ABSTRACT
This chapter summarizes the main goals, approach taken, achievements and main research challenges in H2020 ARIES project. The appliance enforces strong authentication and authorization based on ARIES authentication, so it is only the user himself who can approve access to his data. To integrate with ARIES each vendor must provide server side API and App SDK, the project provides enveloping App with UI flow control and a server application that controls the issuance and authentication flows and ensures all steps happen in a single session. More interestingly, our research showed that an ARIES provider could offer a new trust service, consisting on the accreditation of possession of personal attributes (a wide conceptualization of identity) with privacy protection. It demonstrated the control citizens have in practice over their virtual identities, allowing them to enroll with the ARIES ecosystem and build separate identities, for different purposes, effectively minimizing the disclosure of data and maximizing their privacy.
