Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Identities used to access the applications are managed in Cognito.  The Cognito instance and it's userpools are separate for each carrier node.  There is not shared Cognito across carriers in the carrier nodes.  The multi-tenant node uses shared cognito userpools.  We are not utillizing the multi-tenant node for carrier activity.  AAIS and the DOI will have identities on the multi-tenant node. 

A userid and password are required to access the applications.  (MFA?)

Identity and Access Management - Cloud Infrastructure

...

Identity and Access Management - Blockchain Network

Data Privacy

The data used during the POC is private to the carrier.  It remains in its raw form only on the carrier node.  When the extraction occurs, a salted hash is passed through the blockchain to the analytics node.  Once on the analytics node, the results of the extraction from all carriers are compared with the ND DOT registered VINs and a report is generated.

Personally Identifiable Information

The system uses email address as the user id.  The organization for the user is also identified.  This is only visible inside Cognito.  Each carrier node has a separate Cognito instance and userpool.

Data captured inside the openIDL Harmonized Data Store contains no PII.