世界经济论坛-加快向旅游数字凭证的过渡:KTDI的经验教训——一种安全无缝的公私合作旅行(英)-2021.10-39页_10mb
报告摘要
Summary of "Accelerating the Transition to Digital Credentials for Travel: Lessons from KTDI - a Public-Private Collaboration for Secure and Seamless Travel"
Core Content
This white paper discusses the transition to digital credentials in travel, emphasizing the need for a secure, seamless and interoperable system to restore trust and efficiency in cross-border movement. It outlines the KTDI (Known Traveller Digital Identity) initiative, a public-private collaboration launched by the World Economic Forum in 2018, as a case study that demonstrates how such a system can be developed and implemented. The paper highlights the challenges posed by the pandemic and how they have accelerated the demand for digital credentials, while also underscoring the importance of multistakeholder collaboration to address these issues effectively.
Main Points
The Need for Digital Credentials
- The travel industry is facing increasing demands for efficiency, security, and touchless processes due to rising traveller volumes, enhanced security requirements, and infrastructure limitations.
- The pandemic has intensified the need for digital credentials, especially for verifying health status (e.g., vaccination certificates, negative test results).
- Current systems are fragmented, with many solutions operating in silos, leading to inefficiencies, confusion, and potential fraud.
- A globally accepted, interoperable framework is essential to support seamless and secure cross-border travel.
Emerging Approaches
- Centralized Public Key Infrastructure (PKI): ICAO's eMRTD (Electronic Machine-Readable Travel Documents) is a globally interoperable standard that has been used to verify identity and health status.
- Decentralized Digital Identity (DDI): Systems like KTDI and IATA Travel Pass offer a more flexible and privacy-preserving approach, allowing users to selectively disclose information and control their data.
- These two approaches can complement each other, but each has its own set of advantages and limitations.
KTDI: A Case Study
- KTDI was designed to test a future vision of secure and seamless travel using digital credentials.
- It was the first government-led public-private ecosystem to explore this concept.
- The initiative has made significant progress in building a trust framework, defining legal and policy requirements, and developing a mobile application that is GDPR-compliant.
Collaboration Opportunities
- Collaboration between governments, private sector, and international organizations is crucial for developing a unified and scalable digital credential system.
- The KTDI experience provides a blueprint for other initiatives, showing how to build and govern a digital identity ecosystem.
- The pandemic has acted as a "burning platform" to push for the development of trusted digital credentials.
Key Challenges
- Inefficiency: Manual verification processes have led to longer wait times at airports, even with reduced travel volumes.
- Forgery: The rise in fake digital credentials, particularly in the context of the pandemic, has highlighted the need for secure and verifiable digital solutions.
- Interoperability: Lack of global standards and mutual recognition hinders the effectiveness of digital credentials and often leads to the reintroduction of physical documents.
Best Practices and Lessons Learned
- A common vision and mutual values among stakeholders are essential for the success of a digital credential system.
- Robust governance frameworks are necessary to ensure trust, compliance, and scalability.
- Legal and regulatory alignment across jurisdictions is a critical hurdle but can be overcome through dedicated working groups and collaboration.
- Technology considerations include the use of verifiable credentials, decentralized identity systems, and secure data sharing mechanisms.
- User-centric design is vital to ensure that digital credentials are accepted and used by travellers, airlines, and border authorities.
Key Roles and Activities in the KTDI Ecosystem
Roles:
- ISSUER: Creates and issues identity credentials based on user claims.
- HOLDER: The individual or entity that uses the issued digital identity.
- VERIFIER: The entity that consumes and trusts the credentials for decision-making or access.
Key Activities:
- Validation and Issuance: Governments validate ICAO eMRTD or DTC and issue them to the user's KTDI wallet.
- Selective Disclosure: Users can selectively disclose required information to verify their identity and health status.
- Consent and Control: Users maintain control over their personal data through informed consent and encrypted data sharing.
- Verification: Verifiable credentials are validated using a decentralized Verifiable Data Registry.
- Expansion: KTDI aims to expand to support new use cases, such as health credentials, and integrate with PKI-based systems.
Conclusion
The KTDI initiative demonstrates that a secure, efficient, and trusted digital credential system is not only possible but necessary for the future of travel. By focusing on collaboration, interoperability, and user-centric design, the travel sector can move towards a more resilient and seamless system. The paper serves as a guide for policymakers and industry leaders to navigate the complexities of deploying digital travel credentials and to ensure that the system adapts to evolving needs and challenges.
This playbook emphasizes the importance of a unified approach, combining the strengths of centralized and decentralized systems, and encourages further collaboration to shape the future of secure and seamless travel.
试读结束,高清完整版pdf/doc/ppt,请点下载