Introduce identity model and reconcile upstream imports
All checks were successful
CI Smoke / host-smoke (push) Successful in 0s
CI Smoke / container-smoke (push) Successful in 1s

Assistant: codex
Assistant-Model: gpt-6-astra
Assistant-Session: 01a070b5-4994-7271-bd8b-7c3dbcedec4b
This commit is contained in:
tegwick 2026-09-05 22:11:46 +02:00
parent a2b254786e
commit 361c944325
38 changed files with 1014 additions and 123 deletions

View file

@ -215,6 +215,12 @@ Security may analyze or test access control as a security domain.
## 3.5 Boundary with Identity and Authentication
Identity provisioning and authentication are related but distinct.
[ITC-IDENT](../identity/InfoTechCanonIdentityModel.md) owns Account, Identity Record,
Identifier, Credential, Claim, Scope, Tenant, Realm, identity relationships and
Assurance Level under ADR-006. This model imports them and retains Subject,
Principal, Relationship Tuple, CredentialReference and ResourceScope.
ResourceScope refines the general identity Scope. Protocol deployment details
remain downstream; the following list is not an unowned conceptual gap.
This standard references but does not fully own: