[WG-P3] [WG-IDAssurance] What to call a Relying Party in terms of aTrust Framework

Anna Slomovic/Equifax aslomovic at anakam.com
Thu Mar 10 20:34:04 EST 2011


I just want to pitch in that this is a very useful conversation. The privacy community and the identity community don't seem to meet in the usual places, so the conversation that bridges the two communities should help both.

Anna

Anna Slomovic
Chief Privacy Officer
Equifax, Inc.
1010 N. Glebe Rd.
Suite 500
Arlington, VA 22201

P: 703.888.4620
M: 703.254.9656
F: 703.243.7576
E: Anna.Slomovic at equifax.com

-----Original Message-----
From: wg-p3-bounces at kantarainitiative.org [mailto:wg-p3-bounces at kantarainitiative.org] On Behalf Of Mark Lizar
Sent: Thursday, March 10, 2011 1:29 PM
To: John Bradley
Cc: Richard G. WILSHER (Zygma); IA WG; Tom Smedinghoff; Kantara P3WG
Subject: Re: [WG-P3] [WG-IDAssurance] What to call a Relying Party in terms of aTrust Framework

Yes, I see the limits of the term principle..

Personally, I like Master Controller, but it suffers from the same  
sort of limitations.   I think in a privacy perspective Master  
Controller may be incredibly useful as a technical term but that is  
just my opinion.

In reality even data subject has semantical issues as a term and maybe  
even a blurring of terminological meaning  at an attribute level.   
The  significant difference is that Data Subject, Data Controller, and  
Data Processor are entrenched legally and therefore have some  
recognised authority.

Either way, it seems, terms need to find a way to be mapped by  
something like an agreed standard.

- Mark

On 10 Mar 2011, at 17:19, John Bradley wrote:

> Principal is used in the protocol domain to refer to entity that the  
> assertion is about.
> In many cases it is the same as Data Subject but as assertions can  
> be used for many things that is not always true.
>
> John B.
> On 2011-03-10, at 11:41 AM, Rainer Hörbe wrote:
>
>>
>> Am 10.03.2011 um 12:26 schrieb Mark Lizar:
>>
>>> In Data Protection, there are Roles: Controller, Processor and  
>>> Principle.
>>
>> I am only familiar with the terminology from the European DPD:  
>> Controller, Processor, Requester and Data subject. In which domain  
>> is Principle defined, and how does it map?
>>
>> - Rainer
>> _______________________________________________
>> WG-P3 mailing list
>> WG-P3 at kantarainitiative.org
>> http://kantarainitiative.org/mailman/listinfo/wg-p3
>

_______________________________________________
WG-P3 mailing list
WG-P3 at kantarainitiative.org
http://kantarainitiative.org/mailman/listinfo/wg-p3


More information about the WG-P3 mailing list