Skip to content

Conversation

@olivier-heurtier-sia
Copy link
Member

This pull request contains an OpenAPI specification to propose an extension of the authentication service exposed to relying parties. Compared to the existing OSIA service (verify identity), this new service brings:

  • the ability to use more authentication factors
  • additional security features:
    • authentication and response can be bound to one transaction,
    • the consent of the citizen/user can be provided,
    • authentication factor data can be signed and encrypted,
    • request can be checked for integrity.

This proposition was first discussed outside the usual OSIA workgroup with other organizations, and was then updated to be more consistent with the existing OSIA services.
This is not yet perfect and the YAML is not yet integrated in the OSIA PDF documentation but it is now open for comments from the community.

@olivier-heurtier-sia olivier-heurtier-sia changed the title Adv authent New 'authenticate' service Sep 16, 2021
@olivier-heurtier-sia
Copy link
Member Author

For your convenience, please find a PDF representation of the YAML generated with RapiPDF.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant