ANCR: SiG. 07-21-23
Notes on gathering requirements
Â
AuthC : Notice and Consent Exchange Protocol (Authorization from Consent)
Authority – to provide authority from consent for authentication and authorization – Everyone is a A)controller or a b) principal
Map the role to the context – in context – you are processor, joint-controller, sub-processor
We need Auth C Document
AuthC- FAPI – Extension  - OpenSource
o  KeyCloak
Â
Instructions
OIX Image – Map To it
27560 – use it – just write an update – for Digital Consent
a.    Use 27560 – in x way
Map this holder, issuer and verifier (and verified data registry)
Â
Physical Governance –
o  Laws
o  Physical Access Points
o  Enforcement – economic and civil/criminal/private
o Â
Digital -
o  Authorization and authentication requirements
Â