This is the asynchronous discussion forum for Week 3 of the Governance Consultation. Make sure you "Join" the consultation through the main page (if you haven't) to receive the calendar invites of the four weekly live discussions.
We will leave all asynchronous discussion forums open throughout the consultation and welcome comments anytime. However, our moderators will only be able to provide dedicated moderation following the specified timeline of each discussion forum.
Week 3: Process (2)
- How to manage membership of the global trust network and the governing body?
- What are the tools/processes for communication/coordination?
- How should decisions be made? What process should be followed? How to update decisions?
- What are some potential risks/issues? How to manage risks and issues?
Live Session Recording and Chat:
https://drive.google.com/file/d/1w26IoYYg8gSQpPanb5gJLApuPEdMiuo1/view?…Return to the main consultation page for project information or go to Governance Consultation: Week 4.
Comments (3)
Hi all,
Last week, we zeroed in on some key processes on the users/verifiers’ end:
Levels of user access: The Regi-TRUST enabled 'network of networks' can give network participants the technical capability to limit user access to their sensitive data, such as certificate revocation list, based on types of users. The key question is what should be within the scope of meta network governance and what is not. There is no clear conclusion for this but a suggestion was proposed as follow:
Onboarding of users/verifiers: Categorization of users and whether there should be vetting (and what type of vetting).
Detailed view of verification services:
Other key points raised:
'Homework' before the last week discussion:
Any thoughts before the last live session, please feel free to share directly in the last week's asynchronous forum!
A few thoughts to the final questions:
1. As minimum requirements, I would suggest that proper on-boarding of network participants is important. Users like ICAO would be reticent to join any network where participation could endanger reputation through being associated with a network that is prone to illicit entry by fraudulent participants etc. I think a mechanism to publish and make clear a network's own policies is important too...everyone involved should not necessarily have the same policies and rules, yet it should be clear to the downloading user how they might differ so that that user can make informed decisions.
2. Our focus in ICAO is on usage at borders and in travel. In this regard, participation in any network that helps stakeholders validate health certificates in travel in a seamless and trusted manner is valuable, as long as this doesn't diminish the trust in its own credentials and network and introduce vulnerabilities or risks by itself. If the global border management community is looking towards the use of the meta network, we would be sure to be part of it.
Great points Ciaran, I think in this governance consultation we've consistently heard that a 'meta network' needs to make transparent how quality information about its participants is acquired and maintained - through policy and implementation.
And that, the informed use of the different types of services available has to be supported with highly reliable meta data, again backed by the governance policy of the network.