SlideShare une entreprise Scribd logo
1  sur  17
Open Source PDS envisioning
the Web of MyData
Akio Shimono
Project Lead - Personium Project
Member – Open Knowledge Japan
Manager – Service Technology Unit, Fujitsu Ltd.
MyData 2018 – Tools for Data Portability
2018-08-29
“Data Portability” encouraging MyData
2
 With “Data Portability”, MyData is now out from enclosure,
in a machine readable way.
 Now, Question is
 Who / What Entity, What kind of Machine should
receive these ported data.
 Where is the best place to put the ported data.
Imagine
3
 Invisible ball floating above your head
 You can put whatever your data into that ball.
 All your data is there.
I know all my data
is there
Whatever data
about me can be
stored
 Invisible Concierge.
 Perfectly “Yours”
 Helps your life in all aspects
 Never betrays you.
Your Personium
Just like your Car augments
your ability of mobility.
augments your ability of
information processing
such as:
- reception,
- recognition,
- memory,
- integration,
- analysis
- expression
Create such an Information TechnologyOur Project Goal #1
PDS – “MyData” Storage
4
“ Where is the best place for MyData, now getting available by data portability ?”
Question
Our Answer
Why Server ?
 24 hrs / 365 days Up,
 Accessible from any device / service
 Easy to put Intelligence (computing power)
Why a choice of entities trusted ?
 It varies depending on your belief.
 We like democracy rather that despotism
“My Own Server operated by a choice of entities I trust.”
World Wide Web of interconnected PDS’s
 Various PDS Providers (Information Bank) can co-exist and co-prosper
Bank
Energy
Provider
Railway
Local Govt.
Shopping Mall
Interoperable among PDS providers using Personium or compatible software
Various PDS Providers
Similar usability,
regardless of PDS
Providers
Can use Same Apps
Can communicate and
share data with
People who use a
PDS from other provider
 Consumers can choose a provider
 Interoperability among providers should be there
Provide it in the form that many players can co-exist and co-prosperOur Project Goal #2
Open source: Anyone can be a PDS Provider
6
https://personium.io/
Currently developed by our team in Fujitsu.
Aiming for open and neutral project management
 Available on github
 Apache License version 2.0.
 Tools, samples are also available
https://github.com/personium/
Anyone can set up a PDS server, and become a PDS provider.
Business entity, national / local government, individual, etc.
Free, Secure, Public
Aiming to be an “Apache” in MyData Domain
Tech Overview
1.Accessibility from variety of Apps
 All functions provided in the form of Web API
 Each Personium PDS has a unique URL
 Any platform (OS, language) can speak with Personium
 All API’s are protected with user authentication and access control.
 Well known standards used for data access
 WebDAV for directory tree file system model data
 OData for relational model data
 Per-App spaces
 Decently isolated to avoid unintentional mix-up
 app authentication for protection against phishing apps
 Packaged data model including ACL, Roles, relational data
schema, etc.. can be provided from app and installed onto
Personium upon first use
7
https://akio.some-provider.example/
HTTPS
Apps Per-App spaces
HTTPS
HTTPS
HTTPS
Web API standards
WebDAV
For Relational Data
For Files
Unique URL
Tech Overview
2.Linking for sharing MyData
 Sharing MyData by pointing target PDS URL
 Disclosing or sharing your data to the others (e.g. wife, family doctor, work
place, etc.) are done by specifying the other party's PDS URL.
 PDS access uses digital signature technology, therefore, the other party's
PDS can be resided on another server.
 Passive Data Subject
 Full privilege delegation enables Passive Data Subject
 By granting all privileges on all resources to someone else, full delegation
can also be configured in the continuum of Personium access control model.
 Data from / of infants, pets, cars, communities, organizations can be handled
using Personium (MyData can be disclosed to organizations or apps)
8
My doctor My patient
I will show my diet
log and exercise log
only to my doctor
Active Data Subject Passive Data Subject
Allow parents all data
all operation
My son My dad
I will manage it until
he grows up
8
Active Passive
Unit
Architecture:
Web of 3-layer structure over HTTP (REST APIs)
9
UnitBox
Cell
Box
BoxCell
Cell
Cell
Name Description Typical URL
Unit The server to host Cells. What you get by software installation. https://pds.example/
Cell “Personium” Data Store for “everything” https://akio-shimono.pds.example/
Box Per- App space inside a cell. https://akio-shimono.pds.example/schedule/
Cell
Cell
Cell
■ Cells can be networked beyond units.
■ A Box provides a separate space dedicated to each application.
Unit
Architecture:
Closer Look
 Security : All SSL, Authn/ Authz, Access Control
 3 types of clients call corresponding level of APIs
10
Box
BoxCell
Box
pictures
2016-09-01.jpg
2016-08-31.jpg
Thumb-svc
shared
Trip-log
settings.json
Unit Ctl
Cell Ctl
Unit Mgt Client
Service Provider
Application ClientCell Mgt Client
Super-user access
Create/ delete
Cells
Various apps
storing and utilizing
my data
Access Control
Consent Mgmt
Access Control
External /
existing
IdP /
Authn
IdP /
Authn
User
RESTful API standards
WebDAV
For Files
For Relational Data
Other features of Personium Cell
 Messaging
 Between cells to send request each other (Relation building, Data
disclosure, etc.. )
 Event Bus
 Rule based event handler + Pub-sub WebSocket interface
 Engine
 Sandboxed custom logic execution environment to implement “intelligence”
 Extensibility of User Authentication Methods
 Open ID Connect / SAML / Card …
11
Our final goal
Web of “MyData”
 Every active / passive data subject’s MyData store connected with each other
 World Wide Web of PDS’s can be formed if everybody is happy to use one.
Our logo represents our dream of
World Wide Personium (MyData) Web
Notice:
Cyber Physical System will be formed
Key: App Ecosystem
 User Satisfaction parameters
 Richness of Data providing Apps, which sync ported data to the PDS
 Richness of Data consuming Apps, which utilize the data in PDS and provide new values.
Calendar
Wearable
Health Sensor
Event
recommendations
Job
huntingUser
Finance
Asset management
Electronic
health record
Health
advices
Trip
planner
Data
Data
Data
Data
Recommend an event tailored to your
preference during the free time of your
schedule
Expert advices based on your daily
health data
Proposal of travel tailored to your
financial status, preferences and
schedule
Job offering according to your skills,
qualifications, practical experiences etc.
Control
Data Consuming AppsData Providing Apps
(including adapters
existing service)
DataPortability
IndividualConsent
As data grow,
app ecosystem and user base grow.
As app ecosystem grows,
user base and data grow
Personium
Data Portability Demo
using our sample GUI + Calendar App
1. Calendar Data synced near-real-time to Personium
from multiple major source services
2. Merged and integrated
3. Shared with others upon user’s control
14
You can freely modify and customize them for your
needs. (e.g. Put your logo and redistribute under
you brand.)
Business Model
 PDS Provider (Information Bank)
 Several projects under development. Many big companies interested.
 Financial Institution, public sector, energy company, Media, etc.
 They all have individual ”paid” accounts and have strong interest in adding extra
value on them.
 They do not have to earn immediate money with this, rather engagement.
 ICT Provider
 Cloud Service, System Integration, etc.
15
Last Words: Join Us !
 Visit our web page and join our slack community
 About 100 members in the community.
 Current majority is Fujitsu Group Employees in Japan
 We want more diversity !!
 App Developers
 We want more apps.
 Server Operators
 We want more servers.
 Server Development
 Our software is still far from maturity.
16
https://personium.io
Personium - Open Source PDS envisioning the Web of MyData

Contenu connexe

Tendances

最近のKeycloakのご紹介 ~クライアントポリシーとFAPI~
最近のKeycloakのご紹介 ~クライアントポリシーとFAPI~最近のKeycloakのご紹介 ~クライアントポリシーとFAPI~
最近のKeycloakのご紹介 ~クライアントポリシーとFAPI~Hitachi, Ltd. OSS Solution Center.
 
え!?データがオンプレにあるけどPower BI で BI したいの?
え!?データがオンプレにあるけどPower BI で BI したいの?え!?データがオンプレにあるけどPower BI で BI したいの?
え!?データがオンプレにあるけどPower BI で BI したいの?Yugo Shimizu
 
chatGPTの驚くべき対話能力.pdf
chatGPTの驚くべき対話能力.pdfchatGPTの驚くべき対話能力.pdf
chatGPTの驚くべき対話能力.pdfYamashitaKatsushi
 
なぜコンピュータを学ばなければならないのか 21世紀の君主論
なぜコンピュータを学ばなければならないのか 21世紀の君主論なぜコンピュータを学ばなければならないのか 21世紀の君主論
なぜコンピュータを学ばなければならないのか 21世紀の君主論Tokoroten Nakayama
 
DNS におけるセキュリティ&プライバシ動向
DNS におけるセキュリティ&プライバシ動向DNS におけるセキュリティ&プライバシ動向
DNS におけるセキュリティ&プライバシ動向Jun Kurihara
 
アイデア収束からプロトタイピング
アイデア収束からプロトタイピングアイデア収束からプロトタイピング
アイデア収束からプロトタイピングMasaya Ando
 
Node RED で実現する製造業の DX
Node RED で実現する製造業の DXNode RED で実現する製造業の DX
Node RED で実現する製造業の DX雅治 新澤
 
BuildKitによる高速でセキュアなイメージビルド
BuildKitによる高速でセキュアなイメージビルドBuildKitによる高速でセキュアなイメージビルド
BuildKitによる高速でセキュアなイメージビルドAkihiro Suda
 
グルーミングしながら進めるプロダクト開発
グルーミングしながら進めるプロダクト開発グルーミングしながら進めるプロダクト開発
グルーミングしながら進めるプロダクト開発Takafumi ONAKA
 
flaws.cloudに挑戦しよう!
flaws.cloudに挑戦しよう!flaws.cloudに挑戦しよう!
flaws.cloudに挑戦しよう!zaki4649
 
ドメイン駆動設計という設計スタイル
ドメイン駆動設計という設計スタイルドメイン駆動設計という設計スタイル
ドメイン駆動設計という設計スタイル増田 亨
 
富士ゼロックスのクラウド活用で起こした変革
富士ゼロックスのクラウド活用で起こした変革富士ゼロックスのクラウド活用で起こした変革
富士ゼロックスのクラウド活用で起こした変革Yuta Watanabe
 
ストレージ層で行うランサムウェア対策_20210401
ストレージ層で行うランサムウェア対策_20210401ストレージ層で行うランサムウェア対策_20210401
ストレージ層で行うランサムウェア対策_20210401Kan Itani
 
カーネル密度推定を用いた店舗情報の可視化
カーネル密度推定を用いた店舗情報の可視化カーネル密度推定を用いた店舗情報の可視化
カーネル密度推定を用いた店舗情報の可視化Kanetaka Heshiki
 
OpenStackによる、実践オンプレミスクラウド
OpenStackによる、実践オンプレミスクラウドOpenStackによる、実践オンプレミスクラウド
OpenStackによる、実践オンプレミスクラウドMasanori Itoh
 
アサヒのデータ活用基盤を支えるデータ仮想化技術
アサヒのデータ活用基盤を支えるデータ仮想化技術アサヒのデータ活用基盤を支えるデータ仮想化技術
アサヒのデータ活用基盤を支えるデータ仮想化技術Denodo
 
今時のLinuxにおけるGPUエンコード事情2018
今時のLinuxにおけるGPUエンコード事情2018今時のLinuxにおけるGPUエンコード事情2018
今時のLinuxにおけるGPUエンコード事情2018zgock
 
分散型サイエンスの誕生と可能性
分散型サイエンスの誕生と可能性分散型サイエンスの誕生と可能性
分散型サイエンスの誕生と可能性Hiro Hamada
 

Tendances (20)

最近のKeycloakのご紹介 ~クライアントポリシーとFAPI~
最近のKeycloakのご紹介 ~クライアントポリシーとFAPI~最近のKeycloakのご紹介 ~クライアントポリシーとFAPI~
最近のKeycloakのご紹介 ~クライアントポリシーとFAPI~
 
え!?データがオンプレにあるけどPower BI で BI したいの?
え!?データがオンプレにあるけどPower BI で BI したいの?え!?データがオンプレにあるけどPower BI で BI したいの?
え!?データがオンプレにあるけどPower BI で BI したいの?
 
chatGPTの驚くべき対話能力.pdf
chatGPTの驚くべき対話能力.pdfchatGPTの驚くべき対話能力.pdf
chatGPTの驚くべき対話能力.pdf
 
なぜコンピュータを学ばなければならないのか 21世紀の君主論
なぜコンピュータを学ばなければならないのか 21世紀の君主論なぜコンピュータを学ばなければならないのか 21世紀の君主論
なぜコンピュータを学ばなければならないのか 21世紀の君主論
 
DNS におけるセキュリティ&プライバシ動向
DNS におけるセキュリティ&プライバシ動向DNS におけるセキュリティ&プライバシ動向
DNS におけるセキュリティ&プライバシ動向
 
アイデア収束からプロトタイピング
アイデア収束からプロトタイピングアイデア収束からプロトタイピング
アイデア収束からプロトタイピング
 
Node RED で実現する製造業の DX
Node RED で実現する製造業の DXNode RED で実現する製造業の DX
Node RED で実現する製造業の DX
 
BuildKitによる高速でセキュアなイメージビルド
BuildKitによる高速でセキュアなイメージビルドBuildKitによる高速でセキュアなイメージビルド
BuildKitによる高速でセキュアなイメージビルド
 
グルーミングしながら進めるプロダクト開発
グルーミングしながら進めるプロダクト開発グルーミングしながら進めるプロダクト開発
グルーミングしながら進めるプロダクト開発
 
AWS CognitoからAuth0への移行パターン4つ
AWS CognitoからAuth0への移行パターン4つAWS CognitoからAuth0への移行パターン4つ
AWS CognitoからAuth0への移行パターン4つ
 
flaws.cloudに挑戦しよう!
flaws.cloudに挑戦しよう!flaws.cloudに挑戦しよう!
flaws.cloudに挑戦しよう!
 
ドメイン駆動設計という設計スタイル
ドメイン駆動設計という設計スタイルドメイン駆動設計という設計スタイル
ドメイン駆動設計という設計スタイル
 
富士ゼロックスのクラウド活用で起こした変革
富士ゼロックスのクラウド活用で起こした変革富士ゼロックスのクラウド活用で起こした変革
富士ゼロックスのクラウド活用で起こした変革
 
ストレージ層で行うランサムウェア対策_20210401
ストレージ層で行うランサムウェア対策_20210401ストレージ層で行うランサムウェア対策_20210401
ストレージ層で行うランサムウェア対策_20210401
 
カーネル密度推定を用いた店舗情報の可視化
カーネル密度推定を用いた店舗情報の可視化カーネル密度推定を用いた店舗情報の可視化
カーネル密度推定を用いた店舗情報の可視化
 
OpenStackによる、実践オンプレミスクラウド
OpenStackによる、実践オンプレミスクラウドOpenStackによる、実践オンプレミスクラウド
OpenStackによる、実践オンプレミスクラウド
 
Persistent-memory-native Database High-availability Feature
Persistent-memory-native Database High-availability FeaturePersistent-memory-native Database High-availability Feature
Persistent-memory-native Database High-availability Feature
 
アサヒのデータ活用基盤を支えるデータ仮想化技術
アサヒのデータ活用基盤を支えるデータ仮想化技術アサヒのデータ活用基盤を支えるデータ仮想化技術
アサヒのデータ活用基盤を支えるデータ仮想化技術
 
今時のLinuxにおけるGPUエンコード事情2018
今時のLinuxにおけるGPUエンコード事情2018今時のLinuxにおけるGPUエンコード事情2018
今時のLinuxにおけるGPUエンコード事情2018
 
分散型サイエンスの誕生と可能性
分散型サイエンスの誕生と可能性分散型サイエンスの誕生と可能性
分散型サイエンスの誕生と可能性
 

Similaire à Personium - Open Source PDS envisioning the Web of MyData

Personium mydata2016 0902
Personium mydata2016 0902Personium mydata2016 0902
Personium mydata2016 0902暁生 下野
 
Watson data platform_sofia_20171017
Watson data platform_sofia_20171017Watson data platform_sofia_20171017
Watson data platform_sofia_20171017Mladen Jovanovski
 
Mi health care - multi-tenant health care system
Mi health care - multi-tenant health care systemMi health care - multi-tenant health care system
Mi health care - multi-tenant health care systemConference Papers
 
PersonAll Social Business Plateform US
PersonAll Social Business Plateform USPersonAll Social Business Plateform US
PersonAll Social Business Plateform USPersonall SAS
 
According To The Author Of “Build A Streamlined Refinery”,
According To The Author Of “Build A Streamlined Refinery”,According To The Author Of “Build A Streamlined Refinery”,
According To The Author Of “Build A Streamlined Refinery”,Jill Lyons
 
KnowNow Syndication-Oriented Architecture
KnowNow Syndication-Oriented ArchitectureKnowNow Syndication-Oriented Architecture
KnowNow Syndication-Oriented Architecturerohitkhare
 
Eu gdpr technical workflow and productionalization neccessary w privacy ass...
Eu gdpr technical workflow and productionalization   neccessary w privacy ass...Eu gdpr technical workflow and productionalization   neccessary w privacy ass...
Eu gdpr technical workflow and productionalization neccessary w privacy ass...Steven Meister
 
MTX Portland Office 365 Strategic Capabilities Sep2017
MTX Portland Office 365 Strategic Capabilities Sep2017MTX Portland Office 365 Strategic Capabilities Sep2017
MTX Portland Office 365 Strategic Capabilities Sep2017Owen Allen
 
Paper 3 Draft 3
Paper 3 Draft 3Paper 3 Draft 3
Paper 3 Draft 3Utphala P
 
Identity Enabling Web Services
Identity Enabling Web ServicesIdentity Enabling Web Services
Identity Enabling Web ServicesAshish Jain
 
Final Year Projects Computer Science (Information security) -2015
Final Year Projects Computer Science (Information security) -2015Final Year Projects Computer Science (Information security) -2015
Final Year Projects Computer Science (Information security) -2015Syed Ubaid Ali Jafri
 
ESG - HDS HCP Anywhere Easy, Secure, On-Premises File Sharing
ESG - HDS HCP Anywhere Easy, Secure, On-Premises File SharingESG - HDS HCP Anywhere Easy, Secure, On-Premises File Sharing
ESG - HDS HCP Anywhere Easy, Secure, On-Premises File SharingHitachi Vantara
 
WSO2 Integration Platform: Vision and Roadmap
WSO2 Integration Platform: Vision and RoadmapWSO2 Integration Platform: Vision and Roadmap
WSO2 Integration Platform: Vision and RoadmapWSO2
 
Business Continuity Plan Essay
Business Continuity Plan EssayBusiness Continuity Plan Essay
Business Continuity Plan EssayKristi Anderson
 
Enterprise platform 3.0v4 for webinar
Enterprise platform 3.0v4 for webinarEnterprise platform 3.0v4 for webinar
Enterprise platform 3.0v4 for webinarJohn Mathon
 
Building a healthy data ecosystem around Kafka and Hadoop: Lessons learned at...
Building a healthy data ecosystem around Kafka and Hadoop: Lessons learned at...Building a healthy data ecosystem around Kafka and Hadoop: Lessons learned at...
Building a healthy data ecosystem around Kafka and Hadoop: Lessons learned at...Yael Garten
 

Similaire à Personium - Open Source PDS envisioning the Web of MyData (20)

Personium mydata2016 0902
Personium mydata2016 0902Personium mydata2016 0902
Personium mydata2016 0902
 
Watson data platform_sofia_20171017
Watson data platform_sofia_20171017Watson data platform_sofia_20171017
Watson data platform_sofia_20171017
 
Mi health care - multi-tenant health care system
Mi health care - multi-tenant health care systemMi health care - multi-tenant health care system
Mi health care - multi-tenant health care system
 
Big data
Big dataBig data
Big data
 
PersonAll Social Business Plateform US
PersonAll Social Business Plateform USPersonAll Social Business Plateform US
PersonAll Social Business Plateform US
 
According To The Author Of “Build A Streamlined Refinery”,
According To The Author Of “Build A Streamlined Refinery”,According To The Author Of “Build A Streamlined Refinery”,
According To The Author Of “Build A Streamlined Refinery”,
 
KnowNow Syndication-Oriented Architecture
KnowNow Syndication-Oriented ArchitectureKnowNow Syndication-Oriented Architecture
KnowNow Syndication-Oriented Architecture
 
Eu gdpr technical workflow and productionalization neccessary w privacy ass...
Eu gdpr technical workflow and productionalization   neccessary w privacy ass...Eu gdpr technical workflow and productionalization   neccessary w privacy ass...
Eu gdpr technical workflow and productionalization neccessary w privacy ass...
 
Big data
Big dataBig data
Big data
 
1 1 anatomy of an app
1 1 anatomy of an app1 1 anatomy of an app
1 1 anatomy of an app
 
MTX Portland Office 365 Strategic Capabilities Sep2017
MTX Portland Office 365 Strategic Capabilities Sep2017MTX Portland Office 365 Strategic Capabilities Sep2017
MTX Portland Office 365 Strategic Capabilities Sep2017
 
Paper 3 Draft 3
Paper 3 Draft 3Paper 3 Draft 3
Paper 3 Draft 3
 
Identity Enabling Web Services
Identity Enabling Web ServicesIdentity Enabling Web Services
Identity Enabling Web Services
 
Final Year Projects Computer Science (Information security) -2015
Final Year Projects Computer Science (Information security) -2015Final Year Projects Computer Science (Information security) -2015
Final Year Projects Computer Science (Information security) -2015
 
ESG - HDS HCP Anywhere Easy, Secure, On-Premises File Sharing
ESG - HDS HCP Anywhere Easy, Secure, On-Premises File SharingESG - HDS HCP Anywhere Easy, Secure, On-Premises File Sharing
ESG - HDS HCP Anywhere Easy, Secure, On-Premises File Sharing
 
WSO2 Integration Platform: Vision and Roadmap
WSO2 Integration Platform: Vision and RoadmapWSO2 Integration Platform: Vision and Roadmap
WSO2 Integration Platform: Vision and Roadmap
 
Business Continuity Plan Essay
Business Continuity Plan EssayBusiness Continuity Plan Essay
Business Continuity Plan Essay
 
Enterprise platform 3.0v4 for webinar
Enterprise platform 3.0v4 for webinarEnterprise platform 3.0v4 for webinar
Enterprise platform 3.0v4 for webinar
 
Database Essay
Database EssayDatabase Essay
Database Essay
 
Building a healthy data ecosystem around Kafka and Hadoop: Lessons learned at...
Building a healthy data ecosystem around Kafka and Hadoop: Lessons learned at...Building a healthy data ecosystem around Kafka and Hadoop: Lessons learned at...
Building a healthy data ecosystem around Kafka and Hadoop: Lessons learned at...
 

Dernier

TORTOGEL TELAH MENJADI SALAH SATU PLATFORM PERMAINAN PALING FAVORIT.
TORTOGEL TELAH MENJADI SALAH SATU PLATFORM PERMAINAN PALING FAVORIT.TORTOGEL TELAH MENJADI SALAH SATU PLATFORM PERMAINAN PALING FAVORIT.
TORTOGEL TELAH MENJADI SALAH SATU PLATFORM PERMAINAN PALING FAVORIT.Tortogel
 
一比一原版加拿大多伦多大学毕业证(UofT毕业证书)如何办理
一比一原版加拿大多伦多大学毕业证(UofT毕业证书)如何办理一比一原版加拿大多伦多大学毕业证(UofT毕业证书)如何办理
一比一原版加拿大多伦多大学毕业证(UofT毕业证书)如何办理egfdgfd
 
一比一原版(Bath毕业证书)英国桑德兰大学毕业证如何办理
一比一原版(Bath毕业证书)英国桑德兰大学毕业证如何办理一比一原版(Bath毕业证书)英国桑德兰大学毕业证如何办理
一比一原版(Bath毕业证书)英国桑德兰大学毕业证如何办理B
 
一比一原版(Cranfield毕业证书)英国克兰菲尔德大学毕业证如何办理
一比一原版(Cranfield毕业证书)英国克兰菲尔德大学毕业证如何办理一比一原版(Cranfield毕业证书)英国克兰菲尔德大学毕业证如何办理
一比一原版(Cranfield毕业证书)英国克兰菲尔德大学毕业证如何办理gfhdsfr
 
Premier Mobile App Development Agency in USA.pdf
Premier Mobile App Development Agency in USA.pdfPremier Mobile App Development Agency in USA.pdf
Premier Mobile App Development Agency in USA.pdfappinfoedgeca
 
Thank You Luv I’ll Never Walk Alone Again T shirts
Thank You Luv I’ll Never Walk Alone Again T shirtsThank You Luv I’ll Never Walk Alone Again T shirts
Thank You Luv I’ll Never Walk Alone Again T shirtsrahman018755
 
一比一原版(NYU毕业证书)美国纽约大学毕业证如何办理
一比一原版(NYU毕业证书)美国纽约大学毕业证如何办理一比一原版(NYU毕业证书)美国纽约大学毕业证如何办理
一比一原版(NYU毕业证书)美国纽约大学毕业证如何办理Fir
 
一比一定制加州大学欧文分校毕业证学位证书
一比一定制加州大学欧文分校毕业证学位证书一比一定制加州大学欧文分校毕业证学位证书
一比一定制加州大学欧文分校毕业证学位证书A
 
iThome_CYBERSEC2024_Drive_Into_the_DarkWeb
iThome_CYBERSEC2024_Drive_Into_the_DarkWebiThome_CYBERSEC2024_Drive_Into_the_DarkWeb
iThome_CYBERSEC2024_Drive_Into_the_DarkWebJie Liau
 
AI Generated 3D Models | AI 3D Model Generator
AI Generated 3D Models | AI 3D Model GeneratorAI Generated 3D Models | AI 3D Model Generator
AI Generated 3D Models | AI 3D Model Generator3DailyAI1
 
🍑👄Dehradun Esℂorts Serviℂe☎️9315791090🍑👄 ℂall Girl serviℂe in ☎️Dehradun ℂall...
🍑👄Dehradun Esℂorts Serviℂe☎️9315791090🍑👄 ℂall Girl serviℂe in ☎️Dehradun ℂall...🍑👄Dehradun Esℂorts Serviℂe☎️9315791090🍑👄 ℂall Girl serviℂe in ☎️Dehradun ℂall...
🍑👄Dehradun Esℂorts Serviℂe☎️9315791090🍑👄 ℂall Girl serviℂe in ☎️Dehradun ℂall...Mumbai Escorts
 
一比一定制(Temasek毕业证书)新加坡淡马锡理工学院毕业证学位证书
一比一定制(Temasek毕业证书)新加坡淡马锡理工学院毕业证学位证书一比一定制(Temasek毕业证书)新加坡淡马锡理工学院毕业证学位证书
一比一定制(Temasek毕业证书)新加坡淡马锡理工学院毕业证学位证书B
 
audience research (emma) 1.pptxkkkkkkkkkkkkkkkkk
audience research (emma) 1.pptxkkkkkkkkkkkkkkkkkaudience research (emma) 1.pptxkkkkkkkkkkkkkkkkk
audience research (emma) 1.pptxkkkkkkkkkkkkkkkkklolsDocherty
 
一比一原版(Exon毕业证书)英国埃克塞特大学毕业证如何办理
一比一原版(Exon毕业证书)英国埃克塞特大学毕业证如何办理一比一原版(Exon毕业证书)英国埃克塞特大学毕业证如何办理
一比一原版(Exon毕业证书)英国埃克塞特大学毕业证如何办理gfhdsfr
 
Reggie miller choke t shirtsReggie miller choke t shirts
Reggie miller choke t shirtsReggie miller choke t shirtsReggie miller choke t shirtsReggie miller choke t shirts
Reggie miller choke t shirtsReggie miller choke t shirtsrahman018755
 
100^%)( POLOKWANE))(*((+27838792658))*))௹ )Abortion Pills for Sale in Sibasa,...
100^%)( POLOKWANE))(*((+27838792658))*))௹ )Abortion Pills for Sale in Sibasa,...100^%)( POLOKWANE))(*((+27838792658))*))௹ )Abortion Pills for Sale in Sibasa,...
100^%)( POLOKWANE))(*((+27838792658))*))௹ )Abortion Pills for Sale in Sibasa,...musaddumba454
 
一比一原版(PSU毕业证书)美国宾州州立大学毕业证如何办理
一比一原版(PSU毕业证书)美国宾州州立大学毕业证如何办理一比一原版(PSU毕业证书)美国宾州州立大学毕业证如何办理
一比一原版(PSU毕业证书)美国宾州州立大学毕业证如何办理Fir
 
一比一原版(Soton毕业证书)南安普顿大学毕业证原件一模一样
一比一原版(Soton毕业证书)南安普顿大学毕业证原件一模一样一比一原版(Soton毕业证书)南安普顿大学毕业证原件一模一样
一比一原版(Soton毕业证书)南安普顿大学毕业证原件一模一样Fi
 
Free on Wednesdays T Shirts Free on Wednesdays Sweatshirts
Free on Wednesdays T Shirts Free on Wednesdays SweatshirtsFree on Wednesdays T Shirts Free on Wednesdays Sweatshirts
Free on Wednesdays T Shirts Free on Wednesdays Sweatshirtsrahman018755
 

Dernier (20)

TORTOGEL TELAH MENJADI SALAH SATU PLATFORM PERMAINAN PALING FAVORIT.
TORTOGEL TELAH MENJADI SALAH SATU PLATFORM PERMAINAN PALING FAVORIT.TORTOGEL TELAH MENJADI SALAH SATU PLATFORM PERMAINAN PALING FAVORIT.
TORTOGEL TELAH MENJADI SALAH SATU PLATFORM PERMAINAN PALING FAVORIT.
 
一比一原版加拿大多伦多大学毕业证(UofT毕业证书)如何办理
一比一原版加拿大多伦多大学毕业证(UofT毕业证书)如何办理一比一原版加拿大多伦多大学毕业证(UofT毕业证书)如何办理
一比一原版加拿大多伦多大学毕业证(UofT毕业证书)如何办理
 
一比一原版(Bath毕业证书)英国桑德兰大学毕业证如何办理
一比一原版(Bath毕业证书)英国桑德兰大学毕业证如何办理一比一原版(Bath毕业证书)英国桑德兰大学毕业证如何办理
一比一原版(Bath毕业证书)英国桑德兰大学毕业证如何办理
 
一比一原版(Cranfield毕业证书)英国克兰菲尔德大学毕业证如何办理
一比一原版(Cranfield毕业证书)英国克兰菲尔德大学毕业证如何办理一比一原版(Cranfield毕业证书)英国克兰菲尔德大学毕业证如何办理
一比一原版(Cranfield毕业证书)英国克兰菲尔德大学毕业证如何办理
 
Premier Mobile App Development Agency in USA.pdf
Premier Mobile App Development Agency in USA.pdfPremier Mobile App Development Agency in USA.pdf
Premier Mobile App Development Agency in USA.pdf
 
Thank You Luv I’ll Never Walk Alone Again T shirts
Thank You Luv I’ll Never Walk Alone Again T shirtsThank You Luv I’ll Never Walk Alone Again T shirts
Thank You Luv I’ll Never Walk Alone Again T shirts
 
一比一原版(NYU毕业证书)美国纽约大学毕业证如何办理
一比一原版(NYU毕业证书)美国纽约大学毕业证如何办理一比一原版(NYU毕业证书)美国纽约大学毕业证如何办理
一比一原版(NYU毕业证书)美国纽约大学毕业证如何办理
 
一比一定制加州大学欧文分校毕业证学位证书
一比一定制加州大学欧文分校毕业证学位证书一比一定制加州大学欧文分校毕业证学位证书
一比一定制加州大学欧文分校毕业证学位证书
 
iThome_CYBERSEC2024_Drive_Into_the_DarkWeb
iThome_CYBERSEC2024_Drive_Into_the_DarkWebiThome_CYBERSEC2024_Drive_Into_the_DarkWeb
iThome_CYBERSEC2024_Drive_Into_the_DarkWeb
 
AI Generated 3D Models | AI 3D Model Generator
AI Generated 3D Models | AI 3D Model GeneratorAI Generated 3D Models | AI 3D Model Generator
AI Generated 3D Models | AI 3D Model Generator
 
🍑👄Dehradun Esℂorts Serviℂe☎️9315791090🍑👄 ℂall Girl serviℂe in ☎️Dehradun ℂall...
🍑👄Dehradun Esℂorts Serviℂe☎️9315791090🍑👄 ℂall Girl serviℂe in ☎️Dehradun ℂall...🍑👄Dehradun Esℂorts Serviℂe☎️9315791090🍑👄 ℂall Girl serviℂe in ☎️Dehradun ℂall...
🍑👄Dehradun Esℂorts Serviℂe☎️9315791090🍑👄 ℂall Girl serviℂe in ☎️Dehradun ℂall...
 
一比一定制(Temasek毕业证书)新加坡淡马锡理工学院毕业证学位证书
一比一定制(Temasek毕业证书)新加坡淡马锡理工学院毕业证学位证书一比一定制(Temasek毕业证书)新加坡淡马锡理工学院毕业证学位证书
一比一定制(Temasek毕业证书)新加坡淡马锡理工学院毕业证学位证书
 
audience research (emma) 1.pptxkkkkkkkkkkkkkkkkk
audience research (emma) 1.pptxkkkkkkkkkkkkkkkkkaudience research (emma) 1.pptxkkkkkkkkkkkkkkkkk
audience research (emma) 1.pptxkkkkkkkkkkkkkkkkk
 
一比一原版(Exon毕业证书)英国埃克塞特大学毕业证如何办理
一比一原版(Exon毕业证书)英国埃克塞特大学毕业证如何办理一比一原版(Exon毕业证书)英国埃克塞特大学毕业证如何办理
一比一原版(Exon毕业证书)英国埃克塞特大学毕业证如何办理
 
Reggie miller choke t shirtsReggie miller choke t shirts
Reggie miller choke t shirtsReggie miller choke t shirtsReggie miller choke t shirtsReggie miller choke t shirts
Reggie miller choke t shirtsReggie miller choke t shirts
 
GOOGLE Io 2024 At takes center stage.pdf
GOOGLE Io 2024 At takes center stage.pdfGOOGLE Io 2024 At takes center stage.pdf
GOOGLE Io 2024 At takes center stage.pdf
 
100^%)( POLOKWANE))(*((+27838792658))*))௹ )Abortion Pills for Sale in Sibasa,...
100^%)( POLOKWANE))(*((+27838792658))*))௹ )Abortion Pills for Sale in Sibasa,...100^%)( POLOKWANE))(*((+27838792658))*))௹ )Abortion Pills for Sale in Sibasa,...
100^%)( POLOKWANE))(*((+27838792658))*))௹ )Abortion Pills for Sale in Sibasa,...
 
一比一原版(PSU毕业证书)美国宾州州立大学毕业证如何办理
一比一原版(PSU毕业证书)美国宾州州立大学毕业证如何办理一比一原版(PSU毕业证书)美国宾州州立大学毕业证如何办理
一比一原版(PSU毕业证书)美国宾州州立大学毕业证如何办理
 
一比一原版(Soton毕业证书)南安普顿大学毕业证原件一模一样
一比一原版(Soton毕业证书)南安普顿大学毕业证原件一模一样一比一原版(Soton毕业证书)南安普顿大学毕业证原件一模一样
一比一原版(Soton毕业证书)南安普顿大学毕业证原件一模一样
 
Free on Wednesdays T Shirts Free on Wednesdays Sweatshirts
Free on Wednesdays T Shirts Free on Wednesdays SweatshirtsFree on Wednesdays T Shirts Free on Wednesdays Sweatshirts
Free on Wednesdays T Shirts Free on Wednesdays Sweatshirts
 

Personium - Open Source PDS envisioning the Web of MyData

  • 1. Open Source PDS envisioning the Web of MyData Akio Shimono Project Lead - Personium Project Member – Open Knowledge Japan Manager – Service Technology Unit, Fujitsu Ltd. MyData 2018 – Tools for Data Portability 2018-08-29
  • 2. “Data Portability” encouraging MyData 2  With “Data Portability”, MyData is now out from enclosure, in a machine readable way.  Now, Question is  Who / What Entity, What kind of Machine should receive these ported data.  Where is the best place to put the ported data.
  • 3. Imagine 3  Invisible ball floating above your head  You can put whatever your data into that ball.  All your data is there. I know all my data is there Whatever data about me can be stored  Invisible Concierge.  Perfectly “Yours”  Helps your life in all aspects  Never betrays you. Your Personium Just like your Car augments your ability of mobility. augments your ability of information processing such as: - reception, - recognition, - memory, - integration, - analysis - expression Create such an Information TechnologyOur Project Goal #1
  • 4. PDS – “MyData” Storage 4 “ Where is the best place for MyData, now getting available by data portability ?” Question Our Answer Why Server ?  24 hrs / 365 days Up,  Accessible from any device / service  Easy to put Intelligence (computing power) Why a choice of entities trusted ?  It varies depending on your belief.  We like democracy rather that despotism “My Own Server operated by a choice of entities I trust.”
  • 5. World Wide Web of interconnected PDS’s  Various PDS Providers (Information Bank) can co-exist and co-prosper Bank Energy Provider Railway Local Govt. Shopping Mall Interoperable among PDS providers using Personium or compatible software Various PDS Providers Similar usability, regardless of PDS Providers Can use Same Apps Can communicate and share data with People who use a PDS from other provider  Consumers can choose a provider  Interoperability among providers should be there Provide it in the form that many players can co-exist and co-prosperOur Project Goal #2
  • 6. Open source: Anyone can be a PDS Provider 6 https://personium.io/ Currently developed by our team in Fujitsu. Aiming for open and neutral project management  Available on github  Apache License version 2.0.  Tools, samples are also available https://github.com/personium/ Anyone can set up a PDS server, and become a PDS provider. Business entity, national / local government, individual, etc. Free, Secure, Public Aiming to be an “Apache” in MyData Domain
  • 7. Tech Overview 1.Accessibility from variety of Apps  All functions provided in the form of Web API  Each Personium PDS has a unique URL  Any platform (OS, language) can speak with Personium  All API’s are protected with user authentication and access control.  Well known standards used for data access  WebDAV for directory tree file system model data  OData for relational model data  Per-App spaces  Decently isolated to avoid unintentional mix-up  app authentication for protection against phishing apps  Packaged data model including ACL, Roles, relational data schema, etc.. can be provided from app and installed onto Personium upon first use 7 https://akio.some-provider.example/ HTTPS Apps Per-App spaces HTTPS HTTPS HTTPS Web API standards WebDAV For Relational Data For Files Unique URL
  • 8. Tech Overview 2.Linking for sharing MyData  Sharing MyData by pointing target PDS URL  Disclosing or sharing your data to the others (e.g. wife, family doctor, work place, etc.) are done by specifying the other party's PDS URL.  PDS access uses digital signature technology, therefore, the other party's PDS can be resided on another server.  Passive Data Subject  Full privilege delegation enables Passive Data Subject  By granting all privileges on all resources to someone else, full delegation can also be configured in the continuum of Personium access control model.  Data from / of infants, pets, cars, communities, organizations can be handled using Personium (MyData can be disclosed to organizations or apps) 8 My doctor My patient I will show my diet log and exercise log only to my doctor Active Data Subject Passive Data Subject Allow parents all data all operation My son My dad I will manage it until he grows up 8 Active Passive
  • 9. Unit Architecture: Web of 3-layer structure over HTTP (REST APIs) 9 UnitBox Cell Box BoxCell Cell Cell Name Description Typical URL Unit The server to host Cells. What you get by software installation. https://pds.example/ Cell “Personium” Data Store for “everything” https://akio-shimono.pds.example/ Box Per- App space inside a cell. https://akio-shimono.pds.example/schedule/ Cell Cell Cell ■ Cells can be networked beyond units. ■ A Box provides a separate space dedicated to each application.
  • 10. Unit Architecture: Closer Look  Security : All SSL, Authn/ Authz, Access Control  3 types of clients call corresponding level of APIs 10 Box BoxCell Box pictures 2016-09-01.jpg 2016-08-31.jpg Thumb-svc shared Trip-log settings.json Unit Ctl Cell Ctl Unit Mgt Client Service Provider Application ClientCell Mgt Client Super-user access Create/ delete Cells Various apps storing and utilizing my data Access Control Consent Mgmt Access Control External / existing IdP / Authn IdP / Authn User RESTful API standards WebDAV For Files For Relational Data
  • 11. Other features of Personium Cell  Messaging  Between cells to send request each other (Relation building, Data disclosure, etc.. )  Event Bus  Rule based event handler + Pub-sub WebSocket interface  Engine  Sandboxed custom logic execution environment to implement “intelligence”  Extensibility of User Authentication Methods  Open ID Connect / SAML / Card … 11
  • 12. Our final goal Web of “MyData”  Every active / passive data subject’s MyData store connected with each other  World Wide Web of PDS’s can be formed if everybody is happy to use one. Our logo represents our dream of World Wide Personium (MyData) Web Notice: Cyber Physical System will be formed
  • 13. Key: App Ecosystem  User Satisfaction parameters  Richness of Data providing Apps, which sync ported data to the PDS  Richness of Data consuming Apps, which utilize the data in PDS and provide new values. Calendar Wearable Health Sensor Event recommendations Job huntingUser Finance Asset management Electronic health record Health advices Trip planner Data Data Data Data Recommend an event tailored to your preference during the free time of your schedule Expert advices based on your daily health data Proposal of travel tailored to your financial status, preferences and schedule Job offering according to your skills, qualifications, practical experiences etc. Control Data Consuming AppsData Providing Apps (including adapters existing service) DataPortability IndividualConsent As data grow, app ecosystem and user base grow. As app ecosystem grows, user base and data grow
  • 14. Personium Data Portability Demo using our sample GUI + Calendar App 1. Calendar Data synced near-real-time to Personium from multiple major source services 2. Merged and integrated 3. Shared with others upon user’s control 14 You can freely modify and customize them for your needs. (e.g. Put your logo and redistribute under you brand.)
  • 15. Business Model  PDS Provider (Information Bank)  Several projects under development. Many big companies interested.  Financial Institution, public sector, energy company, Media, etc.  They all have individual ”paid” accounts and have strong interest in adding extra value on them.  They do not have to earn immediate money with this, rather engagement.  ICT Provider  Cloud Service, System Integration, etc. 15
  • 16. Last Words: Join Us !  Visit our web page and join our slack community  About 100 members in the community.  Current majority is Fujitsu Group Employees in Japan  We want more diversity !!  App Developers  We want more apps.  Server Operators  We want more servers.  Server Development  Our software is still far from maturity. 16 https://personium.io