Skip to content

Update access control guidelines for standards selection#684

Open
mrtn78 wants to merge 1 commit intomasterfrom
mrtn78-patch-1-Update_access_control_guidelines_for_standards_selection
Open

Update access control guidelines for standards selection#684
mrtn78 wants to merge 1 commit intomasterfrom
mrtn78-patch-1-Update_access_control_guidelines_for_standards_selection

Conversation

@mrtn78
Copy link
Copy Markdown
Collaborator

@mrtn78 mrtn78 commented Apr 16, 2026

Graag een initieel punt toevoegen om duidelijk te maken voor overheden dat bij login voorzieningen voor burgers altijd oauth moet worden toegepast. Ik heb de volgende content toegevoegd als suggestie:

  1. In the use case a citizen wants to login to a government service provider the service provider MUST provide a login service compatible with NLgov Assurance Profile for OAuth 2.0

Clarified guidelines for selecting standards based on user consent and login requirements.
The following guidelines should be used to select the appropriate standard for a specific context:

1. In the use case a User/Resource owner gives consent to a third-party to access Data
0. In the use case a citizen wants to login to a government service provider the service provider MUST provide a login service compatible with NL GOV Assurance Profile for OAuth 2.0
Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Deze paragraaf is bedoeld als toelichting op de geldende spelregels obv toepassingsgebied van de standaarden op de PTLU lijst;
Volgt deze login regel ook uit de PTLU lijst?

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Suggested change
0. In the use case a citizen wants to login to a government service provider the service provider MUST provide a login service compatible with NL GOV Assurance Profile for OAuth 2.0
0. In the use case a citizen wants to log in to a government service provider the service provider MUST provide a login service compatible with NL GOV Assurance Profile for OAuth 2.0

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants