Μελέτη ηλεκτρονικού πορτοφολιού και αξιολόγηση τεχνικής παρουσίασης ταυτοποιητικών δεδομένων
Study on Wallet for personal identification and presentation techniques
View/ Open
Abstract
Self-Sovereign Identity (SSI) is the term for a new model of Digital Identity management in digital services. It’s purpose is the decentralization of identity management, so the individuals will have the capacity to store their personal data in their own devices moving away from centralized repositories. In that way individuals fully control how their personal data are kept and used
In this context, new tools and models have been developed or are under development and standardization. Verifiable Credentials (VC), Verifiable Presentations (VP), Identity Wallets (IW) and Decentralized Identifiers (DIDs) are some of them that are being used to implement SSI. Additionally, new communication protocols have risen or existing ones are expanding in order to handle the issuance and the verification of digital identities, DIDComm, OpenID, etc.
For OpenID family of protocols specific, the OpenID Foundation has quite recently included the above models and tools in OpenID Connect protocol, making use of the widespread authentication protocol OAuth 2.0. The relative protocols are still under development in status draft. However some partial implementations have already started.
This work assessed the feasibility of integrating Verifiable Credentials, Verifiable Presentations and Decentralized Identities by extending OpenID Connect. For this reason, a new flow has been created. “Verifiable Presentation Flow”. The new flow can work complementary on other flows of OpenID Connect, for complex scenarios. In the current scenario, the user is interacting with a Relaying Party, and the latter communicates with the user’s wallet for the authentication by exchanging the verifiable credentials.