A copy of this work was available on the public web and has been preserved in the Wayback Machine. The capture dates from 2019; you can also visit the original URL.
The file type is application/pdf
.
Data-Minimizing Authentication Goes Mobile
[chapter]
2012
Lecture Notes in Computer Science
Authentication is a prerequisite for proper access control to many eservices. Often, it is carried out by identifying the user, while generally, verification of certified attributes would suffice. Even worse, this kind of authentication makes all the user's transactions linkable and discloses an excessive amount of personal information, and thus erodes the user's privacy. This is in clear contradiction to the data minimization principle put forth in the European data protection legislation. In
doi:10.1007/978-3-642-32805-3_5
fatcat:bq2ckt45hnagjjq734dhapd4q4