Session at the European Identity & Cloud Conference 2013
May 16, 2013 15:00
KuppingerCole's Advisory stands out due to our regular communication with vendors and key clients, providing us with in-depth insight into the issues and knowledge required to address real-world challenges.
Unlock the power of industry-leading insights and expertise. Gain access to our extensive knowledge base, vibrant community, and tailored analyst sessions—all designed to keep you at the forefront of identity security.
Get instant access to our complete research library.
Access essential knowledge at your fingertips with KuppingerCole's extensive resources. From in-depth reports to concise one-pagers, leverage our complete security library to inform strategy and drive innovation.
Get instant access to our complete research library.
Gain access to comprehensive resources, personalized analyst consultations, and exclusive events – all designed to enhance your decision-making capabilities and industry connections.
Get instant access to our complete research library.
Gain a true partner to drive transformative initiatives. Access comprehensive resources, tailored expert guidance, and networking opportunities.
Get instant access to our complete research library.
Optimize your decision-making process with the most comprehensive and up-to-date market data available.
Compare solution offerings and follow predefined best practices or adapt them to the individual requirements of your company.
Configure your individual requirements to discover the ideal solution for your business.
Meet our team of analysts and advisors who are highly skilled and experienced professionals dedicated to helping you make informed decisions and achieve your goals.
Meet our business team committed to helping you achieve success. We understand that running a business can be challenging, but with the right team in your corner, anything is possible.
Session at the European Identity & Cloud Conference 2013
May 16, 2013 15:00
Session at the European Identity & Cloud Conference 2013
May 16, 2013 15:00
Here. Thank you. Hello. My name is NA. I am from St. Petersburg from Russia, and I'm very glad to see you here. And the topic of my presentation is meta society. The model of the life management concept. And we'll talk a little bit about legal communication system as general concept. It's mandatory components about the authentic internet, about legal notice as a part of public communications system. And we'll talk about meta society model, and we'll try to compliment the main goals of the life management concept with the structure of the correspondence system.
And I want to notice that where from Russia, it is a very special region and all the requirements that we talk about requirements for the life management concept will be very specified if you would like to implement this idea in our country. And I want to point out that we have a very hard requirements, a very strong requirements for safety of personal from, for ative communications. And please listen my presentation from this point.
Okay, we'll start. We have observed a lot of activity in the field of electronic identification and authentication, and we can study to be an important step towards fulfilling. The main goals of information technology is to design an integrated system of public communications between citizens businesses and the government. The life management concept determines the set of goals for these kinds of system.
And what we want to do is to complement this concept with a description of a structure and principles of an integrated, an integrated communication system, which includes legal significance and systemic protection of personal information. It is somewhat surprising that the legal significance issue is very rarely touched upon on authentication discussions. Even though that it is a key component of complete system of communications. Now let's take a step by step look at what elements are necessary to create a legal, significant public communication system.
The communication parties, these are individuals let's call them subscribers. The medium is the internet. And if special measures are not taken all identification and authentication problems on the internet, don't have reliable solution. So that's why these lines of communications are marked in red to overcome these problems. The subscribers have their personal data stores. In this case, the data will verify, authorized, get protected and will given to other subscribers with a permission.
Well, the subs, the personal data stores can be referred to as an information model of the subscriber and create a resident information model is a big step for creating complete integrated communication system. But our subscribers individuals, they are not passive static objects. They act interact, communicate with each other. They create new businesses. They buy cars, houses, etcetera. This is beyond this scope of the information model.
The subscribers interaction should be treated as a combination of informational exchange and functional interaction, which refers to the subscribers joined execution of certain ONEstep or multistep operations. Consequently, the element that corresponds to the subscriber in the communication space should also possess process of functions. So it can be referred to as a personal robot or personal server or communication agent will refer to it, to it as an E robot.
Thus, every subscriber in our communication space is matched with a certain informational function block that contains the subscriber's personal information and an reason number of procedures that occurred out by the subscriber's comments or as specified by the subscribers. In some circumstances, it is important to, to point out that every subscriber has only one personal abot and the communication between the subscribers is conducted only via ABOs.
Moreover, every subscriber is in contact only with his abot and any iRobot is in contact with his subscriber, his owner, and with iRobots of other subscribers, but not with other subscribers directly. It is very important. The use of iRobots brings additional convenience and functionality to our model, but it still doesn't provide legal significance.
Legal significance of communications is based on the third person testimony and in our information space, this third party is the authentic communication processor, ACP that carries out the registration of subscribers, their identification of iRobots and their interaction, their verification of electronic documents, and it controls communications iron. Ironically, these restrictions significantly expand network's possibilities in terms of legal significance. First of all, let's look at the interaction between ABOs.
They all are identified subscribers in a single communications system and their own identity on the internet is unique and the all sides can be assure that the authentic authenticity of the vis Avi and elections are recorded if necessary that argued that this is a perfectly secure communication space, as opposed to the regular internet, let's call it the authentic internet.
What else is interesting for using Abotts for communication, particularly the fact of the functionality limited, and Abott, wouldn't be able to hack other subscribers website and it couldn't be able to send money in a non account because it just wouldn't know how to do that. And in the given scheme, the problem solve authentication and identification is reduced in the area, subscriber abit. In general, we have solved the problem of authenticate multiple subscribers in a wide range of services.
In this scheme, this problem is reduced to the authentication subscriber only with one service with his own AER. Obviously this substantially simplifies matters and highly authentication can be achieved. The subscriber will be given a wide range algorithms for secure access, and he can use them, combine them and adjust them. And dynamically change use techniques in this space. iRobot will always unmistakably recognize his owner. And now we have a quiet, reliable functionally developed system that can be used as legally significant system of communications in real life.
The legal significance issue is only important in a conflict situation between parties that would require external arbitration and that in the event of such arbitration, all documents, all interaction protocols between the conflicting parties, they all are checked. And if the information regarding the interaction between the subscribers can be performed in the form that doesn't create doubts for the sub arbitrator, then the issue of authentication of the subscriber, the human factor will always bring UN provability in the event that the subscriber denies Haven performed the set operations.
Now we are going to the two key points that we want to present to you. Number one, in order to free the arbitration system from the, the human factor, all the system participants are asked to acknowledge their ABOs actions as legally significant and accept legal responsibility for the consequences of the operations. Their ABOs performed in this case, arbitration will only be carried out on the basis of the documents and reports that are created and stored in the authentic zone. It may son daunting, but we should take the following factors into account.
The abit is under full control of the subscriber and the electronic communication system is not compiled, sir, for the subscriber. He performs only those operations where the amount of risk involved is consistent with his trust in this system. And number two key point is in order to really give the subscriber a high degree of control over the ABOs actions and to legally remove the possibility of the subscriber refusing responsibility for the operations performed by his ABO legal notice function is introduced in the system. What is it legal notice?
Legal notice or proper notice is a list of actions that the notify must perform in order for the notified to be conceded informed of all the legal consequences of his actions. And I can say that legal notice is a concept that is widely used in a quarter flow, but it should also widely used in all kinds of communications.
Traditionally legal notice is referred to as a registered letter with a notice of its received, but today it is an archivism regular post is not the fastest and not the most reliable way to notify someone in order for the subscriber to not be apprehensive about unwant detections performed by his iRobot and to have a chance to prevent them. There is a function that we can say that it is advanced notice function, and this function will inform the subscribe over the proposed actions.
The legal notice scheme is determined by the subscriber himself and it declares that the notices he receives in accord with this scheme are all legal, significant, and therefore any possibility of removing responsibility is rejected except only one case, except the very rare case where the questionable operations are consequence of the technical malfunction of the authentic communication process. So I can say that notification scheme is a multi option scheme. The subscriber can assign different clients of notification options for different events. This is a multi-step scheme.
If the subscriber doesn't provide an expected reply for the notice in accordance of expected period of time, then it is assumed that an extraordinary situation has occurred. And in this case, additional notifications are presented in our view. The resulting structure is only one possible for reliable system of legal, significant communications. And what I want to add is by creating a communicating network for the a robots, we actually forming a comprehensive model of a community that takes part in electronic communications.
This model is homopathic to the real world and such ity allows us to ensure that any problem that have to do with subscribe interaction will be solved in electronic environment. And if the electronic environment doesn't give the fundamental and used solution for any given situation, then current procedures from the real world can be adequately adapted in the electronic space. And we can say that electronic solution will be faster, economical, more reliable, more environmentally friendly.
And obviously this hoity of this model will allow to do our implementation, especially in the first stages, easier for the subscribers. I want to point out that the abot identification is UN and the subscriber's personal information will be unnecessary in the electronic space and its absence in the electronic environment is the easiest and the most reliable way to protect our personal information at this stage of government registration. It is there. Okay.
So first registration, the subscriber will receive an impersonal electronic passport, which further dynamic multi-level identification will be based on using a personal information is safe. As an example, the information most commonly referred to is about the real estate owned by the subscriber.
But real estate is an independent entity from the real world and its life cycle is independent from its owner and in developed environment, it would be quite ridiculous if the new owner had to propose its the its description over again, real estate is a subject to the government registration and it is the main object of different kinds of communications and operations. And that's why it is logical to include information model of real estate to our model that we have created. And if there is change of ownership, then all the release about this fact will be added in this model.
And the same can be with a car it'll be shake and savvy. If as soon as the car leaves, the factory, its electronic model, its information model will be released in the electronic space and altogether they will be given to the dealer then to the first owner to the next second, third and, and so on. And it'll accumulate all information, all the history about this car. So there are many examples, but we can continue. The model will never be the same as the real thing, but it will initiate the asymptotic similar process from the real world to the model, from the model to the real world.
And the more elements from the environment can find their rejection in the electronic environment. An electronic model of the society can be termed as matter society because all magic communication processes will be go from the real world to the electronic environment. And the meta society model will allow us to turn the accumulated set of tools into an integrated system. It will let us to solve the problems posed by the life management concept. And it will prepare for the transition to the next level, to the highest level societal management.
I can say that yesterday we have, we had a very interesting discussion about life management platform, about requirements of life management. We talked about transparency authorized and many different other subjects. And Mara reminded some of these subjects. And we can say that our idea about ABOs about legal significance of communications is an additional and very important requirement for the life management platform, because it will solve all the problems of social communications.
And we only fully admit that we have reinvented a wheel, maybe something tribal or has been understood all alone, but we are sure that this idea is a very important part of life management platform. So now I am ready to answer your questions. No questions. Yeah. I have one it's the one hand is fascinating thinking about these robot space concept. The other hand, of course, ING, oring having a robot executing something which is legally relevant against me.
So this is something where I have to question whether you think this will, will be an impediment for such a system to be used on a big scale and widespread As in the studio question correctly, you are not sure that there will be a legal platform for this implementation. Yeah.
What, what I think I was trying to say is what, where do these robots go? Let me ask a couple questions. Are the robots coming from you? Are they?
Where, where do I go get a robot where who's the provider? I have to translate this question for my colleague.
The, the aro is provided by the C the central system of communications Who, who wrote the code? Where, who owns the robot? Do I buy one? Do I download it onto my machine? Do I where's? Is it your silo that owns this road?
So, you know, I'm seeing if either I'm mistaken or you're shoving me, me into an EBOT silo that is controlled by Abott that I, that I'm supposed to have some measure of control over. And I can't imagine how that EBOT would work for me in, in the sense that the other life management platforms, unless their iRobot enabled can't communicate with each other. I can give you an example. Yeah. Let's imagine that I rent a flat and I have to pay the rent payment every month. And usually we can use different ways to pay with this rent every month, but we can use our abot.
It is something like a program who Who's robot is, you know, I still need to understand Who is the, this Robot, where did this robot come from? Where, where does it originate? IRobot is a part of a system. It is like a processor.
I, I got where it is. I, where it comes from And subscriber can make special program comments for this ABI. Who's The provider who is the programmer. And who's the provider, The programmer You deal with people System. The system of communication will give you this Abott and the, this processor is consists from two parts. One part is from the system. And other part is from the user. You can program what you want, Right? So I'm saying that if I have to depend on your system to get my EBOT, this will never work. Can't work.
Because If you want to use this system, you will agree with it because it is not compulsory for you. See if I, if I can't choose who that comes from, what vendor that I work with to have act on my behalf. I'm I'm not gonna do it Again. Yes. I understand you. It is your opinion, but again, I can, No, this is the feeling of this community. It's not me. I'm just representing it to you. If you're trying to sell that, I have to use your robot to act on my behalf and I have no other choice. That's fine, but it's not gonna happen. So She's saying yes.
I want to, to remind you that the beginning of my presentation in Russia, there are special conditions for business for life. And sometimes you, our life is different, different from yours because here is law and you leave accordance through the law and you don't worry about it, but in our country, there are different sides from one law. And if you use a system of communications, you must be sure that every your step will be legal significance and every, your step will be protected by yourself. First of all, by this system Of communications. Yes.
And, and all I'm trying to feed back to you is that if you try to sell that in this community or in the United States, you will fail because we're not, you know, I'm not gonna subscribe to you dictating what I use as a robot. I think it's the reason that she's issuing the robot is to make sure that it's standard so that it follows a standard protocol. And you can't, You know, the system, but you see that's my whole point is that you, if you're gonna force me to do that, I won't do it. The only way to, to prescribe interoperability is by, by choice, by permission, not by prescription. Yes.
Yeah. So seems to have couple privacy issues with it. One entity, one robot principle actually is kind of nightmare for privacy, right? You said you've, you've said that there is no personal data associated with it. So there won't be privacy issue. That's a false statement. You are making contracts, you are making all sorts of actions there. And these traces are personal data and they are more important personal data when it comes to privacy issues.
So this, you know, one entity, one robot kind of construct is actually not so good for privacy. And I think that's, Or, or interoperability or freedom of choice of vendor or no lock in from a silo. All the things that we've been saying in the last week that our requirements for life management platform, this single robot design breaks. It Sounds a little bit like a wedding in the sense. I'm sorry to say that A little bit. I see it's spot on or willing you can't, you know, you can't dictate this, this kind, you can't prescribe it. It's it won't work.
Well, let me just say good luck. I hope that works out for you. Cause I can't see how it would work out here. The author of this idea, add added that in this concept, you can choose what you give to this system, what you do, what your abot will do. It doesn't the Abott couldn't do anything without your permission. And in all other Systems, that's not Enough. It's not enough.
But again, let's go to back to the real world. You can choice if you bring your money, this to this bank or to this bank or to this bank. And it depends on the system of protection of, of your money. And you can choose, you can decide. And at the same time you can, if you get a registration in the system, then you have a, I dunno, let's call it a card and you can be anonymous. And it doesn't matter if you want to be, I don't know, draw, you will draw in this system. If you want to be Peter, you will be Peter in this system. But when you want to be yourself, you will say, okay, here I am.
Well, I, I understand that the, the freedom of choice of trying to use your system to be different personas and anonymous and, and you're missing my point. And that is that I want to go beyond that and choose whether I use your system at all. And if you can't do that in, in you're prescribing a way that your life management platform works at the level of an iRobot, it's going to be rejected because it's not enough. It's it's to rigid. Okay. We're open to discussion. Yeah.
I mean, if am I wrong? Are you, I think the point is you don't have to use Thero solution at all, but if you use it package And her point is, if you're not using Thero butt, then this system doesn't work.
You, you have to use their iRobot. No, you don't have to. Otherwise you're subject to the vagaries of the current legal system there. And so this is one solution that you can choose to use or not choose to use. So I suppose that's one, she is suggesting perhaps that's gonna be multiple systems, like, and it's you opt into the system. So you have right. Not to use the System.
Right, right, Right. We don't, we didn't implement this system yet, but we, in the process of it in crime, do you know where is creamy? It is a part of Ukraine. And first steps we have, we had first steps of implementation of this system. And I can say that, yes, it is difficult, but it is possible. No system wise, it can be done. It's yes. It's it is just a system. And it is our decision to use this system or this system or this, oh, very important. This system, we don't want to sell this system. It is something like a communication space in one country or in many countries.
And I think the implementation of this system of all of any kinds of system depends on the country, depends on the place of the world. It depends on the law of the country because you cannot implement all your ideas without according to the law, according to the geographic place, according to the mentality of people. Okay. Thanks Doug. To look with that design. So let's.