In use case 3, a service is provided by the Service Provider to the Human Service Consumer. Identity info is held at the Identity Provider.
RolesĀ
Delegation |
info PIP |
No delegation | Service Provider | Entitled Party | Authorisation Reg |
Auth info |
PIP |
Service Provider | 3 | 3a | 3b | 3c | |
Entitled Party | 3.1 | 3a.1 | 3b.1 | 3b.1 | |
Authorisation Reg | 3.2 | 3a.2 | 3b.2 | 3b.2 | |
Identity Provider* | 3.3 | 3a.3 | 3b.3 | 3c.3 |
*The Identity Provider cannot hold explicit authorisation info, but it can hold info about a Human Service Consumer's identity that implies authorisation - i.e. 'working for truck company X'
...