Do you think that Senator Feinstein, et al are in possession of a rock-solid “problem statement”? I think not. And these are the policy decision-makers who can make or break identity “reform” efforts. Call this Jack's One Law For Everything: Without a rock-solid problem statement, there can be no joy.
Day: April 18, 2005
He's had enough ‘ease of use’…
I wonder what Ben Hyde Ascription ate for breakfast before writing this one…
The rhetoric of putting the user at the center runs the risk of being hollow. At worst it is disingenuous. At minimum it diverts our attention from the complexity of seeing the needs and requirements of the other players in the problem space. You dont solve the identity problem without bring most of those constituencies along. What we dont know is what proportions of each is required.
If Ben is talking about the user's identity, which I think he is, doesn't it then make sense that the user “be at the center”? I expect “the other constituencies” will think this makes sense too… Especially if we end up with a more secure and more intuitive way to use identities.
Each time I hear one of the players announce he is putting the user at the center I cant help roll my eyes. Let me pick on Microsoft, Im sure it wont hurt wont hurt the big old monopolys feelings. When Microsoft talks about placing the user at the center what do I hear? First off I hear the echos of the 80s dream, that the personal computer will empower the the under served little guy; ripping power from the hands of the computer center. Then I hear the passion of the UI designer selling his wares. Ease of use. Ease of use, damn it! He chants, he rants. I hear the a delusion, that the PC monopoly can still set standards like this; thats not true anymore – the browser war demonstrated that first. That the installed base now includes things like smart cards and telephones only makes it less credible today.
Gee, is Ben bitter about the opening of the glass house? I don't believe it. There must be some enthusiasm in his heart for the benefits heaped on the “little guy” through use of personal computers connected to the planetary mesh. I've seen a lot of empowered people, that's for sure, including all my friends and my children. As for ease of use, I share much of Ascription‘s skepticism. It's a challenge. So what? The same is true for most technology.
But mostly I hear a classic example of agency. The presumption that a product manager is a legitimate agent for the customers. Product managers aspire to that, great product managers get close. But never ever does a product manager become legit. A product manager is always absolutely the advocate of his product. Microsofts product is the OS and when Microsoft says they wish to put the customer they run very close to becoming illegit and disingenuous. I find myself thinking – great its browser war time again; instead of solving the problem we will have the identity version of the HTML tag battles. For example if UI is key, which it obviously is, where is the open transparent legitimate process for getting that widely deployed?
Hmmm. I don't know where to start on this one. How about this? As I tell my “product manager” friends, product managers aren't all bad! After all, without them, there would be no products… Sure, people feel passionate, Ben foremost amonst them. I think that's one of the best things about our industry.
On the other hand, I know how offensive it can be to hear people in our business talking as though they have been elected, when often they have just been appointed, so to speak.
What I like in some of Microsofts current rhetoric, well Kims rhetoric, is the emphasis on the seeking the identity big bang. That should be our common cause. Players in this space should stop pretending they are legitimate spokesmen for other constituencies and substitute in its place a clear and transparent statement of what they believe they are doing to bring each and every one of the necessary constituencies into what we hope is the comming big bang.
I agree with Ben on these last points. All constituencies are very important, and no one should claim to be a spokesman.
We should just make sure our technologies give individuals and organizations freedom of choice, and nurture an ecology of alternatives. Then people can “vote with their feet (fingers?)”.
A believable scenario – if done right
Nice posting from Ascription Is An Anathema to any Enthusiasm that gives a believable scenario for account linking:
In the midst of a delightfully shrill posting we see Ross Mayfield yearning to authorize two vendors he uses to share data about him. What some of us call linking accounts.
Tivo and Netflix Need Each Other: Why dont they know what movies I have rented or watched? If its in my rental queue and I saw it for free on cable, spare us both the hassle.
Thats exactly the kind of thing that Project Liberty and more recently SAML have been trying to enable. One user with two account relationships. Two firms with info about their users. Information they would love to exchange to make those users happier. Serious issues about what embarrassing viewing habits Ross has that he probably doesnt want getting passed around the internet rumor mill. The firms are just as worried about their secrets.
We can solve this problem. The two firms negotiate an agreement about data sharing. Ross gives his permission to allow his personal data to be shared. Everything necessary to do this is available today. The plumbing isnt hard. Blocking out the orchestration of the deal is straight forward.
It remains hard getting a legal framework (and thats what the term circle of trust means) that is robust and reasonable for all three parties.
