ããã«ã¡ã¯ãå¯å£«æŠ®ã§ãã
ãšããšããã£ãŠããŸãããOpenID Summit Tokyo 2024ãéå¬ãããŸããã®ã§ã¯ã£ãã¯ã¬ãã¥ãŒã§ãã
OpenID Summitã¯çŽ4幎ã«äžåºŠãæ±äº¬ã§éå¬ãããŠããã€ãã³ãã§2011幎ã2015幎ã2020幎ããããŠä»å¹Ž2024幎ã¯4åç®ãšãªããŸãã
ååã®éå¬ã¯ã³ããçŠã®çŽåãšããããšã§ãæ¬åœã«ãã®4幎éã¯è²ã
ãšäžã®äžãå€ãã£ãŠããŸããŸãããç¡äºã«éå¬ã«æŒãçããããŠæ¬åœã«è¯ãã£ããšæããŸãã
ãšããããšã§æ©éã
OIDF Strategic Outlook for 2024 and Briefing on the Sustainable Interoperable Digital Identity (SIDI) Summit in Paris
ãŸãã¯Gailã®ããŒããŒãããã§ãã
OpenIDãã¯ãããžãŒã®å©çšæ¡å€§ãã¯ãŒãã³ã°ã°ã«ãŒããå«ã掻åããã¯ã€ãããŒããŒã®çºè¡ãæ¿åºãã®ä»ãšã®ããŒãããŒã·ããããæ¬åœã«å€ãã®æŽ»åãè¡ãããŠããããšãããããŸãã
ãŸããæšæ¥ã®Workshopã§ã話ããããŸããããOpenID Ecosystemãæ§æããäžã§ãOpen DataãAPIãªã©ã§æ¥ç¶ããŠããå¿
èŠããããŸããããã®ããã«ã¯é貚ã«ãããã¯ã¬ãžããã«ãŒãã®ããã«çµç¯ç¹ãšãªãä»çµã¿ãå¿
èŠã§ãããšèããããŸãã
ãŸããã»ãã¥ãªãã£ãèãããšShared Signalsã§ãªã¹ã¯æ
å ±ãå
±æããä»çµã¿ãªã©ãéèŠã«ãªããŸãã
ãããŠãSIDI Hubã®è©±ã§ããSIDI Hubã®ç®æšã«ã€ããŠãTo define what we need to achieve global interoperability for digital identity.ããšè§£èª¬ããŠããŸãããã®èŸºãã¯åœç¶ã®ããšãªããå
ã»ã©ã®Open Dataã®æ¥ç¶ãšããæèãšãç¹ãããŸãã
äžèšã®ããã«ããããã®åœãå£äœãèå³ãæã¡åå ããŠãããŸãã
ãµãŒãã€ã®çµæã§ã¯ãåå è
ã®92%ããã®åãçµã¿ãç¶ç¶ããã¹ãã§ãããšèããŠãããšããçµæãåºãŠããããã®ããããã®åãçµã¿ã¯éèŠãªãã®ã§ããã
å®éã«æ¥ç¶ããããã«ã¯ãã¯ãããžã ãã§ã¯ãªãTrust Frameworkå士ã®ãããã³ã°ïŒçžäºéçšïŒãŸã©ãå¿
èŠã«ãªããšããããšã«ã觊ããããŸããã
OpenIDãã¡ãŠã³ããŒã·ã§ã³ã»ãžã£ãã³ ã¯ãŒãã³ã°ã°ã«ãŒã掻åå ±å
ãŸãã¯KDDIã®å°å²©äºããããKYCã¯ãŒãã³ã°ã°ã«ãŒãã®çŽ¹ä»ã§ãã
ãã§ã«5幎ç®ã«çªå
¥ã§ããã延ã¹290人ã®æ¹ãåå ãåèš5ã€ã®ãã¯ã€ãããŒããŒãçºè¡ããŠããŸãã4幎åã®OpenID Summit Tokyoã§æåã®ãã¯ã€ãããŒããŒã®çºè¡šãããã®ã¯æãããã§ãã
ãµãã¯ãŒãã³ã°ã°ã«ãŒãã®çŽ¹ä»ããããŸããã
- 次äžä»£KYCãµãã¯ãŒãã³ã°ã°ã«ãŒã
- OpenID for Identity Assuranceã®åœå
åãã®ãããã¡ã€ã«ãçå®äž
- æ³äººKYCãµãã¯ãŒãã³ã°ã°ã«ãŒã
- æ³äººã«å¯ŸããKYCã®çŸç¶æŽç
- ä»å¹Žäžã«ã¬ããŒããçºè¡ããäºå®
ã¢ã¯ãã£ãã«æŽ»åããŠããŸããã
ç¶ããŠããšãŽã¡ã³ãžã§ãªã¹ãã®novãã翻蚳ã¯ãŒãã³ã°ã°ã«ãŒãã®æŽ»åå ±åã§ãã
ãã®ã¯ãŒãã³ã°ã°ã«ãŒãã®ç¹åŸŽã¯äŒå¡äŒæ¥ä»¥å€ã§ã翻蚳掻åã«åå ã§ããããšã§ããæšå¹Žã¯NIST SP800-63-4ã®ç¿»èš³ãããŸããã
åããç¶ããŠçäºã»ãšãã³ãžã§ãªã¹ãã®kuraããããžã¿ã«ã¢ã€ãã³ãã£ãã£äººæè²æã¯ãŒãã³ã°ã°ã«ãŒãã®çŽ¹ä»ã§ããä»å¹ŽåºŠæ°ããèšç«ãããã¯ãŒãã³ã°ã°ã«ãŒãã§ããã
ID人æè²æã®æ©ã¿ã¯ã¿ããªãæã£ãŠããã®ã§OpenIDãã¡ãŠã³ããŒã·ã§ã³ãžã£ãã³ã®äžã§ã¯ãŒãã³ã°ã°ã«ãŒããšããŠçµæããããšã§å調çãªåŠç¿ç°å¢ãå®è·µãšçè«ã®çµã³ã€ãã®ã·ã§ã¢ãç¶ç¶çãªè°è«ãšå»ºèšçãªãã£ãŒãããã¯ãåŸãããšãã§ããã®ã§ã¯ãªããããšèããŠã¯ãŒãã³ã°ã°ã«ãŒãçµæã«è³ã£ãŠããŸãã
çŸåš18瀟42åã®æ¹ã
ãåå ã3ã€ã®ãµãã¯ãŒãã³ã°ã°ã«ãŒããçµæããŠããŸãã
- æè¡ãµãã¯ãŒãã³ã°ã°ã«ãŒã
- ããžãã¹ãµãã¯ãŒãã³ã°ã°ã«ãŒã
- 翻蚳ãµãã¯ãŒãã³ã°ã°ã«ãŒã
2024幎å€ãç§ã«ã¯æžç±ã®åºçãç®æããŸãïŒ
Panel: Celebrating Ten Years of OpenID Connect
次ã¯10åšå¹Žãè¿ããOpenID Connectã«é¢ããããã«ãã£ã¹ã«ãã·ã§ã³ã§ãã
Mike JonesãåŽæãããnovãritouã®ïŒåã§ã®ã»ãã·ã§ã³ã§ããã¿ããªOpenID Connectãåµã£ãŠè²ãŠãŠãã人ãã¡ã§ããã
æ¹ããŠOpenID Connectã®èšèšææ³ã玹ä»ãããŸããã
- Keep simple things simple
- Make complex things possible
ä»ã§ãæ°ãããããã¡ã€ã«ãäœæããéãªã©ããã°ãã°æãåºãæ¬åœã«å€§åãªååã§ãã
ããäžã€ã®ååã§ãããExtensible by Designãã«ã€ããŠãèªãããŸããã
ãšã³ã·ã¹ãã ãäœãäžã§éåžžã«éèŠã§ããããã¬ãŒã ã¯ãŒã¯ãšãããã¡ã€ã«ãåå²ããã¢ãžã¥ã©ãŒåã®ææ³ã§äœãããŠããä»çµã¿ãªã®ã§äŸãã°LogoutãIdentity Assuranceãªã©çšéã«ãã£ãŠä»æ§ãæ¡åŒµããŠããããšãã§ããŠããããšããããã§ãã
ãã®10幎ã§éæããããšãšããŠä»¥äžã玹ä»ãããŸããã
- æã䜿ãããŠããIdentityãããã³ã«ãšãªã£ã
- æ°åã®çžäºéçšã®ããå®è£
ãè¡ãããŠãã
- èªå®ããã°ã©ã ãéçºãã掻çšãããŠãã
- ISOã®PASèªå®ãåãã
Novã®çªã§ãã
å
ã
ã®OpenID Connectã«é¢ããã¢ãããŒã·ã§ã³ã¯Facebook Connectã ã£ãããã§ãããšããããçµæ§åããããããããšãå€ãã£ããšã®ããšããããŠããæ¥çªç¶FacebookãFacebbok ConnectãOAuth2.0ããŒã¹ã«ããããšããçºè¡šãè¡ãããããŸã§ã®éçºç©ãå
šãŠæ°Žã®æ³¡ã«ã»ã»ã»ãããOAuth2.0ããŒã¹ã«ãªã£ãããšã§ã·ã³ãã«ãã€å®å®ããå®è£
ã«ãªã£ãã®ã§ãããã¯çŽ æŽãããããšããããšã§Rubyã®ã©ã€ãã©ãªãæžããããšã®ããšããã®åŸOAuth2.0ããŒã¹ã§OpenID Connectãéçºããããšããããšã§å
ã®Rubyã®ã©ã€ãã©ãªãæ¡åŒµãã圢ã§OpenID Connectã®éçºã«é¢ããããã«ãªã£ãŠè¡ã£ããããšãããšããœãŒãã玹ä»ãããŠããŸãã
ãŸãæè¿æããŠããããšãšããŠdo business on complex thingsã«ãªã£ãŠããŠãããšããã«æè¡ãã©ãè¿œãã€ããŠãããããšããã®ã課é¡ã«ãªã£ãŠããŠãããšããããšã§ããäŸãã°éèã·ããªãªãªã©FAPIããµããŒãããå¿
èŠãåºãŠããŠããïŒã€ãŸãè€éãªããšãããå¿
èŠãã§ãŠããïŒãªãã§ãåŸæ¥ã®ã©ã€ãã©ãªã§ã¯åããªããªã£ãŠããŠããããã®èŸºãã®ç¶æ³ã€ãŸããããžãã¹åãããããã«ã¯è€éãªããšãããªããšãããªããªã£ãŠããããšããç¶æ³ãä»åŸã©ã®ããã«ã·ã³ãã«ã«ããŠããã®ãããšããã®ã次ã®ããŒãã ããšãã話ã§ãããããã«ã
次ã¯ritouã§ãã
åœæã¯ãã£ãŒãã£ãŒãã©ã³å
šçã ã£ãã®ã§URLé·ã®å¶éããã£ãããJavaScriptã®ãµããŒããäžè¶³ããŠããããšããããšã§OpenID 2.0ãæ¥æ¬ã®ã¢ãã€ã«ããã€ã¹ã§åããããšãããšè²ã
ãªèª²é¡ããã£ããšã®ããšãããã§ããã¯ãã£ãã«ã§ãåãããä»çµã¿ãåœæSAMLã«ããã£ãïŒArtifact BindgingïŒã®ã§ããããOpenIDã®äžçã«ãæã¡èŸŒãã ãã©ãã ãããããšããæµãã ã£ããšããããšã§ãã
ãããŠæåŸã¯åŽæããã§ãã
æ¡ã®å®æéããªãã®ã§è©³çŽ°ã¯ãã¡ãããïŒç¬ïŒ
æšæ©ãYoutube Liveã§ãã£ãŠããã25 years of OpenIDãã®ã»ãã·ã§ã³ã§ããã
åæã®ãã¶ã€ã³ååãšããŠä»¥äžãæ²ãããšã®ããšã§ãã
No canonicalization
ASCII Armoring
JSON
REST
ããããåœæJSONã®çœ²åã®ä»çµã¿ãããªãã£ãã®ã§JSON Simple SignatureãIIWã§çºè¡šãããåœæMicrosoftã«ããMike JonesãšåæµããŠJWxïŒJWTãJWSïŒãžç¹ãã£ãã
ãã®åŸãDick Hardtããææ¡ããŠããOAuth WRAPïŒåœæã®OAuthãã眲åãåãå»ã£ããã®ïŒãåºãŠããŠãã®ã¡ã®OAuth2.0ãžç¹ãã£ãããšãã話ããããŸããã
JWTãJWSãOAuth2.0ã®æµããOpenID Connectã«ç¹ãã£ãããšããããšã§ããã
çµæçã«æåèŠå ãšããŠãã®ãããªæèšã玹ä»ãããŠããŸããã
Developerã®ãã£ãŒãããã¯ã«è³ãåŸãã
解決ã§ããªãã£ãããšã解決ãã
æ£èŠåããªã
ã·ã³ãã«ãªãŠãŒã¶ã±ãŒã¹ã®ããã®ã·ã³ãã«ãªå®è£
ã»ãã¥ãªãã£ãšãã©ã€ãã·ãŒ
ïŒïŒïŒïŒïŒ
ããããååŸã®ã»ãã·ã§ã³ã§ãã
ããŒãã¯ãCutting Edge OAuth/OIDCããšããããšã§ææ°ã®ä»æ§ã®äžã€ã§ããOpenID for Verifiable Credentialsã®é¢ä¿ãç¹ã«Walletã®ãŠãŒã¹ã±ãŒã¹ã«ã€ããŠEUã®äºäŸãäžå¿ã«è©±ããããŸããã
EU Digital Identity Wallets (eIDAS 2) - status and way forward
ãŸãã¯Torsten Lodderstedtå士ã«ããEU Digital Walletã®è©±ã§ãã
EUDIWïŒEU Digital Identity WalletïŒã¯ãŠãŒã¶ãèªèº«ãIdentifyãã幎霢ã蚌æããããå»ç蚌ãå
蚱蚌ãåŠäœãªã©ãä¿æã»æ瀺ããããå¥çŽã«çœ²åããããæ¯æããè¡ãããã«å©çšããããšãã§ããŸããCoreã³ã³ã»ãããšããŠä»¥äžã®èŠçŽ ã玹ä»ãããŸããã
- Personal Identity DataïŒPIDïŒ
- Electronic Attestation of AttributesïŒEAAsïŒ
- Qualified Electronic Attestation of AttributesïŒQEAAïŒ
- ç¹ã«EAAã®äžã§ãQTSPïŒQualified Trust Service ProviderïŒã«ãã£ãŠçºè¡ããããã®ãæããŸãã
ãã¡ããEUDI Walletã®å
šäœåã§ãã
åè¿°ã®EU Walletã®åœ¹å²ãèãããšãå
šãŠã®Walletã¯èªå®ãããŠããå¿
èŠãããããã®ããã®èªå®ã®ä»çµã¿ãéèŠãšãªããŸãã
ãããŠãeIDAS2ã§å®ããããŠãããªãã¡ã¬ã³ã¹ã¢ãŒããã¯ãã£ïŒARF/Architecture Reference FrameworkïŒã®äžã§ã¯OpenIDé¢é£ã®æšæºæè¡ã䜿ãããšãå®ãããçµµããŸãã
ãããã³ã«
- OpenID for Verifiable Credentials
- ISO 18013-5
ã¯ã¬ãã³ã·ã£ã«ãã©ãŒããã
â»PIDsã¯äž¡æ¹ã®ãã©ãŒãããã§çºè¡ãããå¿
èŠããããŸãã
ãŸãçŸåšãã£ã¹ã«ãã·ã§ã³äžã®ããŒããšããŠãããã®äºé
ãããããã§ãã
- ãã€ããŒããšããŠW3C JWT VCsã䜿ããSD-JWT VCsã䜿ãã
- Walletã®ãã©ã¹ããšWalletã®ã©ã€ããµã€ã¯ã«ç®¡ç
- RPãIssuerã®ãã©ã¹ã
- PIDãš(Q)EAAsã®éã®IDãããã³ã°ããªã³ã¯
- ãªã³ã©ã€ã³ã®ä»®åã§ã®èªèšŒ
ç¹ã«VCã®ãã€ããŒãã®è©±ã§SD-JWT-VCã®è©±ã¯ç±ã話é¡ã§ããããã£ãããããšSD-JWT-VCãã·ã³ãã«ã§ãããããã£ãŠè©±ã§ããã
Waiting for the EUDI Wallet: Securing the transition from SAML 2.0 to OpenID Connect
次ã¯Amirããã®è©±ã§ããKim Camronã¢ã¯ãŒããåè³ããŠãã人ã§ããã
ä»åã¯ã€ã¿ãªã¢ã®ããžã¿ã«ã¢ã€ãã³ãã£ãã£ãšã³ã·ã¹ãã ã«ã€ããŠè©±ããŠããããŸãã
ã€ã¿ãªã¢ã§ã¯ä»¥äžã®ïŒã€ã®IDã·ã¹ãã ã䜿ã£ãŠããããã§ãã
- SPIDïŒPublic Digital IdentitySystemïŒããžã¿ã«IDïŒ
- CIE idïŒbased on the Electronic Identity CardïŒç©çã«ãŒãïŒ
ãããŠæè¿Digital Identity SystemïŒSPIDïŒãSAML2.0ããOpenID Connectãžç§»è¡ãå§ããããã§ãã
ã€ã¿ãªã¢ã®ãããã¡ã€ã«ã®ç¹åŸŽã¯OpenID Federation 1.0ãšOpenID Connect iGov Profileã䜿ã£ãŠãããšãããããããŸããã
ç¹ã«OpenID Federationãå©çšããŠããçç±ãšããŠãDynamicãScalabeãTransparentãæããŠããŸããã
ãŸããOpenID Connectã®ãããŒãšããŠã¯Authorization Code Flow with PKCEãæ¡çšããŠããããã§ããâ»SAMLããã®ç§»è¡ãªãImplicitã®æ¹ã楜ã ã£ããããïŒãšæããŸãããä»åœã®ããšãªã®ã§é»ã£ãŠãããŸãã
ãŸããEU DIWã«ãããã©ãã€ã ã®å€åã«ã€ããŠèªãããŸãããããã¯ãIdP/OPãžã®ãªãã€ã¬ã¯ãã¢ãã«ããã®è±åŽããã€ã³ãã«ãªã£ãŠããããã§ããã
ãã§ã«ã¢ãã€ã«é転å
蚱蚌ãã¯ãããšãã倧èŠæš¡ãã€ãããéçšãå§ãŸã£ãŠãããã§ããã
ã
ã€ã¿ãªã¢ã®æ¹ãšããããšãããã次åã®OAuth Security Workshopã®çŽ¹ä»ããããŸããã
Insights into Open Wallet Foundation's initiatives
次ã¯Josephã«ããOpen Wallet Foundationã®æŽ»åã«é¢ããã»ãã·ã§ã³ã§ãã
Linuxãã¡ãŠã³ããŒã·ã§ã³ã®åå ãšããããšããããOSSã®åªäœæ§ã§ããæ©ããŠå®ããšãããšãããå
šé¢ã«æŒãåºããŠããŸãã
ãããžã§ã¯ãã¯å€ãã®ã¹ãã³ãµãŒã«ãã£ãŠæ¯ããããŠããŸãã
æ®å¿µãããæ¥æ¬ãšã®ã¢ã¯ãã£ããªããåãã¯ãªãããã§ããããã®æ©äŒã«äœãåæ¥ãã§ãããšããã§ããã
Open Wallet Foundationã®äžã§ãè²ã
ãªãããžã§ã¯ããåããŠããŸããæ§ã
ãªèšèªã§Walletã®éçºãã§ããã®ã¯ãšãŠãè¯ãããšã ãšæããŸãã
ïŒïŒïŒïŒïŒ
次ã®ãããã¯ã¯ãAuth/OIDCã«ããID/APIãšã³ã·ã¹ãã ã®æšé²ããšããããŒãã§ãã
Trusted Webã®å®çŸã«åããŠ
ãŸãã¯å
é£å®æ¿ããžã¿ã«åžå Žç«¶äºæ¬éšäºåå±æ¬¡é·ã®æç°ããããTrusted Webã®åãçµã¿ã«é¢ããè¬æŒã§ãã
ãããŸã§ããªãTrusted Webã¯ããžã¿ã«ç©ºéã«ããããã©ã¹ããæ§ç¯ããåãçµã¿ã§ãã
âäžæ¡ãã®å·šå€§äŒæ¥ãžã®é床ãªäŸåâã§ãâç£èŠç€ŸäŒâã§ããªããDFFTïŒData Free Flow with TrustïŒãå®çŸããããã®â第äžã®éâã暡玢ããåãçµã¿ã§ããã¯ã€ãããŒããŒïŒçŸåšç¬¬3çïŒã®çºè¡ããããŸã§ã«25ã®äºæ¥è
ã«ããå®èšŒå®éšãªã©ã«ãåãçµãã§ããŠããŸãã
äžæ¡ãã®å·šå€§äŒæ¥ã«é床ã«äŸåããŠããç¶æ
ã§ããäžçªå·ŠåŽã®ç¶æ
ãšçãäžã®ãã¹ãŠãæ€èšŒããç¶æ
ïŒãããã¯ãã§ãŒã³ã®å©æŽ»çšãªã©ïŒã®ãã©ã³ã¹ãããŸãåããªããæ€èšŒãšä¿¡é Œã®ãã©ã³ã¹ããšãäžç芳ãç®æããŠããŸãã
2022幎床ã«éžå®ããããŠãŒã¹ã±ãŒã¹ã¯å人å±æ§æ
å ±ïŒåŠç¿ã»å°±æ¥ã»å
±å©å®çžŸïŒãæ³äººãšè¡æ¿åºãšã®æ
å ±ã®ããåãããµãã©ã€ãã§ãŒã³ã«ãããæ
å ±ã®ãããšããã®3ã€ã«ã«ããŽã©ã€ãºãããŸããå
šãŠã®ã±ãŒã¹ã«ãããŠããåããããåããããããŒã¿ããããŠãããšãããçžææ¹ãæ€èšŒããããšã§ä¿¡é Œæ§ãé«ãŸãã確èªã³ã¹ãã®åæžãäžæ£ã®åæžãªã©ã«åœ¹ç«ãŠãããšãã§ãããšãã話ã§ãã
ã¢ãŒããã¯ãã£ãšããŠã¯ãªãŒããŒã¬ã€ã¢ãããŒããåããŸãã
ã¢ãŒããã¯ãã£ãæ§æããã³ã³ããŒãã³ããšããŠã¯ã
- Verifiable DataïŒæ€èšŒå¯èœãªããŒã¿
- Verifiable MessageïŒæ€èšŒå¯èœãªã¡ãã»ãŒãžäº€æïŒ
- Verifiable IdentityïŒæ€èšŒå¯èœãªã¢ã€ãã³ãã£ãã£ïŒã³ãã¥ããã£ã«ãã£ãŠè£æã¡ãããïŒ
ãååšããŸãã
ãããŠãã¢ãŒããã¯ãã£ãšåãããŠ
- Trusted Webãšããèãæ¹èªäœã«é¢ããã¬ããã³ã¹
- Trusted Webã®èãæ¹ã«æºæ ãããã©ã¹ããã¬ãŒã ã¯ãŒã¯æäŸè
ã«é¢ããã¬ããã³ã¹
- ãã©ã¹ããã¬ãŒã ã¯ãŒã¯ã«åŸã£ãŠæ§æã»éå¶ãããã·ã¹ãã ã«é¢ããã¬ããã³ã¹
ã®éå±€æ§é ã®ã¬ããã³ã¹ãéèŠãšãªããŸãã
ãããŠãå®éã«äºæ¥è
ãã·ã¹ãã ãšããŠå®è£
ããéã«åç
§å¯èœãªå®è£
ã¬ã€ãã©ã€ã³ãgithubäžã§å
¬éãããŠããŸãããšã³ãžãã¢ã®æ¹ã
ã¯ãã²èŠãŠããã ãç©æ¥µçã«è°è«ã«åå ããŠãã ããã
ãŸããã®ãããªåãçµã¿ã¯ã°ããŒãã«ãªåãçµã¿ãšããŠæšé²ããŠããå¿
èŠãããã®ã§G7矀銬é«åŽããžã¿ã«ã»æè¡å€§è£äŒåã«ãããŠTrusted Webã®åãçµã¿ã®çºè¡šãEUãã«ãããšã®åœéé£æºãªã©ãé²ããããšããŠããŸãã
ä»åŸã®æŽ»åãšããŠ
- ãŠãŒã¹ã±ãŒã¹ã®åµåº
- äŒæ¥ã»ãšã³ãžãã¢ã«ããåãçµã¿ã®ãããªãä¿é²
- 瀟äŒå®è£
ã®å éå
- åœéé£æº
- å
šäœãšããŠæãäž»å°ããŠããä»ã®åãçµã¿ïŒãŠã©ãã¹ã»ãšã³ã·ã¹ãã ãªã©ïŒãšã®é£æº
ãäºå®ãããŠããŸãã
OpenID Federation 1.0: The Trust Chain vs The x.509 Certificate Chain
次ã¯Vladimirã«ããOpenID Federationã®è©±ã§ããã
ãã£ãããããšFederationã®ä»çµã¿ã®äžã§Trust Chainã蟿ã£ãŠããä»çµã¿ã§ãã
X.509ã«ãããCertificate Chainãæ§æãããã®ãšããŠã
- issuer, subject
- not-before, not-after
- contrains
- public keys
ãæããããŸãã
äžæ¹ã§JWTã§ã®Trust Chainãæ§æãããã®ãšããŠ
- iss, sub
- iat, exp
- JWK Set
- trust mark
- contrains
- entity metadata
- metadata policies
ãæããããŸãã
ãã¡ããæ¯èŒã§ãã
èŠããã«X.509ã§ã¯å
¬ééµã®ã¢ãã¹ãããã§ããªããããªã·ãŒãã¡ã¿ããŒã¿ã§æ
å ±ãäŒãããããããšãã§ããªãããããšãã話ã§ãã
2035幎ã«ã¯Certificate ChainããTrust Chainã«è«žã
眮ãæãã£ãŠãããªç¶æ
ãå®çŸããã®ãããããŸããïŒç¬ïŒ
Passkeys and Identity Federation
次ã¯ãšãã³ãžã§ãªã¹ãã®ritouãããã¹ããŒãšãã§ãã¬ãŒã·ã§ã³ã®è©±ã§ãã
ãã¹ããŒãšIDé£æºã¯ã©ãããé¢ä¿ãªã®ãïŒãšããã®ã¯ãããã質åã§ãã
ãã®èŸºãããšãã»ãããŠãããŸãããã
ãã¹ããŒã®èª²é¡ãšããŠãã¢ã«ãŠã³ããªã«ããªããã¯ãã¹ã»ãã©ãããã©ãŒã åæããªã©ãæããããŸãã
äžæ¹ã§IDé£æºã¯ã
- èªèšŒæ¹åŒã®äžã€
- ã¡ãŒã«ã¢ãã¬ã¹ã®ç¢ºèª
- æ¬äººç¢ºèªæžã¿ç¶æ
ã®ãããšã
ãªã©ã®çšéã§äœ¿ãããŠããŸãã
äŸãã°åçŽã«èªèšŒæ¹åŒãšããŠæ¯èŒãããšãã¹ããŒã®åªäœç¹ã¯Conditional Mediationãšã®çµã¿åããã«ããUXæ¹åããã©ã€ãã·ãŒãªã¹ã¯ã®åæžãåèªèšŒã«äœ¿ãããããªã©ãæããããŸãã
ããããæå³ã§IDé£æºã®åŒ±ç¹ãUXãªã©ã®é¢ã§ãã¹ããŒãè£åŒ·ãã䜿ãæ¹ããããŸããããã¹ããŒã«å¯Ÿå¿ããŠããªãç°å¢ããµããŒãããããã®IDé£æºã䜿ãããšããè£å®é¢ä¿ã«ãããšèšããŸãã
OpenID Connectã®acr/amrãšçµã¿åãããŠèªèšŒã³ã³ããã¹ããæ¹åŒãèŠæ±ããå Žåã«ãã¹ããŒãšçµã¿åããããšããããšãã§ããŸãã
åæ§ã«åèªèšŒã®ãŠãŒã¹ã±ãŒã¹ã§ã¯auth_timeãmax_ageãlogin_hintãid_token_hintã䜿ã£ãŠç¢ºå®ã«åèªèšŒãããããšãã§ããããã«ãªããŸãã
RFC 9470ã®OAuth2.0 Step Up Authntication Challenge Protocolã䜿ããšäŸãã°æ±ºæžAPIãžã®ã¢ã¯ã»ã¹ãããéãJWTããŒã¹ã®ã¢ã¯ã»ã¹ããŒã¯ã³ã®äžèº«ãä¿è·å¯Ÿè±¡ãªãœãŒã¹åŽã§èŠãŠacr_valuesãæå®ããŠè¿œå èªèšŒãæ±ããããšã§å®å
šæ§ãé«ãããªã©ãã§ããããã«ãªããŸãã
ïŒïŒïŒïŒïŒ
次ã®ãã©ãã¯ã¯ãããžãã¹ãžã®OAuth/OIDC掻çšäºäŸããšãããã©ãã¯ã§ãã
ããžãã¹ãšããæå³ã§ã¯2ã€ã®åŽé¢ããããšæããŸããäžã€ã¯OAuth/OIDCã䜿ã£ãã·ã¹ãã ã䜿ã£ãŠã©ã®ããã«ããžãã¹ãæšé²ããŠããã®ããããããäºäŸã®è©±ããããŠäºã€ç®ã¯ããžãã¹ãé²ããäžã§å¿
èŠãšãªãã¢ã€ãã³ãã£ãã£ã»ãšãã¹ããŒãã®è²æã»ããŒã ã®çµæãšããããŒãã§ãã
ãŸãã¯ãã©ãžã«ã®NuBankã®äºäŸããã§ãã
The progress of Nubank and Open Finance in Brazil
NuBankã®Open Financeã®General Managerã®LucianaããããäºäŸã®çŽ¹ä»ã§ãã
90M以äžã®é¡§å®¢ãæã€ãšããããšãªã®ã§å·šå€§ãªéè¡ã§ããã
ã¯ã¬ãžããã«ãŒããæè³ãããŒã³ããªã©ãå«ãç·åçã«ãµãŒãã¹å±éããããŠããããã§ãã
ã€ã³ããŠã¹ã§ã·ã¹ãã éçºãé²ããããšã§è«žã
ã®ææ決å®ãå«ãã³ã³ãããŒã«ãã§ããç¶æ
ãäœãåºããŠãããã§ãããçŽ æŽãããã§ãã
Open FinanceãRegulatoryããªãã³ãªã®ãããŒã±ããããªãã³ãªã®ãããã€ããªãããªã®ããšãã話ã¯åœã«ãã£ãŠç°ãªããŸãããã©ãžã«ã¯Regulatoryããªãã³ãæ¥æ¬ãšäžç·ãªãã§ãããæ¥æ¬ã§ããã£ãšOpen FinanceãAPiãšã³ã·ã¹ãã ã浞éãããšããã§ããã
ãã©ãžã«ã§ã¯800ãã®äºæ¥è
ãOpen Financeãšã³ã·ã¹ãã ã«åå ããŠãããšã®ããšããããªããšOAuth2.0ãOpenID ConnectãFAPIãå¿
èŠã«ãªããŸãããããŠãã©ãžã«ã®æšæºãåä»æ§ã®ãªãã¡ã€ã³ãç¯å²ãéå®ããããšã§æé©åãããŠããããã§ãã
Open Financeã¯NuBankã®ããã·ã§ã³ã§ãããéèãµãŒãã¹ãåçºæããããšã«ãã人ã
ã®æ®ããããšã³ãã¯ãŒããããã«è€éæ§ãšæŠãããšããããŒãã«ãããããŠãããšããããšã§ãã
ãã®ããã«3ã€ã®æ±ãæ®ããŠåãçµãã§ããããã§ãã
- ããè¯ãéèé¢ã®ææ決å®ãããŠããããããã«äººã
ãæ¯æŽãã
- éè移管ããç掻äœéšãéäžåãã·ã³ãã«åãã
- åŸæ¥ã®Open FinanceãæäŸãããã®ãè¶
ããŠãã
éåžžã«åºæ¿çãªäºäŸã§ããã
äºæ¥ã®æé·ã«ã©ã®ããã«IDæè¡/IDããŒã ãè²¢ç®ããŠããã - SoftBank ã®åãçµã¿
次ã¯å°æŸããããSoftBankã§ã©ã®ããã«IDæè¡ãIDããŒã ã®ååšãäºæ¥æé·ã«ç¹ãã£ãã®ãããšãã話ã§ãã
ãŸãã¯SoftBankã«ãããIDæè¡ãã©ã®ããã«å°å
¥ãããŠããã®ãããšããæŽå²ã®è©±ã§ãã
ãã£ãŒãã£ãŒãã©ã³ããã¹ããŒããã©ã³ãžã®ãã©ãããã©ãŒã ã®ç§»è¡ãã³ã³ãã³ãããžãã¹ãã決æžããžãã¹ãžã®æ¡å€§ãªã©ãããŸã§ã®æŽå²ã«ã€ããŠèªãããŸãã
ãã®äžã§ã¹ããŒããã©ã³åãã®ãµãŒãã¹ãå¢ããŠãããšAPIã¢ã¯ã»ã¹ä¿è·ã®å¿
èŠæ§ãåºãŠããããšã§OAuthãOpenID Connectã®æè¡ãå¿
èŠã«ãªã£ãŠããããšããããšã§ããã
ããããªãããã¹ããŒããã©ã³ã«åãæ¿ããã«ã€ããŠåŸæ¥ã®ã¬ã©ã±ãŒã®åç·èªèšŒã§ã¯ãªãID/ãã¹ã¯ãŒãã«ããèªèšŒãå¿
èŠãšãªã£ãŠããŠããŸããåãåããã殺å°ãã¹ããŒããã©ã³ã§ã䜿ããåç·èªèšŒãå°å
¥ããŠãããšããããšã§ãã
äžæ¹ã§ãªã¹ãåæ»æãªã©ã®æ»æãæ¿åããã£ãªã¢æ±ºæžã®äžæ£å©çšãªã©ãå¢ããŠããããšããèªèšŒããªã·ãŒã®å®çŸ©ãšè€æ°èŠçŽ ã§ã®èªèšŒæ©èœã®è¿œå ãè¡ã£ãŠããŸããã
ãã®åŸãã°ã«ãŒãäŒæ¥ãšã®ã·ããžãŒåµåºãäºæ¥èª²é¡ãšãªã£ãŠããæ代ãåºãŠããŸãã
ãã®éãIDé£æºæè¡ã掻èºãããã§ããã
å
šäœãæ¯ãè¿ããšãæ¥çæšæºã®OpenIDããããããé©çšãããŠããã ãã ãã§å€§äœã®èª²é¡ã解決ã§ããããšã®ã³ã¡ã³ãããããŸãããçŽ æŽãããã
次ã®ããŒããšããŠã®ããŒã çµæã®è©±ã¯ã¿ãªããã«ãšã£ãŠã倧ããªèª²é¡ãªãã§ã¯ãªãã§ããããïŒ
èŠããã«éçºè
ãããããŒãžã£ãžããšãã話ã§ããããŒã ã®èšèšã¯éåžžã«é£ããã®ã§å°æŸããã®è©±ã¯ãšãŠãåèã«ãªããŸãã
äºæ¥ãžã®è²¢ç®ãæ°èŠããžãã¹ã®åµåºããããŠæè²ãæ¥çãžã®è²¢ç®ãªã©ãã©ã³ã¹ããšããªããããŒã èšèšããããŠããŸãã
çµç¹æé·ã®ããã®éµãšããŠãããããªèŠ³ç¹ã§èªãããã®ã§ãããã®äžã§ããIDæè¡ã®ãšã³ãžãã¢ã§ããåã«äºæ¥ãæ¯ãããšã³ãžãã¢ã«ãªã£ãŠã»ããããšããèšèã¯éåžžã«éèŠã ãšæããŸãããŸããã¢ãããŒã·ã§ã³ãšããŠãIDã奜ããã©ããããšããã®ã¯éèŠãªèŠçŽ ã§ããããšã«ã€ããŠãèªãããŸããããã®èŸºãã¯OpenIDãã¡ãŠã³ããŒã·ã§ã³ãžã£ãã³ãªã©ã®å ŽãããŸã掻çšããŠãã£ãŠããã ããããšæããŸãã
ããã«ãã£ã¹ã«ãã·ã§ã³: çµç¹å
ã«ãIDããŒã ãã確ç«ã»æ¡å€§ããã«ã¯?
次ã¯æŽç°ãããå·¥è€ãããèæ± ãããæž¡éããã«ããããã«ãã£ã¹ã«ãã·ã§ã³ã§ããå°æŸããã®è©±ã«ç¶ãããŒã çµæã®è©±ã§ãã
å·¥è€ããã®çµæŽããµã³ãã€ã¯ãã·ã¹ãã ãºæ代ã¯iPlanetãšãSun Identity Managerãšãããã£ãŠããã£ããããŸããããšãŠããäžè©±ã«ãªããŸããããããã¡ããã©10幎ããšã«è»¢è·ããŠããã§ããw
èªèº«ã®ãã£ãªã¢ãšããžã¿ã«IDåéãšã®é¢ä¿
- èæ± ããïŒèªåã§éžãã ãæ°èŠäºæ¥ãããããšã«ãªããããã¯ãã§ãŒã³ã䜿ã£ãŠããžã¿ã«èº«å蚌ãäœãããšãããããžã§ã¯ããããããã¯ããããå°å³ã ãã©ç¡ããªãããšã¯ãªãããããšããã®ãéžãã çç±ãçµæçã«ãããã¯ãã§ãŒã³ã¯äœ¿ããªãã£ããã
- æž¡éããïŒã©ã¡ãããšãããšæµãã«ä»»ããŠIDã®äžçãžãECãµã€ãã®åæ§ç¯ãªã©ããã£ãŠãããã¡ã«IDã®ãã£ãªã¢ããã人ã«çµæçã«ãªã£ãŠããŸã£ãïŒç¬ïŒ
- æŽç°ããïŒåããã©ã¡ãããšãããšæµãã«èº«ãä»»ãããåè·ã§äºæ¥éçºãããããšã«ãªãããã®å Žã«åŽæãããããã®ã§ã¢ã€ãã³ãã£ãã£ã䜿ã£ãŠäºæ¥éçºãããããšã«ãªãã¯ã15幎ããšããæãã
ããžã¿ã«IDãèªèº«ã®ãã£ãªã¢ã«ã©ã®ããã«åœ¹ç«ã£ãŠããã®ã
- æž¡éããïŒECãµã€ãã®çµ±åãªã©ã®æ±äººã«å¯ŸããŠèªèº«ã®çµéšãç®ã«çãŸãããšããã転è·ã«ã€ãªãã£ã
- æŽç°ããïŒã³ã³ãµã«ã®çµéšã®äžã§æè¡ã®å€é·ãšããžãã¹ã®å€é·ãå¹
åºãç¥èãåŸãããšãã§ããããã®ãããªçµéšãããŠãã人ã¯IDå±ãã以å€ã«ã¯å°ãªããåžå°æ§ãããã転è·ã«ã€ãªãã£ã
- èæ± ããïŒè»¢è·ã®çŽæ¥ã®ãã£ããèªäœãOpenIDãã¡ãŠã³ããŒã·ã§ã³ãžã£ãã³ã®ã€ãã³ãã ã£ããããžã¿ã«åºèªäœãçåºã®äžã§ã¯ã¹ã¿ãŒãã¢ããçãªé°å²æ°ãããã®ã§ãå°éæ§ã«å ããŠã¹ã¿ãŒãã¢ãããšããŠã®çµéšã圹ã«ç«ã£ãã
IDãããããšã®å¬ããã»èŸã
- æž¡éããïŒãµãŒãã¹ãããããããäžã§ããããã«é¢ãããããšãIDãªãã§ã¯ã ãšæããèŸãã¯çµ¶å¯Ÿã«æ¢ããããªãããšããèŸããåè·ã§ECãµã€ãã®ãã°ã€ã³ãµã€ããæ¢ããŠç€Ÿé·ã«ããã®ã¬ãããçµéšãã»ã»ããã çµéšãšããŠæ¢ããŠã¯ãããªãã·ã¹ãã ãéå¶ããã®ã¯ãã£ãªã¢ãšããŠã¯éåžžã«è²Žé
- æŽç°ããïŒãœãªã¥ãŒã·ã§ã³ãæäŸããåŽã ã£ãã®ã§æ¢ãããšã客æ§ã«ãè¿·æããããããçµéšã¯èŸããã®ãããã奥深ããšãããé¢çœããåéã§ã¯æ³åŸãªã©ãžèžã¿èŸŒãããšã«ãªãããæè¡é¢ã§ãã€ã³ãã©ããã¢ããªã±ãŒã·ã§ã³ã®ã¬ã€ã€ãŸã§èžã¿èŸŒãããšã«ãªãã§ãããããªçµéšãã§ãã
IDããŒã ã®æ§æã¯
- æž¡éããïŒããããŒã10åããããããšã¯ååäŒç€Ÿãã¿ããªãIDçµéšãããããã§ã¯ãªãæªçµéšã®äžããåŠãã§ãããOpenIDãªã©ã®æšæºãæŽã£ãŠããããšã§åŠç¿å¹çãããããè²æããŠããäžã§äœåãã¯ID奜ãã«ãªã£ãŠãã
- æŽç°ããïŒã¯ã©ã€ã¢ã³ãã®äºäŸã ããåå¥ã®æ
åœè
ããŒã¹ã§ãã£ãŠããã€ã¡ãŒãžããããããªã·ãŒå€æŽãªã©ããã£ãå Žåã¯æ ¹æ§ã§å¯Ÿå¿ãããŠããããšãå€ããå¹çåããããã«ã¢ããã€ã¹ãããããšã¯ãã
- èæ± ããïŒããžã¿ã«åºã¯ãããªã¯ã¹åçµç¹ãã¢ã€ãã³ãã£ãã£ãŠãããã¯PKIãšã¢ã€ãã³ãã£ãã£ããã£ãŠããããã®äžã§æ³äººãå人ïŒãã€ãã³ããŒã«ãŒãïŒããªã©ã§æ
åœãå¥ããŠãããå°é家ãããžã¿ã«åºã«éäžãããåé¡ãšèšããããæ®éã«ã¹ã«ãŠãã¡ãŒã«ãªã©çµç±ãå€ãããã æçµé¢æ¥ãã段éã§ã¯èª°ãã®ç¥ãåãã ã£ãããšããããšãå€ã
æ¡çšæŠç¥
- æž¡éããïŒæ¡çšæç¹ã§ã¯IDçµéšã¯ãšããªãããã«ããŠãããIDæ¥çã¯å°éçšèªãå€ã裟éãåºããã«ãããšèããŠããã®ã§ããªãã¹ãå°éçšèªã䜿ããã«è£Ÿéãåºãããã«èŠããŠããããšã倧åã ãšæããããŒã¯ã³ããšã
- æŽç°ããïŒåããæ¡çšæç¹ã§IDãç¥ã£ãŠããããšã¯ãªãã®ã§è²æãããŠããããšã«ãªããæ°å¹Žåäœã§äººæè²æãããŠããããšã«ãªããæè²ããã°ã©ã ãäœã£ããããŠãã
IDã®é£ãããšã¯
- æŽç°ããïŒä»æ§ã¯ãªãŒãã³ã ãããã®ä»æ§ããªããããªã£ãŠããã®ããæžããŠããªãããªããããªã£ãŠããã®ããããããªããšã€ã³ãã°ã¬ãŒã·ã§ã³ãã§ããªãããšããããå£äŒãªã©ã§æ
å ±äŒéãããªããšããŸããããªã
- æž¡éããïŒOIDCããããæ¬ããèªãã§ãããã ãã§ã¯ç解ã§ããªãã®ã§èªåã§èªãã§è§£èª¬ãããšãããŸã§å¿
èŠãéçºããŒã ã«ãèªåãã¡ã¯OIDCã«æºæ ããŠããã®ã§ã¡ãããšå¯Ÿå¿ããŠã»ããããšæ確ã«äŒãããäŒãç¶ããããšãå¿
èŠãæšæºã䜿ãããšã§æ°ãã人ãåŒã³èŸŒãããšã«ãã€ãªãããç¬èªã§äœããã®ãåŠã°ããããããæšæºã®æ¹ãã¡ãªããããããChatGPTã«èŽããã®ãæšæºãªãã§ã¯ã
- èæ± ããïŒããžã¿ã«åºã®äžã§ã¯åœéæšæºã䜿ãã®ãããã©ã«ãã瀟äŒèª²é¡ãæšæºä»æ§ã§è§£ãããšããããšãå¿
èŠã ãååšããå®è£
ã§ã¯å®çŸã§ããªãããšãããã®ã§ãä»ã®ããŒã ãšé£æºããªãã解ããŠããå¿
èŠããã
ã©ããã£ãŠIDããŒã ã¯äº€æµããŠããã®ã
- æŽç°ããïŒOpenIDãã¡ãŠã³ããŒã·ã§ã³ã«å
¥ã£ãŠããããã€ãã³ãã«åå ããŠããããOpenIDãã¡ãŠã³ããŒã·ã§ã³ãžã£ãã³ã«ã人æè²æWGãããã®ã§æ¯éåå ããŠãã ããïŒ
- æž¡éããïŒèªç€Ÿã®IDããŒã ã«äººãåŒã蟌ãããã«IDæ¥çãšããŠããããããšããããšå¬ããããšãã芳ç¹ã ãšããšã£ã€ãããããã ãšæã
- èæ± ããïŒæè¡ã®å°é家ãšãŠãŒã¹ã±ãŒã¹ãç¥ã£ãŠãã人ãå¥ã
ããšããããšãå€ãããã®äº€æµãã§ããå Žããããšè£å®é¢ä¿ã«ãªã£ãŠè¯ã
- æŽç°ããïŒäººæè²æWGã¯ããžãã¹ãµãWGãšæè¡ãµãWGãããã®ã§æ¯éïŒ
æåŸã«
- æž¡éããïŒIDããŒã åéããŠããŸãïŒãšã£ã€ããããããŒã ãç®æããŠããŸãïŒ
- èæ± ããïŒIDãŠããããåŒãç¶ã人ãåéããŠããŸããå®æ°é£æºãé²ããããšæããŸã
- æŽç°ããïŒçµ¶è³æ¡çšäžïŒ
- å·¥è€ããïŒåŒç€ŸãïŒïŒw
ãšããããšã§æåŸã¯æ¡çšã¢ããŒã«å€§äŒã«ãªããŸããããšãŠãåèã«ãªããŸããã
ïŒïŒïŒïŒïŒ
ããããæåŸã®ãããã¯ã§ãã
ããŒãã¯ãæ¥æ¬ã®IDçãçãäžããŠãããŸããããã§ãã
Your Identity Is Not Self-Sovereign
ãŸãã¯Justinããã§ããæšå¹Žã®EICã§åœŒã®è©±ãèããŠããšãŠãé¢çœãã£ãã®ã§åŒãã§ããããŸããã
ãSelfããšã¯ãªã«ïŒãšãããšããããå§ãŸãããã§ããããã®ã»ãã·ã§ã³ã¯åç»ã§èŠãªããšããçœããªãã®ã§åç»å
¬éããåŸ
ã¡ããã ãããšæããŸãïŒç¬ïŒ
ãã³ãã¯ç䞌ã§ããw
ãSoverignããšã¯ïŒ
ãTrustããšã¯ïŒ
ããããã°Nortonããã¯ç±³åœã®çåžã ã£ãŠåä¹ã£ãŠããããšãããŸããw
ãŸãã«Self Sovereignã
Source of truthã¯ã©ãã«èŠç¹ã眮ããã«ãã£ãŠå€ããããšããèŠç¹ãéåžžã«éèŠã§ããã
â»ããã¯USã®æšæºããããããåèã«ããŠããæ¥æ¬äººã¯æ¬åœã«èããªããšãã¡ã ãšããããŸããã»ã»ã»
ãããŠæåŸã¯ãIdentityã
ããã¯Entity - Identityã¢ãã«ã®è©±ã§èªèŠ³ãšä»èŠ³ã®è©±ãªããã§ãããã©ããã£ãŠèªåã®ã¢ã€ãã³ãã£ãã£ãè¡šæããã®ãããšãã話ã
ããèãããšã¢ã€ãã³ãã£ãã£ã¯åãåã£ãåŽãã©ãåãåãã®ãã«ããããã§ãããããããä»èŠ³ã®è©±ã
ã€ãŸããèªåãã©ãããã¢ã€ãã³ãã£ãã£ãè¡šæãããã£ããšããŠãçžæã«åãåããã段éã§èªåã§ã¯äœã®ã³ã³ãããŒã«ãã§ããªãããšããããšã
ãããèªå·±äž»æš©åã¢ã€ãã³ãã£ãã£ã ãšæã£ãŠãã人ã¯ãã£ããèãçŽããŸãããã
Closing Keynote
æåŸã¯åŽæããã«ããã¯ããŒãžã³ã°ã§ãã
ããŒãã¯ãåæ£ã®èª€è¬¬ãã§ãã
æåã«Kim Cameron Awardã®ã¢ããŠã³ã¹ããããŸãããOpenID Foundationãã¹ãã³ãµãŒãšãªã£ãŠããŸãã
Web1.0ãWeb2.0ã®æµãããããOAuthãOpenID Connectã¯ãŸãã«Web2.0ã®ç³ãåãªããã§ãã
OpenIDã®åºæ¬ã³ã³ã»ããã«ç«ã¡è¿ããšèªåã®ããã°ã®ã¢ãã¬ã¹ã䜿ã£ãŠãµã€ãã«ãã°ã€ã³ããŠããããšãããããªãŸãã«èªå·±äž»æš©åã®ä»çµã¿ã§ããã
ããããªããOpenID URLã䜿ããšå
šãŠã®ãµã€ãã«å¯ŸããŠåãèå¥åãæäŸããããšã«ãªã£ãŠããŸãã®ã§Pairwise IDãäœããªãã®ã§ãèªèšŒæäŸãµã€ãã§ããOpenID Providerãšãããšã³ãã£ãã£ãç»å Žããããã§ãããããOpenID Authentication 2.0ã
ãããå¿
ç¶çã«èªåã®ã¢ãã¬ã¹ã§ã¯ãªãOPã®ã¢ãã¬ã¹ã䜿ãããšã«ãªããèªå·±äž»æš©ãç ç²ã«ããŠããããã§ããããã¯çŸåšEUã§èµ·ããŠããEUDIWã®è°è«ãšãå
±éããŸãã
XRIãšãSXIPãªã©ããOpenID Authentication 2.0ãžã®æµããèŠãŠãããšãã®æ®µéã§GAFAã¯æ±ºããŠãã¬ã€ã€ãŒã ã£ãããã§ã¯ãããŸããããããèŠãŠãããšWeb2.0ã巚倧æ°èäŒæ¥ãçããŠãããšãã話ã¯ééã£ãŠããããšããããããã§ãããããåœæã®GAFAã¯å·šäººIBMãåãããšã§æ°è¡ã«ç±çãæã£ãŠåãå
¥ããããé©åœå
ã ã£ãã¯ãã§ãã
ãããããã®æµãã§çãŸããŠããWeb2.0ã¯æ¥µéãŸã§åæ£ãããŠããã«ããããããããªã巚倧äŒæ¥ã«æ¯é
ãããŠããã®ãïŒ
Googleã«å£²äžã®æšç§»ãã¿ããšããããšãããITç£æ¥ã¯åç©«äœæžã®ã¢ãã«ãªã®ã§å¯ã®éçŽã¯å¿
ç¶ã£ãŠããããšã§ããã
ã§ã¯web3ã¯ã©ããªã®ãïŒ
ãåæ£ããšããèšèãèªããšãã«å¯Ÿè±¡ãæ確åããå¿
èŠããããŸãã
ãããŠéäžãšåæ£ã¯ãã€ããªã§ã¯ãªãã°ã©ããŒã·ã§ã³ãããããã§ãã
ããã«åæ£å°åž³ãåœãŠã¯ããŠã¿ããšãå®ã¯åæ£å°åž³ã¯äž»äœãäžã€ã®å°åž³ã䜿ãã®ã§å®å
šéäžã ãšããããšãããããŸããã€ãŸãå®å
šéäžããŠããã·ã¹ãã ã«ãåæ£å°åž³ããšããååãã€ããããŒã±ãã£ã³ã°ã»ã³ã¹ã¯å€©æçã ãšãããŸãã
åæ£åIDãWalletã®äžçã«åœãŠã¯ãããšã©ããªããã
WalletïŒIdPãšããäžç芳ãªã®ã§IdPãå人ã®Walletã«åæ£ãããšããåŽé¢ã§ç©äºãèªãããã®ã§ã¯ãªããïŒãã ãå人ã®ããŒã¿ãWalletã«éäžããããšãã¿ããšåæ£ã§ã¯ãªããšæãããŸãã
 Web2.0ã®æèã§ã¯äžçäžã«IdPãåæ£ããŠããããšãããããæå³åæ£åããããWalletã¢ãã«ã§èŠããšIdPæäŸè
ãããWalletæäŸè
ã®æ°ã¯ãã£ãšå°ãªãç¶æ
ã§ãããIdPã¢ãã«ãšæ¯èŒãããšéäžããŠãããšèšããããã§ãã
ã€ãŸããweb3ã®äžçã«ãããWalletã¢ãã«ããããWalletãããã€ããžã®éäžããã©ãããã©ãŒã ãã³ããžã®éçŽãèµ·ããã®ã¯å¿
ç¶ãšãªãããã§ãã
ãããªããšæ¿çä»å
¥ãããªããªãããã§ãããäžéšã®åœããã£ãŠããããã«ç¬ç«ããã¢ããªã¹ãã¢ãèš±å¯ããããã«ãããšããŠãæ¬åœã«äœ¿ãããã®ãããããŠããŸããŸãªWalletãèš±å¯ããå Žåãæ¬åœã«ãã®Walletã¯ä¿¡é Œã§ããã®ãïŒå®éã«Walletããã®æ
å ±æµåºã®äºæ
ã¯çºçããŠããããã§ãã
ãããã圢ã§ã¿ããªãåæ£ããããšããŠãçµæãšããŠéäžãçºçããŠããŸããåæ£ã®èª€è¬¬ããšãããã®ãçºçããŠããããã§ããã
ãšããããšã§ãåå ããã ããçããããç²ãæ§ã§ããã
åç»ã¯è¿œã£ãŠå
¬éãã調æŽãè¡ããããšæããŸãã®ã§æ®å¿µãªããåå ã§ããªãã£ãæ¹ããããäžåºŠèŠããæ¹ã楜ãã¿ã«ããŠãããŠãã ããã