Al4OSpQ3XwFa774CxRJ7cTMlO6ntzzXXP3S0e5WTJPwBDi0w7FfeArsLpCHjXV7YQuXX zy4ubYeCMPpKWp7DZTqs10FBH6rb7JW07YyUzFQID8hGTC88liO7gLKsrb6Pji4HfSW9 VsjbB2ru+xM9/saOLhVXtFrGUTvDH1diaAnZCi3XYH2oiLC6UhcBzYrmalIjUciz8MOG e+fg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:subject:to:references:from:organization :message-id:date:user-agent:mime-version:in-reply-to :content-language:content-transfer-encoding; bh=pf/TbyR54waTyoQ0coLhZ05tUZQElOZ9DlikG8VbA0U=; b=oCUOiya/Sr/qgfVY5ahPYmRARaT2Fex83ummuXSLIuQtWhM5ERo86Vdo1TonpUitu+ Vm6cYxzTBRQ5NO4aHKqicgys69VK+BQvZD1YfkdoVynTlnw/FOvHoxULAbIH/VUPv24v TDl1DhWXhoGUeriuRS/BZU5wH8DCGm2DAPjCiheWQF+W+ynF/Ojz/iW9c/+/vJoZ4pht G8kLiY3E5MvZJAjySrEAz+HfHD221zEMoMMJVAp5rY9N0XNTFQyHC9KScdn+sTWotVxc YCcPYXDO1EXVPZOBNcSUKfD7TkMox55WNorOx9lLUz3LR63ywZ5xmcy9cqO1CXQlZTry EnCg==
X-Gm-Message-State: AElRT7HoJofT4JDuJ7+B6wrQAt31HkXPTFXqCqdXfbKY0qOefnnMWPXQ f0YLxCtZq569blGAc7P2YCLssQ==
X-Google-Smtp-Source: AIpwx48RowSeUQv/+03r5F9Mmpn69aSKfq8FSOQYbnBkbMJ04FAaedzoyontp/u4PwbQgcwNjKKuZQ==
X-Received: by 10.101.75.12 with SMTP id r12mr23558578pgq.36.1523238277387; Sun, 08 Apr 2018 18:44:37 -0700 (PDT)
Received: from [192.168.178.26] (207.26.255.123.static.snap.net.nz. [123.255.26.207]) by smtp.gmail.com with ESMTPSA id a10sm17122643pfo.131.2018.04.08.18.44.35 for <din@irtf.org> (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Sun, 08 Apr 2018 18:44:36 -0700 (PDT)
To: din@irtf.org
References: <5E393DF26B791A428E5F003BB6C5342AE73F70FC@OC11EXPO33.exchange.mit.edu> <E1f57in-0004gH-Gx@mta0.cl.cam.ac.uk> <CAPaG1Amqd8DehMpvht8zEPzqHg00wqYcUDXb0g-bQebTvbXWzw@mail.gmail.com>
From: Brian E Carpenter <brian.e.carpenter@gmail.com>
Organization: University of Auckland
Message-ID: <fb88b314-c402-7f39-79ea-01c46fdf16ec@gmail.com>
Date: Mon, 09 Apr 2018 13:44:33 +1200
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:52.0) Gecko/20100101 Thunderbird/52.7.0
MIME-Version: 1.0
In-Reply-To: <CAPaG1Amqd8DehMpvht8zEPzqHg00wqYcUDXb0g-bQebTvbXWzw@mail.gmail.com>
Content-Type: text/plain; charset="utf-8"
Content-Language: en-US
Content-Transfer-Encoding: 7bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/din/QESHMj-xdTgl6RPWQnD2aKDt8DE>
Subject: Re: [Din] WSJ article on Identity and Blockchains
X-BeenThere: din@irtf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "Discussion of distributed Internet Infrastructure approaches, aspects such as Service Federation, and underlying technologies" <din.irtf.org>
List-Unsubscribe: <https://www.irtf.org/mailman/options/din>, <mailto:din-request@irtf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/din/>
List-Post: <mailto:din@irtf.org>
List-Help: <mailto:din-request@irtf.org?subject=help>
List-Subscribe: <https://www.irtf.org/mailman/listinfo/din>, <mailto:din-request@irtf.org?subject=subscribe>
X-List-Received-Date: Mon, 09 Apr 2018 01:44:40 -0000

On 09/04/2018 10:28, Arjuna Sathiaseelan wrote:
>>
>> 2/ I though many people in the security community were moving away from
>> proving identity, towards systems that prove entitlement (i.e. credentials
>> are on a need-to-know basis, so if you were say 19, you don't need to say
>> yur age or show id,
>> but you can't buy a drink in cambridge MA, but you can in cambridge, UK :)
>>
> 
> digital id plays a major role for all the KYC/AML - massive market.. + for
> employment etc..

Right, but *international* digital ID is a hopeless mess. Just try dealing
with a USA bank's KYC department when living in New Zealand with a UK
passport. Nothing works.

That isn't a marginal case. Tens or hundreds of millions of people
would need cross-border digital ID these days. Sales argument: would
help to defeat money laundering.

   Brian
 
> like the idea of proving entitlement - works nicely with crypto
> charities/aid delivery..
> 
> Regards
> 
> 
> 
> 
>> bootstrapping something from a BC to provide the credentials is also
>> problematic, in that
>> BC needs a PKI to know whether nodes are not sybils, spoofs, etc, so we
>> have a circular dependance, no?
>>
>> maybe i missed an important step, if so, sorry!
>>
>>
>>> Folks,
>>>
>>> I thought to share this WSJ article with the DIN group. Relevant in the
>>> light of recent interest in using BC for identity.
>>>
>>> Advance apologies if it offends some people :-)
>>>
>>> https://blogs.wsj.com/cio/2018/04/03/digital-identity-
>> is-broken-heres-a-way-to-fix-it/
>>>
>>>
>>> Below is a link to a PDF version.
>>>
>>> http://hardjono.mit.edu/sites/default/files/documents/WSJ_
>> Digital_Identity_is_Broken.pdf
>>>
>>>
>>> Best
>>>
>>> -- thomas --
>>>
>>> _______________________________________________
>>> Din mailing list
>>> Din@irtf.org
>>> https://www.irtf.org/mailman/listinfo/din
>>>
>> _______________________________________________
>> Din mailing list
>> Din@irtf.org
>> https://www.irtf.org/mailman/listinfo/din
>>
> 
> 
> 
> 
> 
> _______________________________________________
> Din mailing list
> Din@irtf.org
> https://www.irtf.org/mailman/listinfo/din
>