eu-digital-identity-wallet / eudi-doc-architecture-and-reference-framework

The European Digital Identity Wallet
https://eu-digital-identity-wallet.github.io/eudi-doc-architecture-and-reference-framework/
Other
428 stars 60 forks source link

ATAG ARF Feedback: 2.1 Identification and access to online services - improve key management #263

Open heatherdahl opened 4 months ago

heatherdahl commented 4 months ago

Description

Name: Heather Dahl, Sam Curren, Indicio

ARF Chapter: 2.1 Identification and access to online service "This scenario covers the complete lifecycle of the EUDI Wallet from the User\'s perspective. It spans from acquiring a valid Wallet Instance to the process of identifying and authenticating themselves for an online service."

Recommendation: While some cases require personal attributes, many do not. Including DIDs makes identification possible in a uniform way without personal attribute disclosure; it also provides for key rotation without change of identifier - a practice considered important for good key management