Hitoshi Kokumai

5年前 · 2 分の読書時間 · ~10 ·

ブログ作成
>
ブログ Hitoshi
>
Blockchain solutions offered without a reliable user authentication don’t make much sense, do they?

Blockchain solutions offered without a reliable user authentication don’t make much sense, do they?


When we say ‘This door is weak’, it could mean ‘The door panel is weak’ and ‘The lock/key system is weak’.  The blockchain technology could indeed help make a strong door panel, but it alone could never make a substitute to a reliable lock/key system.


d40409d0.png

Well, for the most reliable lock/key system for cyberspace, i.e., digital identity authentication, there must be three prerequisite

First of all, identity assurance with NO confirmation of the users volition would lead to a world where criminals and tyrants dominate citizens. Democracy would be dead where our volition was not involved in our identity assurance. We must be against any attempts to do without what we remember, recognize and feed to login volitionally.

Secondly, mathematical strength of a security makes sense so long as the means is practicable for us Homo sapiens. A big cake could be appreciated only if it’s edible.

Thirdly, being ‘unique’ is different from being ‘secret’. ‘Passwords’ must not be displaced by the likes of ‘User ID’. I mean, we should be very careful when using biometrics for the purpose of identity authentication, although we don’t see so big a problem when using biometrics for the purpose of personal identification.

Identification is to give an answer to the question of “Who are they?”, whereas authentication is to give the answer to the question of “Are they the persons who claim to be?” Authentication and identification belong to totally different domains.

We know that the password is an indispensable factor for multi-factor schemes and that the security of password managers and single-sign-on schemes needs to hinge on the reliability of the master-password. Biometrics, which relies on a backup password, can by no means be an alternative to the password,

The password as memorized secret is absolutely necessary. We must not accept any form of password-less login.

We might also need to look at the situation where we cannot rely on anything but the memorized secrets; emergencies.

What is practicable in a calm indoor environment is not necessarily practicable in the turbulent outdoor environment, although the reverse can be said. The difference would be most striking in the cases of battlefield and disaster recovery.

Can we take it for granted that the people in such panicky situations are holding the cards and tokens for their identity authentication?  

Can we be certain that the biometrics measures, whether static or behavioral, are practicable for the people who are injured or caught in panic?

It is the obligation of the democratic societies to provide the citizens with identity authentication measures that are practicable in emergencies.

Slide “Identity Assurance in Emergencies”.

Blockchain solutions for valuable information assets must come with the most reliable means of identity assurance.


"
コメント

Hitoshi Kokumai

4年前 #2

#1
Your heartening comment is very much appreciated.

Debesh Choudhury

4年前 #1

I agree - "We must not accept any form of password-less login" which is vulnerable and against our volition. The identity authentication system should also be practicable in case of emergencies .. Hitoshi Kokumai you raised important points.

Hitoshi Kokumaiの記事

ブログを見る
2年前 · 2 分の読書時間

Some friends directed my attention to this news report - · “Biometric auth bypassed using fingerpri ...

2年前 · 2 分の読書時間

Taken up today is this TechRepublic report on voice print as a new password - https://www.techrepubl ...

2年前 · 3 分の読書時間

Today's topic is “Microsoft Exchange Autodiscover protocol found leaking hundreds of thousands of cr ...

関連プロフェッショナル

この職種に興味がある方はこちら

  • 【2023年4月民営化】(仮称)東池袋第一保育園

    調理師

    次の場所にあります: beBee S2 JP - 2日前


    【2023年4月民営化】(仮称)東池袋第一保育園 豊島区, 日本 TEMPORARY

    【(仮称)東池袋第一保育園 求人のポイント】 · ◆各線「池袋」駅徒歩10分 · ◆園児定員:113名(0歳~5歳) · ◆月給 215,000円 ~ 245,000円 · ◆賞与年2回(3カ月分) · ◆オープニングスタッフ · ◆認可保育園の調理師 · ----- · 勤務地 · ----- · 東京都豊島区東池袋2-60-19 · ----- · 最寄り駅 · ----- · JR山手線池袋駅 徒歩10分 · ----- · 園名 · ----- · 【2023年4月民営化】(仮称)東池袋第一保育園 · ----- · 施設形態 · ----- · ...

  • ハウンドジャパン株式会社

    ドライバー・引っ越しスタッフ】週2

    次の場所にあります: Whatjobs JP C2 - 3日前


    ハウンドジャパン株式会社 Yokohama, 日本

    **【軽貨物ドライバー】未経験で年収850万も夢じゃない4人に1人が実践今最も伸びている働き方** · 職種:ドライバー・引っ越しスタッフ · 職種未経験OK · ミドル・シニア活躍中日払い・週払いOK週2~4日以内OKのおしごと · **【給与】** · 月給288,000円~553,750円 · ※想定年収3,456,000円~6,645,000円 · 月収や年収は参考例にすぎません · 運んだら運んだ分だけ稼げます · - 未経験で2ヶ月後の週5勤務、平均月収は40万円超えも実現可能 · 時間や会社に縛られず働いて、稼ぎたい方はぜひご応募ください ...

  • flamingo(フラミンゴ)

    整体師

    次の場所にあります: beBee S2 JP - 2日前


    flamingo(フラミンゴ) 藤沢市, 日本 アルバイト

    更新日: · 【業務内容】整体師としてのサロンワーク全般 · 【雇用形態】 アルバイト · 【勤務地】JR線・小田急線「藤沢」駅南口より徒歩7分のリラクゼーションサロン · 【給与】時給 1,112円~+歩合(売り上げに応じて) · 【試用期間中給与】基本変動なし(入客できるまでは調整の可能性あり) · 【PR】 · 【休日】週2~3日勤務 · 水曜日定休 · 【店長歴:2~3年】 · 【店長からのコメント】短い時間での勤務できる方を募集しています。なかなか他のサロンさんでは働けない主婦の方なども大歓迎です。一緒にサロンを盛り上げていって下さいね★ · ...