DID Method
The scheme that defines how a specific type of DID is created, resolved, updated, and deactivated, named in the identifier (for example did:web, did:key, did:ion, did:ethr). Ledger-anchored methods use a blockchain; ledgerless methods such as did:web and did:key do not.
Choosing a method is choosing a trust root and an operating cost, and it is the decision most decentralized identity pilots get wrong by defaulting to whatever the vendor ships. did:key is fine for ephemeral test credentials but cannot rotate. did:web is deployable today and understood by auditors but depends on DNS and TLS control. Ledger methods remove that dependency and add infrastructure you now operate or trust someone else to operate.
See also: decentralized identifier, DID document, DID methods compared, decentralized identity vendors
Related on Start with Identity
- GlossaryVerifiable Credential (VC)
A tamper-evident, cryptographically signed digital credential following the W3C VC Data Model. Issued by an issuer, held in a wallet, and presented to a verifie
- GlossaryIssuer, Holder, Verifier
The three roles in every decentralized identity exchange, often called the trust triangle. The issuer signs and grants a credential, the holder stores it in a w
- GlossarySelective Disclosure
Revealing only the minimum claims needed for a transaction, for example proving you are over 18 without sharing your birth date. A core privacy goal of verifiab
- BlogAttackers are phoning employees about their passkeys, then enrolling their own MFA method
Microsoft detailed a campaign running since May 2026 in which callers posing as IT tell US enterprise users to update their passkey or MFA settings, route them
- BlogCisco FMC shipped with hardcoded credentials, and attackers found them before the patch did
CVE-2026-20316 is a low-privileged account with credentials hardcoded into Cisco Secure Firewall Management Center, giving unauthenticated remote attackers acce
- ExpertCo-author of TLS 1.0 and the W3C DID specification
Christopher Allen co-authored the IETF TLS 1.0 specification, co-authored the W3C Decentralized Identifiers specification, and in 2016 published The Path to Sel