SlideShare a Scribd company logo
All Rights Reserved | FIDO Alliance | Copyright 20171
Deployment Case
Study:
Authentication and
ID Proofing
2
Why are we solving this?
● Strong authentication not always tied to identity of user
● FIDO authentication mostly decoupled from ID Proofing
● ID Proofing required for higher assurance levels
● Current options for ID Proofing and strong authentication
violates user privacy
● Remote ID Proofing often tied to KBV
3
NSTIC Vision
“Individuals and organizations utilize secure, efficient,
easy‐to‐use and interoperable identity solutions to
access online services in a manner that promotes
confidence, privacy, choice, and innovation.”
- National Strategy for Trusted Identities in Cyberspace (NSTIC)
4
The Project
● Cooperative with US National Institute of Standards & Technology (NIST)
● Secure online access for US school district (Janesville, Wisconsin)
● Yubico awarded grant working with UnitedID and SUNET
● Integrate ID Proofing with FIDO U2F authentication
● Extend benefits of FIDO U2F to federated identity environments
● Share attributes securely, conveniently and privacy-enhancing
● ID Proofing (without KBV) with delivery of pre-registered authenticator
5
ID verified FIDO Authenticators
● Successful Remote Proofing Pre-registers authenticator
● Pre-registration of authenticator ensures authenticity and
integrity (first FIDO credential must be ID verified)
U2F YubiKeys sent to
the address on ID
Secure access to any
number of services
Mobile ID scanning,
Driver’s license or state ID
All Rights Reserved | FIDO Alliance | Copyright 20176
ID Proofing and Verification
All Rights Reserved | FIDO Alliance | Copyright 20177
Token Issuance and Logistics
All Rights Reserved | FIDO Alliance | Copyright 20178
Extending FIDO to Identity Ecosystem
● Extend U2F to services connected via these federation
protocols
• U2F Shibboleth (SAML) and OpenID Connect plug-in
• Open source reference implementation
● Build ID Proofing engine using OpenID Connect
• Allows for multiple proofing solutions/providers
• Part of the Identity toolkit
All Rights Reserved | FIDO Alliance | Copyright 20179
Lessons Learned
● Protecting PII is time and resource intensive
● Difficult to achieve highest identity assurance with Remote ID proofing
● High level of trust required in integrations with third-party vendors
● Compatibility challenges across diverse operating systems and devices
● Additional techniques needed to onboard special education students
● Ongoing efforts to gather and correlate user metrics
All Rights Reserved | FIDO Alliance | Copyright 201710
Thank You!

More Related Content

PDF
FIDO, Federation & Facebook Social Login
PDF
Google Case Study: Strong Authentication for Employees and Consumers
PDF
Introduction to the FIDO Alliance
PDF
FIDO Based Consumer Authentication
PDF
Javelin Research 2017 State of Authentication Report
PPTX
Introduction to the FIDO Alliance: Vision & Status
PPTX
FIDO Authentication: Unphishable MFA for All
PDF
Protecting IDAAS with FIDO Authentication
FIDO, Federation & Facebook Social Login
Google Case Study: Strong Authentication for Employees and Consumers
Introduction to the FIDO Alliance
FIDO Based Consumer Authentication
Javelin Research 2017 State of Authentication Report
Introduction to the FIDO Alliance: Vision & Status
FIDO Authentication: Unphishable MFA for All
Protecting IDAAS with FIDO Authentication

What's hot (19)

PDF
Market Study on Mobile Authentication
PDF
2019 FIDO Tokyo Seminar - LINE PayへのFIDO2実装
PDF
GDPR(一般データ保護規則)とFIDO標準について
PPTX
Strong Authentication Trends in Government
PDF
The Value of FIDO Alliance Membership
PDF
FIDO Workshop at the Cloud Identity Summit: FIDO Alliance Overview
PDF
FIDO2 & Microsoft
PPTX
Introduction to FIDO Alliance
PDF
FIDO And the Future of User Authentication
PPTX
FIDO Masterclass
PPTX
Webinar: Securing IoT with FIDO Authentication
PDF
2018 12-07 tokyo-seminar Brett McDowell
PPTX
FIDO Webinar – A New Model for Online Authentication: Implications for Policy...
PDF
FIDO Alliance Today: Status and News
PDF
Introduction to FIDO Alliance
PPTX
FIDO Alliance Research: Consumer Attitudes Towards Authentication
PPTX
Google Case Sudy: Becoming Unphishable: Towards Simpler, Stronger Authenticaton
PDF
FIDO Authentication in Europe the Momentum and Opportunities
PDF
FIDO Alliance Vision and Status
Market Study on Mobile Authentication
2019 FIDO Tokyo Seminar - LINE PayへのFIDO2実装
GDPR(一般データ保護規則)とFIDO標準について
Strong Authentication Trends in Government
The Value of FIDO Alliance Membership
FIDO Workshop at the Cloud Identity Summit: FIDO Alliance Overview
FIDO2 & Microsoft
Introduction to FIDO Alliance
FIDO And the Future of User Authentication
FIDO Masterclass
Webinar: Securing IoT with FIDO Authentication
2018 12-07 tokyo-seminar Brett McDowell
FIDO Webinar – A New Model for Online Authentication: Implications for Policy...
FIDO Alliance Today: Status and News
Introduction to FIDO Alliance
FIDO Alliance Research: Consumer Attitudes Towards Authentication
Google Case Sudy: Becoming Unphishable: Towards Simpler, Stronger Authenticaton
FIDO Authentication in Europe the Momentum and Opportunities
FIDO Alliance Vision and Status
Ad

Viewers also liked (13)

PDF
FIDO Authentication and GSMA Mobile Connect
PDF
NIST 800-63 Guidance & FIDO Authentication
PPTX
FIDO and Mobile Connect
PDF
FIDO Authentication Opportunities in Healthcare
PDF
FIDO Authentication & Blockchain
PDF
Strong Authentication and US Federal Digital Services
PDF
FIDO Certified Program: Status & Futures
PDF
FIDO Technical Specifications Overview
PPTX
Introduction to FIDO Alliance
PDF
FIDO Authentication for Multifactor Payments
PPTX
Getting to Know the FIDO Specifications - Technical Tutorial
PPTX
Introduction to FIDO: A New Model for Authentication
PPTX
FIDO - The Value of Membership
FIDO Authentication and GSMA Mobile Connect
NIST 800-63 Guidance & FIDO Authentication
FIDO and Mobile Connect
FIDO Authentication Opportunities in Healthcare
FIDO Authentication & Blockchain
Strong Authentication and US Federal Digital Services
FIDO Certified Program: Status & Futures
FIDO Technical Specifications Overview
Introduction to FIDO Alliance
FIDO Authentication for Multifactor Payments
Getting to Know the FIDO Specifications - Technical Tutorial
Introduction to FIDO: A New Model for Authentication
FIDO - The Value of Membership
Ad

Similar to Authentication and ID Proofing in Education (20)

PDF
Tokyo Seminar: FIDO Alliance Vision and Status
PDF
Webinar: Case Study: FIDO, Federation, ID Proofing
PPTX
FIDO Munich Seminar FIDO Automotive Apps.pptx
PDF
PingYOU Future of Wallets_Darrell Geusz.pdf
PPTX
UX Webinar Series: Essentials for Adopting Passkeys as the Foundation of your...
PDF
Beyond Passwords: FIDO & the Future of Consumer Authentication
PDF
Introduction to the FIDO Alliance
PPTX
OpenAthens Conference 2018 - Don Thibeau - OpenID Connect
PPTX
Making FIDO Deployments Accessible to Users with Disabilities_slides.pptx
PPTX
Authenticate 2021: Welcome Address
PPTX
1ID2-KeyBank-CapitalOne.pptx
PDF
FIDO & PSD2 – Achieving Strong Customer Authentication Compliance
PPTX
FIDO Munich Seminar Introduction to FIDO.pptx
PPTX
Solving the IoT Challenge
PDF
FIDO Alliance Osaka Seminar: Overview.pdf
PDF
EUDI wallets with OpenID for verifiable credentials (OID4VCI/OID4VP)
PDF
CIS13: Beyond the Building: Secure Identity Services for Mobile and Cloud Apps
PPTX
FIDO Alliance Webinar: Intuit's Journey with FIDO Authentication
PPTX
FIDO Alliance Webinar: Catch Up WIth FIDO
PPTX
Webinar: Catch Up with FIDO Plus AMA Session
Tokyo Seminar: FIDO Alliance Vision and Status
Webinar: Case Study: FIDO, Federation, ID Proofing
FIDO Munich Seminar FIDO Automotive Apps.pptx
PingYOU Future of Wallets_Darrell Geusz.pdf
UX Webinar Series: Essentials for Adopting Passkeys as the Foundation of your...
Beyond Passwords: FIDO & the Future of Consumer Authentication
Introduction to the FIDO Alliance
OpenAthens Conference 2018 - Don Thibeau - OpenID Connect
Making FIDO Deployments Accessible to Users with Disabilities_slides.pptx
Authenticate 2021: Welcome Address
1ID2-KeyBank-CapitalOne.pptx
FIDO & PSD2 – Achieving Strong Customer Authentication Compliance
FIDO Munich Seminar Introduction to FIDO.pptx
Solving the IoT Challenge
FIDO Alliance Osaka Seminar: Overview.pdf
EUDI wallets with OpenID for verifiable credentials (OID4VCI/OID4VP)
CIS13: Beyond the Building: Secure Identity Services for Mobile and Cloud Apps
FIDO Alliance Webinar: Intuit's Journey with FIDO Authentication
FIDO Alliance Webinar: Catch Up WIth FIDO
Webinar: Catch Up with FIDO Plus AMA Session

More from FIDO Alliance (20)

PPTX
Securing Account Lifecycles in the Age of Deepfakes.pptx
PPTX
FIDO Seminar: Perspectives on Passkeys & Consumer Adoption.pptx
PPTX
FIDO Seminar: Evolving Landscape of Post-Quantum Cryptography.pptx
PPTX
FIDO Seminar: Targeting Trust: The Future of Identity in the Workforce.pptx
PPTX
FIDO Seminar: New Data: Passkey Adoption in the Workforce.pptx
PPTX
FIDO Seminar: Authentication for a Billion Consumers - Amazon.pptx
PPTX
FIDO Alliance Seminar State of Passkeys.pptx
PPTX
FIDO Munich Seminar: FIDO Tech Principles.pptx
PPTX
FIDO Munich Seminar: Securing Smart Car.pptx
PPTX
FIDO Munich Seminar: Strong Workforce Authn Push & Pull Factors.pptx
PPTX
FIDO Munich Seminar: Biometrics and Passkeys for In-Vehicle Apps.pptx
PPTX
FIDO Munich Seminar Workforce Authentication Case Study.pptx
PPTX
FIDO Munich Seminar In-Vehicle Payment Trends.pptx
PPTX
FIDO Munich Seminar Blueprint for In-Vehicle Payment Standard.pptx
PPTX
UX Webinar Series: Drive Revenue and Decrease Costs with Passkeys for Consume...
PPTX
UX Webinar Series: Aligning Authentication Experiences with Business Goals
PDF
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
PDF
FIDO Alliance Osaka Seminar: LY-DOCOMO-KDDI-Mercari Panel.pdf
PDF
FIDO Alliance Osaka Seminar: NEC & Yubico Panel.pdf
PDF
FIDO Alliance Osaka Seminar: Passkeys and the Road Ahead.pdf
Securing Account Lifecycles in the Age of Deepfakes.pptx
FIDO Seminar: Perspectives on Passkeys & Consumer Adoption.pptx
FIDO Seminar: Evolving Landscape of Post-Quantum Cryptography.pptx
FIDO Seminar: Targeting Trust: The Future of Identity in the Workforce.pptx
FIDO Seminar: New Data: Passkey Adoption in the Workforce.pptx
FIDO Seminar: Authentication for a Billion Consumers - Amazon.pptx
FIDO Alliance Seminar State of Passkeys.pptx
FIDO Munich Seminar: FIDO Tech Principles.pptx
FIDO Munich Seminar: Securing Smart Car.pptx
FIDO Munich Seminar: Strong Workforce Authn Push & Pull Factors.pptx
FIDO Munich Seminar: Biometrics and Passkeys for In-Vehicle Apps.pptx
FIDO Munich Seminar Workforce Authentication Case Study.pptx
FIDO Munich Seminar In-Vehicle Payment Trends.pptx
FIDO Munich Seminar Blueprint for In-Vehicle Payment Standard.pptx
UX Webinar Series: Drive Revenue and Decrease Costs with Passkeys for Consume...
UX Webinar Series: Aligning Authentication Experiences with Business Goals
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: LY-DOCOMO-KDDI-Mercari Panel.pdf
FIDO Alliance Osaka Seminar: NEC & Yubico Panel.pdf
FIDO Alliance Osaka Seminar: Passkeys and the Road Ahead.pdf

Recently uploaded (20)

PDF
Physiotherapy_for_Respiratory_and_Cardiac_Problems WEBBER.pdf
PDF
Supply Chain Operations Speaking Notes -ICLT Program
PDF
Black Hat USA 2025 - Micro ICS Summit - ICS/OT Threat Landscape
PDF
FourierSeries-QuestionsWithAnswers(Part-A).pdf
PPTX
IMMUNITY IMMUNITY refers to protection against infection, and the immune syst...
PPTX
1st Inaugural Professorial Lecture held on 19th February 2020 (Governance and...
PDF
Module 4: Burden of Disease Tutorial Slides S2 2025
PPTX
school management -TNTEU- B.Ed., Semester II Unit 1.pptx
PPTX
Microbial diseases, their pathogenesis and prophylaxis
PDF
The Lost Whites of Pakistan by Jahanzaib Mughal.pdf
PDF
Saundersa Comprehensive Review for the NCLEX-RN Examination.pdf
PPTX
master seminar digital applications in india
PDF
01-Introduction-to-Information-Management.pdf
PDF
Abdominal Access Techniques with Prof. Dr. R K Mishra
PPTX
Institutional Correction lecture only . . .
PDF
Insiders guide to clinical Medicine.pdf
PDF
Complications of Minimal Access Surgery at WLH
PPTX
Pharmacology of Heart Failure /Pharmacotherapy of CHF
PPTX
Renaissance Architecture: A Journey from Faith to Humanism
PDF
Microbial disease of the cardiovascular and lymphatic systems
Physiotherapy_for_Respiratory_and_Cardiac_Problems WEBBER.pdf
Supply Chain Operations Speaking Notes -ICLT Program
Black Hat USA 2025 - Micro ICS Summit - ICS/OT Threat Landscape
FourierSeries-QuestionsWithAnswers(Part-A).pdf
IMMUNITY IMMUNITY refers to protection against infection, and the immune syst...
1st Inaugural Professorial Lecture held on 19th February 2020 (Governance and...
Module 4: Burden of Disease Tutorial Slides S2 2025
school management -TNTEU- B.Ed., Semester II Unit 1.pptx
Microbial diseases, their pathogenesis and prophylaxis
The Lost Whites of Pakistan by Jahanzaib Mughal.pdf
Saundersa Comprehensive Review for the NCLEX-RN Examination.pdf
master seminar digital applications in india
01-Introduction-to-Information-Management.pdf
Abdominal Access Techniques with Prof. Dr. R K Mishra
Institutional Correction lecture only . . .
Insiders guide to clinical Medicine.pdf
Complications of Minimal Access Surgery at WLH
Pharmacology of Heart Failure /Pharmacotherapy of CHF
Renaissance Architecture: A Journey from Faith to Humanism
Microbial disease of the cardiovascular and lymphatic systems

Authentication and ID Proofing in Education

  • 1. All Rights Reserved | FIDO Alliance | Copyright 20171 Deployment Case Study: Authentication and ID Proofing
  • 2. 2 Why are we solving this? ● Strong authentication not always tied to identity of user ● FIDO authentication mostly decoupled from ID Proofing ● ID Proofing required for higher assurance levels ● Current options for ID Proofing and strong authentication violates user privacy ● Remote ID Proofing often tied to KBV
  • 3. 3 NSTIC Vision “Individuals and organizations utilize secure, efficient, easy‐to‐use and interoperable identity solutions to access online services in a manner that promotes confidence, privacy, choice, and innovation.” - National Strategy for Trusted Identities in Cyberspace (NSTIC)
  • 4. 4 The Project ● Cooperative with US National Institute of Standards & Technology (NIST) ● Secure online access for US school district (Janesville, Wisconsin) ● Yubico awarded grant working with UnitedID and SUNET ● Integrate ID Proofing with FIDO U2F authentication ● Extend benefits of FIDO U2F to federated identity environments ● Share attributes securely, conveniently and privacy-enhancing ● ID Proofing (without KBV) with delivery of pre-registered authenticator
  • 5. 5 ID verified FIDO Authenticators ● Successful Remote Proofing Pre-registers authenticator ● Pre-registration of authenticator ensures authenticity and integrity (first FIDO credential must be ID verified) U2F YubiKeys sent to the address on ID Secure access to any number of services Mobile ID scanning, Driver’s license or state ID
  • 6. All Rights Reserved | FIDO Alliance | Copyright 20176 ID Proofing and Verification
  • 7. All Rights Reserved | FIDO Alliance | Copyright 20177 Token Issuance and Logistics
  • 8. All Rights Reserved | FIDO Alliance | Copyright 20178 Extending FIDO to Identity Ecosystem ● Extend U2F to services connected via these federation protocols • U2F Shibboleth (SAML) and OpenID Connect plug-in • Open source reference implementation ● Build ID Proofing engine using OpenID Connect • Allows for multiple proofing solutions/providers • Part of the Identity toolkit
  • 9. All Rights Reserved | FIDO Alliance | Copyright 20179 Lessons Learned ● Protecting PII is time and resource intensive ● Difficult to achieve highest identity assurance with Remote ID proofing ● High level of trust required in integrations with third-party vendors ● Compatibility challenges across diverse operating systems and devices ● Additional techniques needed to onboard special education students ● Ongoing efforts to gather and correlate user metrics
  • 10. All Rights Reserved | FIDO Alliance | Copyright 201710 Thank You!