19

Lime - PowerAuth 2.0 and mobile QRToken introduction

Embed Size (px)

Citation preview

Petr Dvořák

CEO at Lime

E-mail: [email protected]

Twitter: @joshis_tweets

PowerAuth 2.0

Strong authentication for your mobile banking

Multi-factor authentication

End-to-end encryption

Secure Storage

✔ Biometric authentication / TouchID

✔ Apple Watch / Android Wear

Today Screen, Android Widget

✔ Short PIN code for login

✔ Activation via Internetbanking

1. Deploy PowerAuth 2.0 Server ✓ ready-to-use server app

2. Implement activation management in the Internet banking ✓ ready-to-use web services (SOAP)

3. Implement signature verification in mobile banking ✓ ready-to-use high-level libraries

4. Implement signature computation in mobile banking ✓ ready-to-use high-level libraries

Integration steps

PowerAuth Server

Mobile BankingAPI Server

Bank A

Ban

ksU

sers

Internetové bankovnictví

YourBank YourBank

Your mobile banking

Your internet banking

SOAP service for activation management

Proprietary banking API, PowerAuth 2.0 signature for active operation in HTTP header

SOAP service for an activation status retrieval and signature verification

Internet banking HTML code sent to the web browser and displayed to end user.

Enter activation code

PowerAuth Libraries

PowerAuth Libraries

PowerAuth Libraries

• Free and open-source

• https://github.com/lime-company/lime-security-powerauth

• Optional commercial support

• http://powerauth.com/

Pricing

QRToken

Strong authentication for your internet banking

Alternative for authorization SMS messages

• Fast login to internet banking

• Active operation signing

• Faster QR payments (SPAYD format)

Features

• Simpler, user friendly authentication

• Better security

• New experience with high UX

• Faster payments with QR codes

Benefits for users

• Cost savings - less authorization SMS

• Better system security

• Price efficient innovation

Benefits for banks

PowerAuth Server

QRToken API Server

Bank A

Ban

ksU

sers

Internet banking

QR code scanning for active operation authorization

Thank you

Petr Dvořák e-mail: [email protected] twitter: @lime_company