23
デバイスWebコンソーシアム 第4回技術WG 指紋認証と「FIDO」について 2016629株式会社 ディー・ディー・エス 事業支援本部 FIDO事業推進部 井上 幸三 [email protected] 103-0028 東京都中央区八重洲1-8-5 新槇町ビル別館第二

指紋認証と「FIDO」について - デバイスWebAPIコ …ƒ‡バイスWebコンソーシアム第4回技術WG 指紋認証と「FIDO」について 2016年6月29日 株式会社ディー・ディー・エス

  • Upload
    lamkiet

  • View
    217

  • Download
    1

Embed Size (px)

Citation preview

  • Web WG

    FIDO

    2016629

    FIDO

    [email protected]

    103-00281-8-5

  • ICID

    CopyrightC DDS, Inc. All rights reserved. 2

    20144FIDO201410FIDONokNokLabs

    (https://byebye.pw/)

  • CopyrightC DDS, Inc. All rights reserved. 3

    http://www.zdnet.com/article/lastpass-password-security-site-hacked/http://www.nenkin.go.jp/oshirase/taisetu/2015/201506/20150601.html

  • 1Web

    2

    4

    CopyrightC DDS, Inc. All rights reserved. 4

    3

    FIDO UAF

  • IC

    FIDO1.0

    FIDO 2.0X

    FIDO Server

    FIDO UAF

    FIDOFIDO

    CopyrightC DDS, Inc. All rights reserved. 5

    OTP

    Windows

    AD

    Web U2F Server

    HW Token

    FIDO U2F

    Web

    FIDO Server

    AppSDK

    ASM

    Secure HWMobile

    2

  • FIDO

    UAF standards

    CopyrightC DDS, Inc. All rights reserved. 6

    U2F standards

    FIDO 1.0 Spec

  • 20144PayPalGalaxy S5FIDO ReadyPayPal20147Samsung Galaxy S5FIDO

    FIDO UAF

    CopyrightC DDS, Inc. All rights reserved. 7 FIDO101

  • 201410Google ChromeU2FYubicoPlug-UpFIDO U2F FIDO U2F

    2

    FIDO U2F

    CopyrightC DDS, Inc. All rights reserved. 8

    2 OSXLinux

    FIDO101

  • - PayPalUAF

    CopyrightC DDS, Inc. All rights reserved. 9

    - PayPalUAF- YubicoU2F

    PayPal https://www.youtube.com/watch?v=c1aYFjHVFA8Yubico https://www.yubico.com/why-yubico/for-businesses/authentication-solutions/gov-uk-verify-digidentity/

  • FIDO

    3

    CopyrightC DDS, Inc. All rights reserved. 10FIDO

  • FIDO101 1

    FIDOPayPal

    CopyrightC DDS, Inc. All rights reserved. 11

  • FIDO

    Password bearer tokenuser-binding token

    CopyrightC DDS, Inc. All rights reserved. 12FIDO

  • 95%Verizon DBIR, 201561%Javelin Research, The Consumer Data Insecurity Report.

    FIDO

    CopyrightC DDS, Inc. All rights reserved. 13

    FIDO

  • FIDO

    FIDO FIDO

    FIDOFIDOFIDO

    CopyrightC DDS, Inc. All rights reserved. 14

    etc

    OSOS

    NNLFIDO

  • FIDO

    CopyrightC DDS, Inc. All rights reserved. 15

    NNLFIDO

  • FIDO2015

    CopyrightC DDS, Inc. All rights reserved. 16FIDO

  • FIDOOEMs

    CopyrightC DDS, Inc. All rights reserved. 17

    Supported iOS Fingerprint Devices

    FIDO

  • FIDO

    https://fidoalliance.org/certification/fido-certified/

    NokNokLabs Android

    Android

    EyeVerify Android

    CopyrightC DDS, Inc. All rights reserved. 18

    KDDIFIDO

  • FIDO AUTHENTICATION

    USER FIDO Server

    BrowserPlatform

    USERVERIFICATION Web API

    User Device

    Web FIDO 2.0

    FIDOWebAPIW3CWeb

    CopyrightC DDS, Inc. All rights reserved. 19

    AUTHENTICATIONVERIFICATION Java Script

    OSDriver

    Bluetooth Wi-FiSmart Phone

    FIDO

  • Federation

    SingleSign-On MODERN

    AUTHENTICATION

    FIDO

    CopyrightC DDS, Inc. All rights reserved. 20

    Physical-to-digital identity

    User Management

    Authentication

    Federation

    Passwords Risk-BasedStrong

    FIDO

  • CopyrightC DDS, Inc. All rights reserved. 21

  • FIDO UAF

    CopyrightC DDS, Inc. All rights reserved. 22

    FIDO Alliance FIDO Overview

  • FIDO U2F

    CopyrightC DDS, Inc. All rights reserved. 23

    FIDO Alliance FIDO Overview_March2014.pptAPDUapplication protocol data unit