introduction to openid foundation · 2020. 7. 29. · openid connect 1.0 oauth 2.0 json web...

10
Introduction to OpenID Foundation 2020-07-21 FDX + OpenID Foundation Virtual Workshop

Upload: others

Post on 23-Mar-2021

17 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Introduction to OpenID Foundation · 2020. 7. 29. · OpenID Connect 1.0 OAuth 2.0 JSON Web Signature (JWS) JSON Web Token (JWT) Client Initiated Backchannel Authentication (CIBA)

Introduction to OpenID Foundation

2020-07-21FDX + OpenID Foundation Virtual Workshop

Page 2: Introduction to OpenID Foundation · 2020. 7. 29. · OpenID Connect 1.0 OAuth 2.0 JSON Web Signature (JWS) JSON Web Token (JWT) Client Initiated Backchannel Authentication (CIBA)

OpenID Foundation

A Non-profit International Standardization Organization founded in 2007.

Specialized in the standardization of internet identity layer and API access management.

Page 4: Introduction to OpenID Foundation · 2020. 7. 29. · OpenID Connect 1.0 OAuth 2.0 JSON Web Signature (JWS) JSON Web Token (JWT) Client Initiated Backchannel Authentication (CIBA)

Corporate Members

Non-profit Members

Sustaining Corporate Members

Page 5: Introduction to OpenID Foundation · 2020. 7. 29. · OpenID Connect 1.0 OAuth 2.0 JSON Web Signature (JWS) JSON Web Token (JWT) Client Initiated Backchannel Authentication (CIBA)

OpenID Connect 1.0

OAuth 2.0

JSON Web Signature (JWS)

JSON Web Token (JWT)

Client Initiated Backchannel Authentication (CIBA)

Financial-grade API Security (FAPI)

OpenID Connect for Identity Assurance 1.0 (eKYC)

Shared Signals and Events

… and more

Instrumental in the creation of such standards like:

Page 6: Introduction to OpenID Foundation · 2020. 7. 29. · OpenID Connect 1.0 OAuth 2.0 JSON Web Signature (JWS) JSON Web Token (JWT) Client Initiated Backchannel Authentication (CIBA)

OpenID Connect: Selective Claims Provision Protocol

ID TokenClaimsAT/RTEtc.

RP

1. Me

Claim Sources

OP/SIOP

User AuthNGrant (Consent)Claims

Claims on-the-fly

StaticClaims

Which also forms Basis for ABAC.

Claims on-the-fly

Page 7: Introduction to OpenID Foundation · 2020. 7. 29. · OpenID Connect 1.0 OAuth 2.0 JSON Web Signature (JWS) JSON Web Token (JWT) Client Initiated Backchannel Authentication (CIBA)

3B UsersWorldwide.

Apple, Google, Microsoft, Verizon,

UK Open Banking, Australian CDS, BankID (Norway), itsme (Belgium), GSMA, etc.

Page 8: Introduction to OpenID Foundation · 2020. 7. 29. · OpenID Connect 1.0 OAuth 2.0 JSON Web Signature (JWS) JSON Web Token (JWT) Client Initiated Backchannel Authentication (CIBA)

Trustworthy and cost effective● Formally verified

(esp. With FAPI)● Test Suite Available

Page 9: Introduction to OpenID Foundation · 2020. 7. 29. · OpenID Connect 1.0 OAuth 2.0 JSON Web Signature (JWS) JSON Web Token (JWT) Client Initiated Backchannel Authentication (CIBA)

Global Interoperability A Holy grail or

Reality?

Page 10: Introduction to OpenID Foundation · 2020. 7. 29. · OpenID Connect 1.0 OAuth 2.0 JSON Web Signature (JWS) JSON Web Token (JWT) Client Initiated Backchannel Authentication (CIBA)

Create the future together.