DigiD is an
identity management
Identity and access management (IAM or IdAM) or Identity management (IdM), is a framework of policies and technologies to ensure that the right users (that are part of the ecosystem connected to or within an enterprise) have the appropriate acce ...
platform which government agencies of the Netherlands, including the
Tax and Customs Administration
The Tax and Customs Administration () is the tax collection agency of the Kingdom of the Netherlands, operating under the Ministry of Finance. It's responsible for levying and collecting taxes, enforcing tax legislation, and investigating tax ...
and
Dienst Uitvoering Onderwijs
Dienst is a surname. Notable people with the surname include:
*Gottfried Dienst
Gottfried Dienst (Basel, 9 September 1919 – Bern, 1 June 1998) was a Swiss association football referee. He was mostly known as the referee of the 1966 FIFA Wo ...
, can use to verify the identity of Dutch residents on the Internet. In 2022, it was used for 557 million authentications by 16.5 million citizens. The system is tied to the Dutch
national identification number
A national identification number or national identity number is used by the governments of many countries as a means of uniquely identifying their citizens or residents for the purposes of work, taxation, government benefits, health care, bank ...
(''
burgerservicenummer'', ''BSN''). The system has been mandatory when submitting
tax form
A tax return is a form on which a person or organization presents an account of income and circumstances, used by the tax authorities to determine liability for tax.
Tax returns are usually processed by each country's tax authority, known as a ...
s electronically since 2006.
Security
In July 2011,
DigiNotar
DigiNotar was a Dutch certificate authority, established in 1998 and acquired in January 2011 by VASCO Data Security International, Inc. The company was hacked in June 2011 and it issued hundreds of fake certificates, some of which were used f ...
, the company that was providing the certificates used for DigiD under the
PKI root-
CA PKIoverheid
PKIoverheid is the public key infrastructure (PKI) from the Dutch government
The Netherlands is a parliamentary representative democracy. A constitutional monarchy, the country is organised as a decentralised unitary state.''Civil servic ...
, suffered the theft of hundreds of certificate codes. Although not directly linked to certificates used by DigiD, the result of the hack was that the government lost its trust in certificates issued by the company, both under their own root CA and the certificates under the governments' root PKIoverheid. Prosecutors said they would investigate the U.S.-owned, Netherlands-based DigiNotar.
In 2014, it was discovered that many DigiD
phising websites existed, which were taken offline. 24 websites of municipalities had weak passwords that allowed hacking DigiD credentials.
See also
*
Electronic identification
An electronic identification ("eID") is a digital solution for proof of identity of citizens or organizations. They can be used to view to access benefits or services provided by government authorities, banks or other companies, for mobile paymen ...
References
External links
*
Government of the Netherlands
Identity management
{{Netherlands-stub