[OLPC Security] Periodic identity updates

Karl O. Pinc kop at meme.com
Mon Feb 19 15:32:34 EST 2007


On 02/18/2007 04:03:40 PM, Karl O. Pinc wrote:
> 
> On 02/18/2007 03:18:50 PM, Karl O. Pinc wrote:
> 
> > The concept is to annually update the child's identity;
> > the identity established in Bitfrost section 4.

I think the right name for this would be P_PROVENANCE.

It's purpose is twofold.  First, as an anti-theft/sale measure it
augments P_THEFT by making clearer the provenance
of the XO should it be transferred, for whatever reason, from child
to child without complete re-initization to
first-boot state.  Being a separate policy it can be
used even when P_THEFT is off.

Second, it allows the
on-line image of the owner to develop in
correspondence with the owner's self-image.
Because the updated identity is authenticated
using the original identity, the updated identity
need not be in any centralized database and
the user's privacy is protected.

There has been no feedback on this thread.  I'd appreciate
some feedback regards where I've gone wrong
if I've completely missed the boat here.

Thank you.

Karl <kop at meme.com>
Free Software:  "You don't pay back, you pay forward."
                  -- Robert A. Heinlein



More information about the Security mailing list