DID chooser�for SIOP
How can a user get a meaningful choice about which identifier to use on a website?
Use Case: a user goes to a Relying Party
User choice at the Relying Party
Personal
Healthcare
Register
Prefered identification providers.
These providers all can authenticate the user as the owner of the user information stored on this site using the user identifier provided by your choice from the buttons below.
The “Personal” provider requires a Wallet you have installed for Self-Issued IDs
The “Healthcare” provider is the trust registry for that community.
What are the options for Self-issued
The user has selected the “Personal” button above, what next?
1 The user has a single wallet available at openid://
2 The user has a wallet chooser available at openid://
The above can be improved if there is trust of apps using openid://
3 The user has a wallet chooser in the web (access by Registry)
4 The user agent (brower) has a registry for SIOPs
5 The user agent has extensions selected and installed by the user
6 The user selected Password Manager is woke to DIDs
1 The user has a single wallet for all DID
No solution proposed for web apps.
2 The user has a single chooser for all IDs
This solution, like the password manager, has a default and override
3 Registry Chooser (just shows /Authorize?)
4+5+6 The user agent (brower) has control
Similar to option 3 - some W3C options exist on implementation
The RP will needs to install javascript that sorts through the options
Caveats
Post Conditions
Useful links