fidis d3.3 study on mobile identity management

8
D3.3 Study on Mobile Identity Management FIDIS Review, Frankfurt, June 10 th , 2005 Sven Wohlgemuth Albert-Ludwig University Freiburg, Germany

Upload: sven-wohlgemuth

Post on 16-Jul-2015

119 views

Category:

Internet


2 download

TRANSCRIPT

Page 1: FIDIS D3.3 Study on Mobile Identity Management

D3.3 Study on Mobile Identity Management

FIDIS Review, Frankfurt, June 10th, 2005

Sven WohlgemuthAlbert-Ludwig University Freiburg, Germany

Page 2: FIDIS D3.3 Study on Mobile Identity Management

07.03.2015 FIDIS - Future of Identity in the Information Society (No. 507512)

2

Introduction

Objective:

Duration:

Editors:

Authors:

Günter Müller, Sven Wohlgemuth, University of Freiburg

October 2004 – February 2005

Technical survey on mobile identity management

8 FIDIS consortium members

Structure:

Approaches for mobile

id management systems

• Anonymity mechanisms

(FLASCHE, mCrowds, ...)

• Mobile identity manager

(iManager)

• Card for linking real

with digital identity

(AXS ID-Card)

The need for mobile

identity management

• Requirements on mobile

identity management

• Scenarios for mobile

identity

• Privacy for mobile users

• Usability and security

Outlook

• Identification and

description of ‘mobile

identity’

• Assessment of business

models for ‘mobile identity’

Page 3: FIDIS D3.3 Study on Mobile Identity Management

07.03.2015 FIDIS - Future of Identity in the Information Society (No. 507512)

3

Scenario: Mobile User

Threats by:

Location information

Spontaneous networking

Personal data

Permanent usage

Data traces: linkability

Theft of device: impersonation

Home

Profile

Sven

Wohlgemuth

Date: 09.06.05

Time: 08:00

Read e-mails

IP: 132.15.16.3 Ticket

Profile

Sven

Wohlgemuth

Date: 09.06.05

Time: 08:30

Buy e-ticket

IP: 132.15.16.3

Book

Profile

Sven

Wohlgemuth

Date: 09.06.05

Time: 09:00

Look for books

IP: 132.15.16.3Visitor

Profile

Sven

Wohlgemuth

Date: 09.06.05

Time: 10:00

Visit Roemer

IP: 132.15.16.3

FIDIS

Profile

Sven

Wohlgemuth

Date: 10.06.05

Time: 9:00

FIDIS meeting

IP: 132.15.16.3

Page 4: FIDIS D3.3 Study on Mobile Identity Management

07.03.2015 FIDIS - Future of Identity in the Information Society (No. 507512)

4

Scenario: Mobile User

Threats by:

Location information

Spontaneous networking

Personal data

Permanent usage

Data traces: linkability

Theft of device: impersonation

Home

Profile

Sven

Wohlgemuth

Date: 09.06.05

Time: 08:00

Read e-mails

IP: 132.15.16.3 Ticket

Profile

Sven

Wohlgemuth

Date: 09.06.05

Time: 08:30

Buy e-ticket

IP: 132.15.16.3

Book

Profile

Sven

Wohlgemuth

Date: 09.06.05

Time: 09:00

Look for books

IP: 132.15.16.3Visitor

Profile

Sven

Wohlgemuth

Date: 09.06.05

Time: 10:00

Visit Roemer

IP: 132.15.16.3

FIDIS

Profile

Sven

Wohlgemuth

Date: 10.06.05

Time: 9:00

FIDIS meeting

IP: 132.15.16.3

Home

Profile

Sven

Wohlgemuth

Date: 09.06.05

Time: 08:00

Read e-mails

IP: 132.15.16.3

At Home

Attacker

Page 5: FIDIS D3.3 Study on Mobile Identity Management

07.03.2015 FIDIS - Future of Identity in the Information Society (No. 507512)

5

Approaches for MIMS

Application

Transport

Network

Physical + data link

FLASCHE(Freiburg Location

Adressing Scheme),Ch. 5.1

mCrowds,Ch. 5.2

Incentivemechanism, Ch. 5.4

Comparison ofanonymity

mechanisms, Ch. 5.3

iManager, Ch. 5.5 AXS ID-Card, Ch. 5.6

Page 6: FIDIS D3.3 Study on Mobile Identity Management

07.03.2015 FIDIS - Future of Identity in the Information Society (No. 507512)

6

Example: iManager

Current partial identity Necessary personal

attributes

Proposed partial identity

Page 7: FIDIS D3.3 Study on Mobile Identity Management

07.03.2015 FIDIS - Future of Identity in the Information Society (No. 507512)

7

Key Messages of D3.3

Protection of both identifying data: personal data and device characteristics

Usable interface for non-expert to prevent unintentionally misuse

Verifiable linkage between real and digital identity on user’s device is important to prevent impersonation

Published identifying data must be protected against misuse by peers

Page 8: FIDIS D3.3 Study on Mobile Identity Management

07.03.2015 FIDIS - Future of Identity in the Information Society (No. 507512)

8

Outlook

Identification and description of the term ‘mobile identity’ (WP 11)

Evaluation of business models for ‘mobile identity’ (WP 11)

Journal publication of study’s key messages