Tag: eGovernment

  • Microsoft and Danish Government in New Identity Deal

    A year ago, my former collegue Søren Peter Nielsen wrote, on behalf of the Danish government, a letter to Microsoft. Seems he got a response, and I’m sure it’ll interest XMLGrrl and many others, that an announcement was made yesterday: Agreement between the National IT and Telecom Agency and Microsoft: Agreement concerning partial support of the SAML 2.0 standard.

    “The ongoing dialog between the National IT and Telecom Agency and Microsoft has resulted in an agreement on partial support of the SAML 2.0 standard in Microsoft’s forthcoming version of their federation product named Active Directory Federation Services 2”, the agency writes.

    The text agreed upon is as follows:

    “The Danish public sector has chosen SAML 2.0 as their federation standard. Microsoft products use WS-Federation and WS-Trust as the foundation of their federated identity architecture. The Danish government has agreed that the SAML 2.0 token format is sufficient to provide basic interoperability between WS-Federation and SAML 2.0 environments as a common assertion format, without loss of authentication integrity.

    To support interoperability between WS-Federation and SAML 2.0 based products Microsoft has agreed to support the SAML 2.0 token format in the future release of Active Directory Federation Services code-named Active Directory Federation Services “2”. Microsoft will provide the Danish public sector Centre of Service Oriented Infrastructure with pre-release code to help analysis and planning of solutions for integrating WS-Federation-based clients in the Danish federation, and to collect feedback on the feature implementation.

    In addition, the co-authors of WS-Federation (including Microsoft) have submitted the specification to OASIS for standardization. This step further enables interoperability between federated environments that deploy SAML 2.0-based products and those that deploy WS-Federation-based products.”

    In commenting the agreement, the agency writes: “With this agreement a possibility for inclusion of Microsoft based clients in a common public SAML 2.0 based federation has opened”, and notes:

    The integration will require the standard based login solutions to be expanded with a special integration code. The solution is therefore a pragmatic tactical integration solution, but with the above-mentioned partial SAML 2.0 support from Microsoft it is expected that the integration can be done without influencing the individual “Microsoft Active Directory Federation Service” user organizations.

    The agency notes that more iinformation on the concrete possibilities will be published as the National IT and Telecom Agency’s Centre for Service Oriented Infrastructure receives pre-release code from Microsoft that can be integration tested.
    The agency elaborates a bit more on the deal:

    It is still desired, that Microsoft support all of the SAML 2.0 standard in their products, but the above-mentioned agreement are a good first step towards more convergence among standards for transverse user management.

    The National IT and Telecom Agency also sees the filing of the WS-Federation (WS-FED) specification for standardization in OASIS as a step that can promote convergence among federation standards.

    It should be stressed that it does not mean that the WS-Federation specification is recommended equally to SAML 2.0 for common public solutions.

    When the results of the standardization with WS-Federation become available (expectedly in the end of 2008) it might be relevant to do a new assessment but for now the SAML 2.0 it is still the only standard, which is recommended as a federation standard for Danish common public solutions.

    So, there we have it.

    I want to congratulate Søren Peter on a job well done. Stand firm on SAML 2.0, the open ecosystem needs it. And thanks to Microsoft for listening to customers (but why only partial support?).

  • Norwegians Launch Interoperability Framework, Mandate ODF

    Norway’s Minister of Government Administration and Reform, also Minister of IT, Ms Heidi Grande Røys, in a press announcement on Friday, Første skritt mot en offentlig sektor uten leverandørbindinger, announced that with the launch of the Norwegian Government’s interoperability framework, called Referansekatalog for IT-standarder), the Norwegian government takes “the first step towards a public sector without vendor fixation”.

    Of particular interest is that the Norwegian government boldly goes ahead and proposes mandation of a set of standards for document formats:

    • ODF is mandated for document exchange and downloads of editable documents. According to the framework document, OASIS ODF 1.0 is the standard used, but the reference link actually goes to ODF 1.1.
    • PDF is mandated for publication of static documents on the web.
    • UTF-8 (ISO/IEC 10646) is mandated as a universal character set standard, to be used in web publications, connections to registres and databases, and all other textual exchange and archiving.

    Regarding ODF, according to Digi.no, Ms Røys at the press conference said she wants ODF to be the preferred document format also internally in the administration, and not “just” for external communication. But as I read the published documents, there is no actual mandation of internal use. One could – and should – of course argue that ODF “all the way” is the only sensible way to implement the policy, but I’m sure some will argue otherwise.
    According to the press announcement, the interoperability framework is in consultion until 20 August 2008. I suppose they actually mean 20 August 2007. The mandation is proposed enacted by 1 January 2009.

    Included in the interoperability framework is a set of national government standards, such as NOARK4 for archiving, and also a plan for extending the framework to other areas. On the latter, the document analyses the Danish, Belgian, German and British interoperability frameworks standard by standard, and explicitely argues that a European alignment and cooperation is necessary.

    Danish coverage at Version2

  • Something IS Rotten in the State of Denmark

    Leif Lohdal is blogging much more continuously about the Danish open standards situation than I am. Time for me to catch up.

    On 24 April, the Danish Open Source Business Association and the Danish IT Industry Association arranged a conference in Parliament, from which I reported (in Danish, like most of the following links) over at Version2. Peter Strickx made a good presentation (soundtrack) about the situation in Belgium.

    On the same day, Prosa and Version2 arranged a debate meeting about document standards. They had invited René Løhde from Microsoft Denmark and me to meet in a “battle”. I used the opportunity to make a probably too long presentation, which I symbolically called The State of the Document World, and tried to give an “Inconvenient Truth”-style presentation, but appearently contributed to critics calling the debate “toothless”. The “battle” without a fight was made available online as a webcast a few days ago. I’ve now uploaded my presentation in PDF (1,8MB) or higher quality (7,3MB) ODP. I humbly reject to calling my message toothless! Not to say it couldn’t be presented better, of course.

    But wait, there’s more. A lot is happening, really. As a measure of “things happening” in the document format field, Version2 has published 12 articles mentioning ODF/OpenXML since the conference and battle.

    The theme is: Should government mandate one or two standards? The choices are the ODF-alone strategy or the dual-strategy with ODF and/or OpenXML.

    Yesterday morning, the involved parliamentarians and the minister met in a closed meeting. Less than a day before that meeting, the minister had released 2 reports to the parliamentarians and publically in a three (!) days long hearing. The reports, in Danish only, examine the economic consequences of mandating standards in various areas; one report dedicated to the consequences of choosing ODF. It’ll cost 180 million kroner. Yeah, right. The reports are made by Rambøll Management (yes, them, see also their explaning the appearent shift in findings).

    Helge Sander, the minister, said after the meeting that a decision is near. The parliamentarians follow the situation close, and Sander will before the summer holidays arrange for them to meet some experts, he said. Whether or not a decision will be made by him before is uncertain. He surely could, if he would – he’s the minister! I assume the parliamentarians will ride him whatever he does.

    In conclusion: Decisive indecision rules over Denmark.

  • Get the ODF Monograph

    UPGRADE, the European Journal for the Informatics Professional, has just published an Open Document Format Monograph.
    The monograph is published on behalf of CEPIS by Novática (ATI, Spain), in English and in Spanish. The English version is available online: download as PDF, see content and summaries. The Spanish version is out in print and soon online.

    I warmly recommend the monograph’s articles. I’m of course pleased about my contribution (announced earlier), but recommend reading several of the others first.

    These are the articles:

    OpenDocument Standard for Digital Documents
    Jesús Tramullas-Saz and Piedad Garrido-Picazo, Guest Editors

    Open by Design: The OpenDocument Format Standard for Office Applications
    Erwin Tenhumberg, Donald Harbison, and Rob Weir

    Is OpenDocument an Open Standard? Yes!
    David A. Wheeler

    OpenDocument Hidden Traps and their Side Effects on Free/Open Source Software
    Marco Fioretti

    ISO-26300 (OpenDocument) vs. MS-Office Open XML
    Alberto Barrionuevo-García

    Interoperability: Will the Real Universal File Format please Stand Up?
    Sam Hiser and Gary Edwards

    ODF: The Emerging Document Format of Choice for Governments
    Marino Marcich

    Promotion of the Use of Open Document Formats by the IDA and IDABC Programmes
    Miguel A. Amutio-Gómez

    A Brief History of Open Standards in Denmark
    John Gøtze

    Standard Open Formats and Libre Software in the Extremadura Public Administration
    Luis Millán-Vázquez de Miguel

  • Mandatory Open Standards in Denmark

    I’d be interested in the international reactions to this piece of news:

    On Friday, the Danish Minister of Science, Technology and Innovation, Helge Sander, made a press announcement (Danish) about his plan for following up on the Parliament Resolution 8 months ago.

    The implementation plan is presented in a report which suggests that “open standards should be implemented gradually by making it mandatory for the public sector to use a number of open standards when this becomes technically feasible”.

    The report identifies an initial sets of open standards as candidates for mandatory use from 1 January 2008 “if an economic impact assessment shows that this will not involve additional costs to the public sector”.

    The implementation plan’s elements are as follows:

    • “From 1 January 2008, all new public IT solutions should make use of the mandatory open standards relevant to the IT solution in question unless there are significant reasons for not complying with these standards.
    • If there are significant reasons for not complying with the relevant mandatory open standards, this must be reported on signing the contract, stating the reasons for applying the exceptional provisions.
    • In case of IT solutions where the technical procurement is above the EU tendering limit, the reasons must be reported to the National IT and Telecom Agency for the purpose of publication.
    • All ministers must ensure that mandatory standards are drawn up within their respective areas of responsibility where this is relevant. This must be made in cooperation with local/regional administrations in line with the existing common public projects in the area of digitalization.”

    In short: The Danish Interoperability Framework gets a new level of status: Mandatory.

    The proposed mandatory standards from 1 January 2008 falls within the following areas:

    • Standards for data interchange between public authorities
    • Standards for electronic file and document handling
    • Standards for exchanging documents between public authorities (Open Document Format and Office OpenXML)
    • Standards for electronic procurement in the public sector
    • Standards for digital signatures
    • Standards for public websites / homepages
    • Standards for IT security (only within the public sector)

    Around a dozen standards: Compliant XHTML or HTML, complaint CSS, WAI Level 2, OCES (digital signature), XML 1.0, XML Schema 1.0, NDR 3.0, FESD (docuument management), OIOUBL, UNSPSC, and DS484 (ISO 17799).

    With regard to standards for exchanging documents between public authorities, the report proposes that “it should be mandatory to use at least one of the document standards Open Document Format or Office OpenXML”, and that it is up to the individual agency to decide what they want. The report explains that a study will be conducted this year with “the purpose of obtaining the necessary experience with these standards before 1 January 2008”.

    A revised governance model should ensure more mandatory standards over time. The minister is given more authority, but not much actual power to rule over the sectors. The report goes into the “comply or explain”-principle and how it will be practised, and here, it discusses exceptions … I’ll quote in length from their English summary:

    “Requirements regarding the use of mandatory open standards will not involve any obligation or incentive to expedite procurement, upgrading or implementation of new or existing IT solutions by public authorities.

    To ensure the value of open standards to the individual authority, it is important to avoid the authority being compelled to make inappropriate choices. For this reason, a number of exceptions are made to the general rule of using mandatory open standards.

    In connection with contracts and development projects, authorities are exempted from the rules of using mandatory open standards if this means that the authority is compelled to adopt a solution which:

    • is significantly more expensive in relation to using other standards,
    • degrades the security level critically in relation to using other standards,
    • involves a significant reduction in functional performance which is a direct result of the solution being based on mandatory open standards,
    • increases the implementation time markedly,
    • leads to conflicts with standards applicable within specific areas as a result of international commitments.

    Furthermore, public authorities are exempted from the rules of using mandatory open standards if the solution does not involve data interchange with other systems.

    In case one or more of the points above are in evidence, the relevant authority may choose to dispense with specific mandatory open standards for the solution concerned.

    New solutions where technical procurement involves overall costs exceeding the EU tendering limit must be reported to the National IT and Telecom Agency on signing the contract, stating the reasons for applying the exceptional provisions.

    New solutions with overall costs below this limit should also make use of mandatory open standards, unless they fall within the exceptional provisions. However, these solutions are not subject to the reporting requirement.

    Download the English summary as PDF or ODF. The full report in Danish is here.

    The consultation period ends 23 March.

  • Wanted: eGov insights

    “I will give you insights on other leading countries eGovernment strategies if you (or maybe a co-worker to you) would help me with a 12 min. eGov web-survey with 12 questions.”

    That’s how one of my students introduces a survey he’s conducting at the IT University in Copenhagen Denmark. “I am working on an e-Government project – comparing strategies of leading e-Government counties, like yours,” Michael Hvass writes.

    Alas, his target group is a bit reluctant in replying to the survey – he has only asked one person (a key e-gov official) for each of around 20 nations. But as his supervisor, I will argue that he will get valid data for his purposes with a wider target group, so I thought I’d invite anyone working with or for a government on e-gov to participate in his survey.
    The survey is located at: www.hvass.nu/egov

  • Local History of Standards

    Quoting myself:

    This article discusses current and recent developments in Denmark, where open standards have become a central policy issue. Although Denmark is prone for leading the way in true, large-scale openization, a full-blown effort towards these ends is highly unlikely.

    That’s the abstract of an article I wrote for translation into Spanish and publication in Novática, the journal of the Spanish CEPIS society ATI, Asociación de Técnicos de Informática, issue 184 (November-December 2006).

    The editor, Llorenç Pagés, is also Chief Editor of Upgrade, The European Journal for the Informatics Professional, and will also there soon publish an issue about ODF, in which I will have an extended version of my article.

    Llorenç allowed me to share my English manuscript, so I’ve uploaded it here: You can get the ODF-version or the web-version: A Brief History of Open Standards in Denmark, where the password is ODF 😉

    I invite comments on the article. I’m still working on the extended version, and think improvements are possible …
    On a side-note, I had to hack WordPress to be able to upload ODF-files within it. Bugger, that should be a standard feature!!

    On another side-note, you should be able to use OpenID when leaving your comment.

  • An e-democrazy fellow

    My old friend Steven Clift made a short stop here in Copenhagen this week, and we had a good talk about the status of e-democracy. I had arranged for Steve to make an interview on DR (national radio) – the interview was on the air twice this weekend, and is now online at  Harddisken: Net-demokrati der rykker.

    Steve was recently inducted as an Ashoka Fellow. This will enable him to intensify his important work with local online Issues Forums through an expanded E-Democracy.Org.

  • Standards, Security, and Sectors

    OASIS Adoption Forum

    I’m going – are you? The third annual OASIS Adoption Forum is held in London on 27-29 November. The forum is themed Enabling Efficiency between Government, Business and the Citizen: Managing Secure Interactions in Sector Applications, and the list of presenters is very impressive. Also note that a Workshop on the State and Future of PKI has just been announced being part of the event. There will be sessions about adoption of OASIS standards such as SAML, XACML, and WS-Security.

    OASIS Adoption Forum “seeks to educate and expose security leaders and professionals to the tools, standards and implementations that are transforming security interactions and relationships between citizens, businesses, governmental institutions and agencies. With increasing threats encompassing everything from hacking to identity theft, providing a secure environment must be a major objective for companies, governments, and organizations worldwide. The success you enjoy tomorrow depends on the security decisions you make today”.

  • Strategizing the use of open source in the public sector

    A forthcoming book, Open Source for Knowledge And Learning Management, edited by Miltiadis Lytras and Ambjorn Naeve has a substantial chapter – “Methodological Considerations in Strategizing the Use of Open Source in the Public Sector” – that I co-wrote with Christian Wernberg-Tougaard, Kristoffer Herning, and Patrice-Emmanuel Schmitz, all of Unisys.

    In our chapter, we present and discuss an evaluation model build to describe the different layers of impact on a government organisation when deciding whether to use open source or traditional software.

    The book should be available in December, just in time for the Christmas shopping! It can already now be pre-ordered from Amazon.

    Bonus link: Christian has a blog. Subscribed.