Appendix 5: Glossary
|
Term |
Meaning |
|
Authentication |
The name of the process requiring the verification of a person's (or agency's) identity before delivering certain information across the internet. Authentication is distinct from authorisation, which is the process of giving individuals access to services based on their identity. The first stage is authentication, which ensures that a user is who he or she claims to be. The second stage is authorisation, which allows the user access to various services based on the user's identity. |
|
Authentication agency |
Organisation that holds individuals' authentication accounts and maintains ID credentials. NB. The organisation acting as authentication agency may perform this role in addition to its existing functions. |
|
Authentication principles |
The Government has agreed policy and implementation principles for electronic authentication of individuals carrying out online transactions with government agencies. These principles guide the design of solution(s) for authentication. Further detail is available at http://www.e-government.govt.nz/news/2002042801.html |
|
Authentication services |
The services provided by the authentication agency which include issuing the credential, storing the registration data and verifying the credential |
|
Credential |
The combination of a unique number and code that is associated with the authentication account and is used to denote that individual in communications between the authentication agency and the service agency. |
|
Local Credential Mapping Table (LCMT) |
The table in which a service agency keeps a record of their client's credentials by storing the credential with the matching service reference number. |
|
One-time enablement code |
A phrase or number sent to authenticated individual for the purpose of allowing them to activate their authentication account once it has been first established by the authentication agency. |
|
Password |
The user-selected word or phrase that an individual must provide before they can modify their authentication account. |
|
Secure Authentication For E-government (SAFE) |
The authentication agency's database containing individuals' authentication accounts. |
|
Service agency |
The agency that provides the online government services to individuals. |
|
Service reference number |
The number that is used by a particular government agency or group of government agencies to uniquely identify the individual. |
|
Shared Secrets |
User-selected words or phrases saved in the SAFE that must be supplied by an individual before the authentication agency will issue a replacement one-time enablement code. |
|
Trusted Referee |
Organisation that essentially acts as a referee by confirming the personal data of individuals registering for authentication. Organisations that may act as TRs are limited to those bodies that meet specified standards. |
|
User ID |
Phrase that individual supplies together with a code to identify themselves when requesting an e-service. |
[ Previous | Next ]

