ページをめくっています。
次の章を表示しています…
この読み物は現在、英語で提供されています。画面の操作部分には、選択した言語を使用しています。
英語の原文を読む →A decentralized identifier (DID) is a type of globally unique identifier that enables an entity to be identified in a manner that is verifiable, persistent (as long as the DID controller desires), and does not require the use of a centralized registry. DIDs enable a new model of decentralized digital identity that is often referred to as a self-sovereign identity (SSI).
This emerging model of digital identity, based on DIDs and SSIs, puts users in full control of their identity data and addresses key limitations of centralized and federated identity providers, including security vulnerabilities, large-scale data breaches, limited privacy protections, and insufficient user control. The DIDs are an important component of decentralized web applications.
A decentralized identity management system based on Decentralized Identifiers and Self-Sovereign Identity principles, usually starts from a reference architecture involving Issuers, Holders, and Verifiers, with digital wallets or agents acting on behalf of identity subjects, and a specific identity infrastructure that supports issuance, validation and revocation of credentials.
A decentralized identifier resolves (points) to a DID document, a set of data describing the DID subject, including mechanisms, such as cryptographic public keys, that the DID subject or a DID delegate can use to authenticate itself and prove its association with the DID.
A DID identifies any subject (e.g., a person, organization, thing, data model, abstract entity, etc.) that the controller of the DID decides that it identifies. DIDs are designed to enable the controller of a DID to prove control over it and to be implemented independently of any centralized registry, identity provider, or certificate authority. DIDs are URIs that associate a DID subject with a DID document. Each DID document can express cryptographic material, verification methods, and service endpoints to enable trusted interactions associated with the DID subject.
A DID document might contain additional semantics about the subject that it identifies. A DID document might also contain the DID subject itself (e.g. a data model).
National efforts include the European Digital Identity (EUDI) Wallet as a part of eIDAS 2.0 in the European Union, and China Real-Name Decentralized Identifier System (China RealDID) under China's Ministry of Public Security. The AT Protocol and applications powered by the protocol such as Bluesky use DIDs for their identity system in order to give users full control over their identity, including where their data is stored. The protocol uses its own DID method, did:plc, as well as a general domain-based method with did:web.
Persona is an identity verification company founded in 2018. Its product consists of uploading a government-issued ID and potentially taking a selfie to confirm the user's identity and give them a DID identity. The service is used by the LinkedIn professional networking site, the Discord and Reddit social media networks, the Roblox video game platform, and the OpenAI artificial intelligence company.
The W3C DID Working Group developed a specification for decentralized identifiers to standardize the core architecture, data model, and representation of DIDs.
The W3C approved the DID 1.0 specification as a W3C Recommendation on July 19, 2022.
The Decentralized Identity Foundation (DIF) published a Dynamic Traveler Profile Generation Specification in June 2023, for use cases in the travel industry.
次の資料から選び、書式を調整: Decentralized identifier。執筆は各寄稿者、ライセンスは CC BY-SA 4.0. 改訂版 1349329133。 節と書式は簡略化されています。全体の背景と寄稿履歴は、リンク先の改訂版で確認できます。この参考文は元と同じライセンスを維持します。追加の引用リンクはその版から取り込んだもので、ここでは独立に確認していません。