迈向移动优先的跨境eID框架

Roland Czerny, Christian Kollmann, Blaž Podgorelec, Bernd Prunster, Thomas Zefferer
{"title":"迈向移动优先的跨境eID框架","authors":"Roland Czerny, Christian Kollmann, Blaž Podgorelec, Bernd Prunster, Thomas Zefferer","doi":"10.1145/3598469.3598562","DOIUrl":null,"url":null,"abstract":"The eIDAS technical framework has been successfully enabling cross-border e-government processes for many years. When initially conceived, today’s user habits and the prevalence and ubiquity of smartphones was nothing but a glimmer on the horizon. As a consequence, the concepts, technologies chosen, and technical standards used to carry out cross-border authentication were designed and chosen with browser-based user flows in mind. In this context, the network of eIDAS nodes and the interfaces defined to integrate them with all kinds of different national eID systems has stood the test of time. At the same time, however, transitioning these workflows to a mobile setting presents various significant challenges: Instead of using a single application (a web browser) to orchestrate the interaction of eID systems, eIDAS nodes and e-government service frontends (mostly using SAML), users are accustomed to using distinct native apps for every service and for interacting with eID systems. This work discusses different concepts essential for transitioning from such browser-based user flows to native app-to-app communication and combines them into a coherent concept. It presents a framework, which maintains browser compatibility, while at the same time providing all the benefits of native mobile apps, taking currently deployed eIDAS-based cross-border authentication to the next level by making it mobile-first, all without requiring invasive changes to existing infrastructure. As will be shown, a slew of technical constraints to overcome makes this a lofty goal, especially considering the heterogeneity of national eID systems which must obviously integrate well with the proposed concept.","PeriodicalId":401026,"journal":{"name":"Proceedings of the 24th Annual International Conference on Digital Government Research","volume":"1 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2023-07-11","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Towards a Mobile-First Cross-Border eID Framework\",\"authors\":\"Roland Czerny, Christian Kollmann, Blaž Podgorelec, Bernd Prunster, Thomas Zefferer\",\"doi\":\"10.1145/3598469.3598562\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"The eIDAS technical framework has been successfully enabling cross-border e-government processes for many years. When initially conceived, today’s user habits and the prevalence and ubiquity of smartphones was nothing but a glimmer on the horizon. As a consequence, the concepts, technologies chosen, and technical standards used to carry out cross-border authentication were designed and chosen with browser-based user flows in mind. In this context, the network of eIDAS nodes and the interfaces defined to integrate them with all kinds of different national eID systems has stood the test of time. At the same time, however, transitioning these workflows to a mobile setting presents various significant challenges: Instead of using a single application (a web browser) to orchestrate the interaction of eID systems, eIDAS nodes and e-government service frontends (mostly using SAML), users are accustomed to using distinct native apps for every service and for interacting with eID systems. This work discusses different concepts essential for transitioning from such browser-based user flows to native app-to-app communication and combines them into a coherent concept. It presents a framework, which maintains browser compatibility, while at the same time providing all the benefits of native mobile apps, taking currently deployed eIDAS-based cross-border authentication to the next level by making it mobile-first, all without requiring invasive changes to existing infrastructure. As will be shown, a slew of technical constraints to overcome makes this a lofty goal, especially considering the heterogeneity of national eID systems which must obviously integrate well with the proposed concept.\",\"PeriodicalId\":401026,\"journal\":{\"name\":\"Proceedings of the 24th Annual International Conference on Digital Government Research\",\"volume\":\"1 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2023-07-11\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Proceedings of the 24th Annual International Conference on Digital Government Research\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1145/3598469.3598562\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings of the 24th Annual International Conference on Digital Government Research","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/3598469.3598562","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

摘要

多年来,eIDAS技术框架已经成功地实现了跨境电子政务流程。在最初设想的时候,今天的用户习惯和智能手机的普及和无处不在只不过是地平线上的一线曙光。因此,在设计和选择用于执行跨界身份验证的概念、所选择的技术和技术标准时,都考虑到了基于浏览器的用户流。在这样的背景下,eIDAS节点网络及其与各种不同国家eID系统集成的接口经受住了时间的考验。然而,与此同时,将这些工作流程转移到移动环境也带来了各种重大挑战:用户不再使用单一应用程序(web浏览器)来协调eID系统、eIDAS节点和电子政务服务前端(主要使用SAML)之间的交互,而是习惯于为每项服务使用不同的本地应用程序,并与eID系统进行交互。这项工作讨论了从基于浏览器的用户流过渡到原生应用程序到应用程序通信所必需的不同概念,并将它们组合成一个连贯的概念。它提供了一个框架,保持了浏览器兼容性,同时提供了原生移动应用程序的所有好处,将目前部署的基于eidas的跨境身份验证提升到一个新的水平,使其移动优先,而无需对现有基础设施进行侵入性更改。正如我们将看到的,需要克服的一系列技术限制使这成为一个崇高的目标,特别是考虑到各国eID系统的异质性,这显然必须与所提出的概念很好地集成。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Towards a Mobile-First Cross-Border eID Framework
The eIDAS technical framework has been successfully enabling cross-border e-government processes for many years. When initially conceived, today’s user habits and the prevalence and ubiquity of smartphones was nothing but a glimmer on the horizon. As a consequence, the concepts, technologies chosen, and technical standards used to carry out cross-border authentication were designed and chosen with browser-based user flows in mind. In this context, the network of eIDAS nodes and the interfaces defined to integrate them with all kinds of different national eID systems has stood the test of time. At the same time, however, transitioning these workflows to a mobile setting presents various significant challenges: Instead of using a single application (a web browser) to orchestrate the interaction of eID systems, eIDAS nodes and e-government service frontends (mostly using SAML), users are accustomed to using distinct native apps for every service and for interacting with eID systems. This work discusses different concepts essential for transitioning from such browser-based user flows to native app-to-app communication and combines them into a coherent concept. It presents a framework, which maintains browser compatibility, while at the same time providing all the benefits of native mobile apps, taking currently deployed eIDAS-based cross-border authentication to the next level by making it mobile-first, all without requiring invasive changes to existing infrastructure. As will be shown, a slew of technical constraints to overcome makes this a lofty goal, especially considering the heterogeneity of national eID systems which must obviously integrate well with the proposed concept.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信