A European Best Practice · 25.03.2009  · Innovation Forum 2009, Milano, 25.3.2009. Herbert...

Preview:

Citation preview

Innovation Forum 2009, Milano, 25.3.2009

Herbert Leitold

The Austrian Citizen CardA European Best Practice

The E-Government Innovation Centre is a joint initiative of the Federal Chancellery and the Graz University of Technology

About EGIZ

E-Government Innovation Centre Established September 2005

Joint initiative the Austrian Federal Chancellery and the Graz University of Technology

Think-Tank tokeep pace with rapid technological development

assist in preparing the eGovernment strategy

develop, prototype, and pilot innovative approaches

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 2

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 3

Presentation Outline

The Citizen Card ConceptMilestones

Current Status

Key Aspects

Applications What is it good for ...

... for Citizens

... for Businesses

... for Public Administration

Lessons learned and next steps

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 4

Citizen Card - Major Milestones

November 2000: Austrian Cabinet Council decision… to employ chip-card technology to improve citizen’s access to public services; to supplement the planned health insurance card with electronic signatures

February 2003: 1st Citizen Card Austrian Computer Society membership card

March 2004: E-Government ActLegal basis of the Identity Management System

2005 - 2009Several private-sector and public-sector borne Citizen Card initiatives

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 5

Citizen Card – Key Decisions

Data protection build in by designAvoid added privacy risks due to electronic processes

Cross-border build in by design Enable EU citizens to use their home eID (cf. Services Directive)

Voluntary use Provide the infrastructure

Citizen has the choice to take it up

Not limited to government – open for private sector Can be issuer of citizen cards

Can be user of citizen cards – enable eBusiness

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 6

Major initiatives – Citizen Cards

Bank cards (ATM cards)Each bank card issued since March 2005 is also an SSCD (as of 1999/93/EC) – about 6.5 mio. cards

Health insurance cards:Rollout Mai-Nov. 2005, 100 % coverage reached end of Nov. 2005 (~9 mio.)

Further initiatives:• some credit cards• official’s service card• CSP signature cards• student service cards, etc.

so far, no eID with chip

The Austrian Citizen Card is a concept, not a specific technology

The Citizen Card combinesqualified electronic signatureAuthentication

electronic identity Identification

data on representation, mandatesRepresentation

Citizen Card - Basic functions

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 7

Data Protection Principle – sector-specific PINs

SOURCENOT 

STORED

ssPINAREA  A 

(e.g. health)

ssPINAREA  B(e.g. tax) 

DO NOT ADD FURTHER RISK BY eID AND AUTOMATION !!!

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 8

Open Interface Security Layer

Citizen C

ard Environment

Client-side integration of technologies

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 9

Server-side Integration – Open Source

• MOA – Module for On-line Applications

Basic modulesIdentification (MOA-ID)

Signature validation / creation (MOA-SS/SP)

Electronic delivery (MOA-ZS)

Representation (MOA-VV)

Official signatures (MOA-AS)

Open source

10Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold

The Big Picture

11Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 12

Applications – a few examples

For the citizens Tax declarations online

eDocuments

For businessesas service provider: eBusiness

as user: eGovernment, eDocuments

For administrationsSecure access to eDossiers

…. in Action: Tax Declarations online

FinanzOnline1 Mio. users (04/2006)

Tax returns, VAT declaration, etc.

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 13

…. in Action: Private Sector Use

System open for take-up by private sector

e.g. Internet banking

e.g. Online Shops

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 14

Tools: Securing sensitive data

Citizen Card has encryption functions

Tools to encrypt sensitive data, e.g.

password safe

access data to Internet bank

private documents

classified data

etc.

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 15

Document-Signatures

Tools to sign PDF

Word 2007

OpenOffice

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 16

Official signatures resistant againstmedia breaks

…. in Action: Criminal Record Certificate

Frequently needed, e.g. in public procurement

Fully electronic process

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 17

…. in Action: Electronic dossier system

All federal ministries

Secure access using theofficial‘s service card

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 18

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 19

The future

Enhance user convenience

Cross-border aspects

Recent developments

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 20

User convenience Minimum footprint –no local installation

Demonstrator Mobile signature

Open-Source Citizen Card Environment

Innovation Forum 2009, Milano, 25.3.2009Herbert Leitold 21

EU Large Scale Pilot eID „STORK“

Austria

Belgium

Estonia

France

Germany

Italy

Luxembourg

Netherlands

Portugal

Slovenia

Spain

Sweden

United Kingdom

Plus - Iceland

Innovation Forum 2009, Milano, 25.3.2009

Herbert Leitold

Thank you for your attention!

Herbert.Leitold@egiz.gv.at

Recommended