eu-digital-identity-wallet / eudi-doc-architecture-and-reference-framework

The European Digital Identity Wallet
https://eu-digital-identity-wallet.github.io/eudi-doc-architecture-and-reference-framework/
Other
412 stars 61 forks source link

Pre-provisioned PID #69

Open GSMA-EIG opened 1 year ago

GSMA-EIG commented 1 year ago

Context: Security of a pre-provisioned PID

Issue: In the ARF, there is a mention of use of a pre-provisioned PID (§4.2.1 in [1]),). We wonder how a high level of security can be achieved in this case.

Proposal: To clarify how a high level of security is achieved when there is a pre-provisioned PID in the EUDI.

pinamiranda commented 4 months ago

Thank you for bringing this to our attention.

The EUDI Wallet must adhere to the certification processes outlined in the eIDAS 2 Regulation. LoA High and other security aspects of the pre-provisioned PID shall be assessed within these certification processes.