Chapter 2, in the section ???The Seven Laws of Identity,???
discussed the value of the second law of identity: ???Minimum
Disclosure for Constrained Use.??? CardSpace??™s use of claims
follows this law. Because the RP can be very speci?¬?c about the
information it needs, the IP can limit the information it includes
What CardSpace Provides
184 Windows CardSpace
in the token to what is actually being requested. There is no
need to see all the information the IP knows about the user.
A Deeper Look at Information Cards
An Information Card is a collection of data that represents a
digital identity. Information Cards contain metadata necessary
for the use of the digital identity that the card represents. As
previously discussed, these cards are not physical cards, but
virtual cards that can be managed on your computer. Each of
these digital identities is an expression of what the IP is willing
to assert about the user. A user can have cards to represent different
aspects of the identity or different identities, such as the
following:
A driver??™s license
A bank account
An identity in an online video game
Information Cards can be used anywhere that a person wants to
convey data about themselves to another party.
Pages:
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301