Hacker News new | ask | show | jobs
by zutnop 3854 days ago
That's the trick, all Estonian government services + all private services which benefit from strong authentication or authorization have implemented the ID-card log in and signature functionality to their services/apps/websites.

So whether I send 5€ to my mother, or I sell my car to a stranger on other side of the country, or I submit my yearly tax data, or I complete my 1 000 000 € M&A deal, I use my digital identity (PKI infrastructure) to sign the transaction.

The physical ID-card itself is not the most user friendly token in this Estonian infrastructure (requires the reader + op system drivers/soft). The alternative token is Mobile-ID, where the same PKI infrastructure is deployed onto my phone SIM card and I use my mobile device to authenticate / authorize my transactions. At the moment this only works with certified Estonian carriers but in 2016 the next generation of mobile support should make this channel usable over the whole world.

1 comments

Don't get me wrong that's all good and well, but it's still 15 year old technology being implemented and not a paradigm shift. Most of the time you're still going to be typing in your e-mail, postal address and credit card number when doing things online. It's not like you swipe your card once for logging in to you computer and then when buying some service online to verify the setting up a subscription payment and having all your data at the provider encrypted with your identity.