Can We Really Have Zero Trust with a Federated Identity Architecture? With Justin Richer (MongoDB)
Identi31 Juni

Can We Really Have Zero Trust with a Federated Identity Architecture? With Justin Richer (MongoDB)

Most organizations say they are doing Zero Trust. Many still trust their IAM directory implicitly, protect it with a firewall, and call that a modern identity architecture. That is a perimeter by another name. In this session, Agne Caunt (Dock Labs), Richard Esplin (Dock Labs) and Justin Richer (MongoDB) work through what Zero Trust actually requires at the identity layer, why federated architectures tend to recreate the problems they were designed to solve, and what a more structurally sound approach looks like.

0:00 Introduction and guest overview

3:48 Zero Trust: origins and core principles

10:26 Why Zero Trust is still unnatural

11:45 Zero Trust in what? The foundational question

13:14 Directory synchronization: how enterprise identity fragility compounds

15:47 Verifiable credentials and the move to user wallets

18:06 Is the wallet really untrusted? Justin pushes back

20:39 Practical transition: using wallets at domain boundaries, not everywhere

22:55 VCs as a reinvention of X.509 for an online world

26:22 Tool comparison: OAuth/OIDC/SAML + SCIM vs. VCs

27:42 Shared Signals and Events (SSE): strengths and structural limits

31:51 User Managed Access (UMA): what it got right, why it stalled

34:35 GNAP: what it solves, when to use it instead of OAuth

41:00 SPIFFE/SPIRE: workload identity and short-lived credentials

46:06 SPIFFE's trust model and the "bottom turtle" question

47:24 WIMSE: bridging workload identity across trust domains

51:12 Agentic identity: the question from the audience

52:38 AI agents -- neither human nor workload, and why that matters

55:26 "On behalf of" vs. "for the benefit of" -- the liability distinction

58:55 What would a Zero Trust native architecture actually look like?

Website - https://www.dock.io/

LinkedIn - https://www.linkedin.com/company/docknetwork/

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(75)

Building a Business Model Around EUDI Credentials [Live]

Building a Business Model Around EUDI Credentials [Live]

In this session, we look at how money will move in the European Digital Identity ecosystem. EUDI is designed so that people hold verified credentials in their own wallets and share them with consent, ...

5 Okt 1h 6min

How to Give AI Agents Verifiable Proof of Authority [Live Demo]

How to Give AI Agents Verifiable Proof of Authority [Live Demo]

In this session, we show how an AI agent can be given a narrow, revocable slice of a person's authority, and how the counterparty on the other side of the transaction can verify it. Identifying an age...

14 Sep 56min

FIDO’s Vision for Passkeys, Digital Identity and AI Agents, with Andrew Shikiar (FIDO Alliance CEO)

FIDO’s Vision for Passkeys, Digital Identity and AI Agents, with Andrew Shikiar (FIDO Alliance CEO)

In this session, Andrew Shikiar, CEO at the FIDO Alliance, explains why passkeys succeeded where earlier password replacements failed, and how the FIDO Alliance is now applying the same playbook to di...

3 Aug 58min

The Identity Challenge in AI Agent Payments (with Harsh Mehta from Worldpay)

The Identity Challenge in AI Agent Payments (with Harsh Mehta from Worldpay)

In this session, Harsh Mehta of Worldpay and Dock Labs unpack the identity and trust challenges behind AI agents and agentic payments: what is genuinely working today, what is still marketing, and wha...

20 Juli 44min

The EU Digital Identity Wallet: A Practical Guide

The EU Digital Identity Wallet: A Practical Guide

In this session, Agne Caunt and Richard Esplin from Dock Labs break down the EU Digital Identity Wallet (EUDI) at the level most explainers skip: how the ecosystem is actually structured, what matters...

13 Juli 1h 14min

Liability in Agentic Commerce: Who Takes the Risk? [Live]

Liability in Agentic Commerce: Who Takes the Risk? [Live]

What happens to liability when the entity making a purchase is not a human? AI agents are moving from research into commercial reality. They can research and execute purchases. But the legal, identity...

15 Juni 58min

Trusted Caller Identity: Pilot Results from GSMA & Telefónica [Live]

Trusted Caller Identity: Pilot Results from GSMA & Telefónica [Live]

This session presents the results of a six-month proof of concept run by Telefónica Tech, GSMA, Dock Labs, and TMT ID to rebuild call center authentication using mobile network APIs and verifiable cre...

18 Maj 59min

Populärt inom Teknik

uppgang-och-fall
elbilsveckan
bilar-med-sladd
market-makers
vi-bilagares-podcast
rss-ai-med-jonas-benjamin
rss-snacka-om-ai
natets-morka-sida
rss-laddstationen-med-elbilen-i-sverige
skogsforum-podcast
rss-technokratin
rss-elektrikerpodden
rss-en-ai-till-kaffet
bli-saker-podden
rss-veckans-ai
rss-uppgang-och-fall
gubbar-som-tjotar-om-bilar
developers-mer-an-bara-kod
hej-bruksbil
rss-upplyst-entreprenordirektor