ANCR: SiG. 07-21-23
Notes on gathering requirements
AuthC : Notice and Consent Exchange Protocol (Authorization from Consent)
Authority – to provide authority from consent for authentication and authorization – Everyone is a A)controller or a b) principal
Map the role to the context – in context – you are processor, joint-controller, sub-processor
We need Auth C Document
AuthC- FAPI – Extension - OpenSource
o KeyCloak
Instructions
OIX Image – Map To it
27560 – use it – just write an update – for Digital Consent
a. Use 27560 – in x way
Map this holder, issuer and verifier (and verified data registry)
Physical Governance –
o Laws
o Physical Access Points
o Enforcement – economic and civil/criminal/private
o
Digital -
o Authorization and authentication requirements