Kim Cameron remembered via his 7 Laws for Identity
Friends of the late computer scientist Kim Cameron took the opportunity of gathering at the KuppingCole European Identity & Cloud Conference (EIC 2022), to remember Cameron, his life and contribution to digital identity and beyond via his 7 Laws of Identity. Published in 2005, the laws have proved highly influential for companies, networks and individuals in tackling what Cameron saw as the fundamental issue for online identity: “The Internet was not built with an Identity layer. Seven of his friends and former colleagues and peers remembered Cameron through his seven laws in a special EIC 2022 session. Technical identity systems must only reveal information identifying a user with the user’s consent Doc Searls of Customer Commons revealed that while Cameron’s work influenced the later movement, the man himself did not like the term ‘Self-Sovereign Identity. The solution which discloses the least amount of identifying information and best limits its use is the most stable long-term solution Joni Brennan, President of the Digital ID & Authentication Council of Canada (DIACC), explained Law 2 with a memory of visiting the Light Museum with Cameron (and Eve Maler, see below). “The beauty of [the Light Museum] was how the light was shown and where it wasn’t. “So I think data can be thought about in an artful way, as that light, and if we have too much data that’s shared and not minimized, we lose the delicateness of that transaction. Brennan believes Cameron brought that way of looking at things to data.
Digital identity systems must be designed so the disclosure of identifying information is limited to parties having a necessary and justifiable place in a given identity relationship “If these laws had been obeyed in 2005,” said Doc Searls, standing in for Joyce Searls, “we wouldn’t be in the pickle with privacy we have. It is the “grace of civilization” according to Searls, that we do not go around constantly parading our identities in the physical world. “If companies would have had the Kim Cameron-like manners not to pry into our private lives” we would all be better off, more trusting of companies and each other, said Searls. A universal identity system must support both “omni-directional” identifiers for use by public entities and “unidirectional” identifiers for use by private entities, thus facilitating discovery while preventing unnecessary release of correlation handles OpenID Foundation board member Don Thibeau saw this law as highly consequential for the subsequent development of digital identity and efforts to prevent tracking and surveillance via paralysed identifiers. Law 4 was incorporated into GDPR and foresaw an era of SSI, said Thibeau, who saw Cameron as a consequential man, of consequential work who took action in his beliefs: “For many of us, Kim was consequential, Kim was a mentor. Thibeau took the opportunity to announce the Kim Cameron Scholarship to a large audience. A universal identity system must channel and enable the inter-working of multiple identity technologies run by multiple identity providers Eve Maler, ForgeRock CTO, said Kim was prescient in its nod to the power of standards, for identity and individual autonomy.
For Maler, Law 5 has hidden depths and much of her life – professional and private – has been lived by it. “In pluralism, Kim grasped a particularly sticky nettle,” said Maler and described Kim’s influence in a world that witnesses a “pendulum swing between centralized and decentralized[link to other EIC story?]. The universal identity metasystem must define the human user to be a component of the distributed system integrated through unambiguous human-machine communication mechanisms offering protection against identity attacks “Kim was always about the people,” said Mike Jones, a standards architect at Microsoft. Jones himself is paying this care forward by mentoring others and said he is “still motivated by his quest to build the internet’s missing identity layer. The unifying identity metasystem must guarantee its users a simple, consistent experience while enabling separation of contexts through multiple operators and technologies Clear Skye’s Jackson Shaw, who hosted the panel, provided heartfelt recollections of Kim, who registered so many patents while at Microsoft that his office had a brick wall made up of the patent plaques that the firm awarded to its employees. For Law 7, Cameron was already aware of how life online would mean people would be wearing different hats in different contexts. More memories of Kim Cameron have been gathered along with details of a new scholarship established in his name. digital identity | European Identity and Cloud Conference | identity management | interoperability | Kim Cameron | privacy | self-sovereign identity | standards
Read full article at Biometric Update