<!DOCTYPE article PUBLIC "-//NLM//DTD JATS (Z39.96) Journal Archiving and Interchange DTD v1.0 20120330//EN" "JATS-archivearticle1.dtd">
<article xmlns:xlink="http://www.w3.org/1999/xlink">
  <front>
    <journal-meta />
    <article-meta>
      <title-group>
        <article-title>2nd International Workshop on Trends in Digital Identity</article-title>
      </title-group>
      <pub-date>
        <year>2024</year>
      </pub-date>
      <kwd-group>
        <kwd>Digital</kwd>
        <kwd>Identity</kwd>
      </kwd-group>
    </article-meta>
  </front>
  <body>
    <sec id="sec-1">
      <title>-</title>
      <p>The “2nd International Workshop on Trends in Digital Identity” (TDI 2024) was held in the
historic city of Rome, Italy, on April 9, 2024. Hosted within the Auditorium Antonianum, the
workshop brought together a diverse group of experts and practitioners to explore the latest
developments and challenges in digital identity. TDI 2024 was co-located with the “9th OAuth
Security Workshop” (OSW 2024), which took place from April 10 to 12, 2024, fostering further
opportunities for collaboration.</p>
    </sec>
    <sec id="sec-2">
      <title>Motivation</title>
      <p>In an era where digital services are rapidly expanding across sectors such as e-commerce,
egovernment, healthcare, and financial services, reliable identity management has become a
critical necessity. The workshop aimed to address key issues in this space, including technical
challenges like security and interoperability, as well as legal and regulatory considerations
around data protection and privacy. The growing complexity of digital identity systems
requires input from various disciplines, and this workshop sought to bring together diverse
perspectives to foster cross-sector collaboration.</p>
    </sec>
    <sec id="sec-3">
      <title>Structure</title>
      <p>The workshop featured a blend of invited talks by national and international experts,
alongside presentations of innovative research contributions, which were submitted in response to
an open call for papers. This format allowed for a comprehensive exploration of both
theoretical and practical aspects of digital identity, ensuring a rich exchange of ideas.</p>
      <p>The program was organized into five thematic sessions that reflected the multifaceted
nature of digital identity:
• Government and Public Administration: Examined the evolving role of digital
identities in the public sector, with particular attention to regulatory frameworks such as
eIDAS 2 and the European Digital Identity (EUDI) Wallet. Government representatives
shared their perspectives on the development, implementation, and future direction
of digital identity solutions, examining the intersection of policy, technology, and user
trust. The discussions highlighted the role of public institutions in driving the digital
identity agenda, ensuring security, and fostering interoperability across national and
international systems.
• Industry: Speakers from the private sector presented insights into the practical
challenges and opportunities surrounding digital identity management in the industry. The
talks explored the balance between security and usability, the role of trust services, and
the technical frameworks that enable secure information exchange. The session also
examined the growing need for interoperability between diferent identity systems and
ecosystems, showcasing industry-driven innovations that are shaping the future of
digital identity.
• Research and Innovation: Brought together researchers and innovators to discuss the
latest advances in digital identity technologies. Topics included improving the trust and
security of identity systems, automating identity processes, and exploring new models
for decentralized and user-centric identity management. The speakers also addressed
challenges related to interoperability, as well as novel cryptographic techniques that
enhance privacy and control in digital identity solutions. This session highlighted the
cutting-edge research in the digital identity field.
• Specifications and Standards: Explored the crucial role of standards in creating
secure, interoperable, and scalable identity solutions. The speakers discussed key
standards that underpin digital credentials, the ongoing push for broader adoption of digital
identity wallets, and the importance of open standards in fostering innovation. The
session emphasized the foundational role that well-developed standards play in enabling
trusted digital identity frameworks.
• Round Table: Featured a multi-disciplinary round-table discussion on eIDAS 2. The
panel brought together key stakeholders from various sectors, including a
representative from government, a voice from the industry, and an expert in standards
development. This diverse range of perspectives enriched the conversation, which focused on
the practical challenges of adapting to the new regulatory landscape and strategies for
ensuring efective cross-sector collaboration. The round table provided a
comprehensive forum for sharing insights and identifying the next steps in the evolving digital
identity ecosystem.</p>
      <p>To conclude the workshop, a Welcome Reception was hosted in conjunction with OSW
2024 at Palazzo Merulana. Attendees had the opportunity to engage in meaningful
conversations, share experiences, and forge new connections in a relaxed atmosphere. Additionally,
participants were invited to explore a temporary art exhibition housed within the palace.</p>
    </sec>
    <sec id="sec-4">
      <title>Call for Papers</title>
      <p>To collect and evaluate innovative research contributions, we released a public call for papers
encouraging submissions on a range of topics, including but not limited to:
• Access Control in IoT and Distributed Systems
• Behavioral and Risk-based Authentication Mechanisms
• Compliance with Regulations such as eIDAS (2), PSD2, NIS2
• Decentralized Identity and Self Sovereign Identity
• Digital Wallets and Verifiable Credentials (e.g., selective disclosure and revocation)
• Identification, Onboarding and Know Your Customer (KYC) Procedures
• Identity for Web 3.0 and Metaverse
• Identity Governance and Administration
• Identity of Things and Cloud Security
• Mobile and Strong Authentication
• Passwordless Authentication (including passkeys)
• Privacy-Enhancing Technologies for Identity Management
• Securing Identities for Financial, Governmental and Health Services
• Session Management for Seamless and Continuous Authentication
• Trust Frameworks for Identity Management Solutions
• Video-based Identity Proofing (e.g., automated face comparison, impersonation attacks,
document analysis)
• Zero Trust Architectures</p>
      <p>In response to the call for papers, we received a total of 11 submissions. Each
submission underwent a single-blind peer-review process conducted by at least two members of the
Program Committee, who assessed the papers based on their technical quality, relevance,
originality, significance, and clarity. As a result, 4 papers were accepted for publication in this
volume (3 classified as regular papers and 1 as a short paper), while 2 papers were accepted
solely for oral presentation at the workshop. Additionally, this volume includes invited papers
derived from presentations given during the workshop.</p>
      <p>Further details can be found on the oficial website of the event, available at the following
link: https://st.fbk.eu/events/TDI2024/.</p>
      <p>Giada Sciarretta and Marco Pernpruner</p>
      <sec id="sec-4-1">
        <title>TDI 2024 Program Co-Chairs</title>
        <sec id="sec-4-1-1">
          <title>Program Co-Chairs</title>
          <p>Giada Sciarretta
Marco Pernpruner</p>
        </sec>
      </sec>
      <sec id="sec-4-2">
        <title>Fondazione Bruno Kessler</title>
      </sec>
      <sec id="sec-4-3">
        <title>Fondazione Bruno Kessler and University of Genoa University of Reggio Calabria Authlete University of Stuttgart</title>
        <sec id="sec-4-3-1">
          <title>Organizing Committee</title>
        </sec>
      </sec>
      <sec id="sec-4-4">
        <title>Roberto Carbone Fondazione Bruno Kessler</title>
      </sec>
      <sec id="sec-4-5">
        <title>Marco Pernpruner Fondazione Bruno Kessler and University of Genoa</title>
      </sec>
      <sec id="sec-4-6">
        <title>Silvio Ranise Fondazione Bruno Kessler and University of Trento</title>
      </sec>
      <sec id="sec-4-7">
        <title>Giada Sciarretta Fondazione Bruno Kessler</title>
      </sec>
      <sec id="sec-4-8">
        <title>Amir Sharif Fondazione Bruno Kessler</title>
        <p>• Introductory Remarks</p>
      </sec>
      <sec id="sec-4-9">
        <title>Giada Sciarretta, Marco Pernpruner (Program Co-Chairs)</title>
        <sec id="sec-4-9-1">
          <title>Session 1: Government and Public Administration</title>
        </sec>
      </sec>
      <sec id="sec-4-10">
        <title>Session Chair: Silvio Ranise</title>
        <p>• Demystifying the European Digital Identity Wallet: A Clear Insight</p>
      </sec>
      <sec id="sec-4-11">
        <title>Paolo De Rosa (European Commission)</title>
        <p>• Bridging Legal Requirements and Technical Solutions for the EUDI Wallet</p>
      </sec>
      <sec id="sec-4-12">
        <title>Giuseppe De Marco (Dipartimento per la Trasformazione Digitale, DTD), Francesco Antonio Marino (Poligrafico e Zecca dello Stato, IPZS)</title>
        <p>• User Binding and Wallet Attestations in the context of eIDAS 2</p>
      </sec>
      <sec id="sec-4-13">
        <title>Paul Bastian (Bundesdruckerei GmbH)</title>
        <sec id="sec-4-13-1">
          <title>Session 2: Industry</title>
        </sec>
      </sec>
      <sec id="sec-4-14">
        <title>Session Chair: Paolo Campegiani</title>
        <p>• Healthy relationships: finding the right balance between trust and control when
sharing confidential information through APIs on a national level</p>
      </sec>
      <sec id="sec-4-15">
        <title>Steinar Noem (Udelt AS)</title>
        <p>• GAIN Activity Report: Exploring Technical Feasibility for Inter-Ecosystem
Interoperability</p>
      </sec>
      <sec id="sec-4-16">
        <title>Takahiko Kawasaki (Authlete, Inc.)</title>
        <p>• Qualified Trust Service Providers as main Pillars of the EU Digital Economy</p>
      </sec>
      <sec id="sec-4-17">
        <title>Andras Barsi (Aruba PEC S.p.A.)</title>
        <p>• Wallet-like Proof Of Possession on SAML 2.0</p>
      </sec>
      <sec id="sec-4-18">
        <title>Francesco Grauso, Pietro Stroia (PagoPA)</title>
        <sec id="sec-4-18-1">
          <title>Session 3: Research and Innovation</title>
        </sec>
      </sec>
      <sec id="sec-4-19">
        <title>Session Chair: Marco Pernpruner</title>
        <p>• Trust and Assurance in R&amp;E Identity Federations</p>
      </sec>
      <sec id="sec-4-20">
        <title>Davide Vaghetti (GARR)</title>
        <p>• A-WAYF: Automated Where Are You From in Multilateral Federations</p>
      </sec>
      <sec id="sec-4-21">
        <title>Erwin Kupris, Tobias Hilbig, David Pierre Sugar, Thomas Schreck (Munich University of</title>
      </sec>
      <sec id="sec-4-22">
        <title>Applied Sciences)</title>
        <p>• Improve Wallet Interoperability and Federation in Blockchain-Based User-Centric
Authentication for Healthcare</p>
      </sec>
      <sec id="sec-4-23">
        <title>Biagio Boi, Franco Cirillo, Marco De Santis, Christian Esposito (University of Salerno)</title>
        <p>• Aggregating Digital Identities through Bridging: An Integration of Open
Authentication Protocols for Web3 Identifiers</p>
      </sec>
      <sec id="sec-4-24">
        <title>Ben Biedermann (University of Malta and acurraent UG), Joshua Ellul (University of Malta),</title>
      </sec>
      <sec id="sec-4-25">
        <title>Matthew Scerri (WIDE Consortium), Victoria Kozlova (acurraent UG)</title>
        <p>• Revocable Anonymous Credentials from Attribute-Based Encryption</p>
      </sec>
      <sec id="sec-4-26">
        <title>Giovanni Bartolomeo (CNIT)</title>
        <sec id="sec-4-26-1">
          <title>Session 4: Specifications and Standards</title>
        </sec>
      </sec>
      <sec id="sec-4-27">
        <title>Session Chair: Paul Bastian</title>
        <p>• Securing the Foundations of Verifiable Credential Ecosystems</p>
      </sec>
      <sec id="sec-4-28">
        <title>Daniel Fett (Authlete, Inc.)</title>
        <p>• Crossing the Chasm: Trusted and Seamless Digital Identity Wallets Going
Mainstream</p>
      </sec>
      <sec id="sec-4-29">
        <title>Kristina Yasuda (SPRIND – Bundesagentur für Sprunginnovationen)</title>
        <p>• The role of standards in Open Source Software Development</p>
      </sec>
      <sec id="sec-4-30">
        <title>Torsten Lodderstedt (OpenWallet Foundation)</title>
        <p>• TLS 2.0 Adopting the OpenID Federation 1.0 Trust Chain: a New Paradigm for
Internet Security</p>
      </sec>
      <sec id="sec-4-31">
        <title>Vladimir Dzhuvinov (Connect2id)</title>
        <sec id="sec-4-31-1">
          <title>Session 5: Round Table</title>
        </sec>
      </sec>
      <sec id="sec-4-32">
        <title>Session Chair: Silvio Ranise</title>
        <p>• eIDAS2: now that is final, how do we deal with it?</p>
      </sec>
      <sec id="sec-4-33">
        <title>Paolo Campegiani (Namirial SpA), Paolo De Rosa (European Commission), Daniel Fett (Authlete, Inc.)</title>
        <p>Sponsors
We thank our sponsors for supporting the organization of TDI and OSW 2024.</p>
        <sec id="sec-4-33-1">
          <title>Main Sponsor</title>
        </sec>
        <sec id="sec-4-33-2">
          <title>Gold Sponsors</title>
        </sec>
        <sec id="sec-4-33-3">
          <title>Silver Sponsor</title>
        </sec>
        <sec id="sec-4-33-4">
          <title>Bronze Sponsor</title>
          <p>eIDAS Regulation: History, Key Success Factors, and Future Developments . . 1–5</p>
        </sec>
      </sec>
      <sec id="sec-4-34">
        <title>Paolo Campegiani</title>
        <sec id="sec-4-34-1">
          <title>Regular Papers</title>
          <p>A-WAYF: Automated Where Are You From in Multilateral Federations . . . 6–17</p>
        </sec>
      </sec>
      <sec id="sec-4-35">
        <title>Erwin Kupris, Tobias Hilbig, David Pierre Sugar, Thomas Schreck</title>
        <p>Bridging eIDAS 2.0 Legal Requirements and Technical Solutions . . . . . . 18–30</p>
      </sec>
      <sec id="sec-4-36">
        <title>Giuseppe De Marco, Francesco Antonio Marino, Andrea De Maria</title>
        <p>Improve Wallet Interoperability and Federation in Blockchain-Based
UserCentric Authentication for Healthcare . . . . . . . . . . . . . . . . 31–42</p>
      </sec>
      <sec id="sec-4-37">
        <title>Biagio Boi, Franco Cirillo, Marco De Santis, Christian Esposito</title>
        <sec id="sec-4-37-1">
          <title>Short Paper</title>
        </sec>
      </sec>
    </sec>
  </body>
  <back>
    <ref-list />
  </back>
</article>