The rapid rise of AI agents presents urgent challenges in authentication, authorization, and identity management. Current agent-centric protocols (like MCP) highlight the demand for clarified best practices in authentication and authorization. Looking ahead, ambitions for highly autonomous agents raise complex long-term questions regarding scalable access control, agent-centric identities, AI workload differentiation, and delegated authority. This OpenID Foundation whitepaper is for stakeholders at the intersection of AI agents and access management. It outlines the resources already available for securing today's agents and presents a strategic agenda to address the foundational authentication, authorization, and identity problems pivotal for tomorrow's widespread autonomous systems.
翻译:AI智能体的迅速崛起给认证、授权和身份管理带来了紧迫挑战。当前以智能体为中心的协议(如MCP)突显了对明确认证与授权最佳实践的迫切需求。展望未来,高度自主智能体的发展愿景引发了关于可扩展访问控制、以智能体为中心的身份标识、AI工作负载区分以及委托权限等复杂的长期问题。本OpenID基金会白皮书面向AI智能体与访问管理交叉领域的利益相关者,概述了当前保障智能体安全可用的现有资源,并提出了解决未来广泛自主系统关键性基础认证、授权及身份问题的战略议程。