Documentation
Visit curity.io
Developer
Curity Developer Portal
Downloads
Support
Resource Library
Libraries and SDKs
OAuth Tools
Contact
Docs
/
Authentication Service Admin Guide
/
Authenticators
Menu
Authenticators
ΒΆ
Overview of Authenticators
Authenticator purpose
Authenticator Base Configuration
Multi-factor configuration for Authentication
Back-channel Authenticators
BankID
Integrating with BankID
Kinds of BankIDs
Trusted BankID Provider
Authentication flows
Configuration settings
BankID Version 6 API
IP address check on same device
BankID on the Phone
BankID Backchannel Authenticator
Testing the Integration and Configuration
Persisting the BankID Responses
Launch behavior
Change specific browser behavior
Disable autostart
Debugging the templates
Duo
Configuration Settings
Creating a New Authenticator
Logging In
Dynamic Authenticator
Configuration
Delegate Authenticator
Dynamic Configuration Source
Configuration Example
Example Use-case
Email
Base Configuration
Using as standalone factor (single factor)
Using as second or N-th factor
Using an Intermediate Attribute
Hyperlink
One Time Password (OTP) Code
Inactive Accounts
Configuration
Encap
Basic Configuration
Registration During Login
Additional Information Before Registration
Automatic Login
Entrust IDaaS
Creating an App in Entrust
Creating a new Authenticator
Facebook Authenticator
Configuring Facebook
The Redirect URI
The Data Deletion Request Callback URL
Configuration in the Authentication Service
Google Authenticator
Configuring Google
The Redirect URI
Configuration in the Authentication Service
HTML Forms Authenticator
Paths
Validation Scripts
Email Provider
Automatic Login
Password Only
Remember Me
Binding Message
Configuration
OpenID Connect Authenticator
The Redirect URI
JWKS Endpoint
Parameter Mappings
Configuration
OpenID Wallet
Configuring OpenID Wallet Authenticator
Anonymous JWKS Endpoint
Further Reading
Passkeys
Configuring a Passkeys authenticator
Registering devices
Hypermedia Authentication API
Discoverable Credentials
iOS Domain Association
Android Domain Association
Known limitations
PingFederate IdP Adapter Authenticator
Authentication Flow
Configuration
PingFederate
SAML2
Paths
Validation Scripts
Configuration
SAML2 dynamic authenticator
Known limitations
Sign in with Apple
Configuring a Sign in with Apple Service
Setting up the authenticator
SITHS
Configuring an Authenticator
SMS OTP
Base Configuration
Using as standalone factor (Single factor)
Using as second or N-th factor
Using an Intermediate Attribute
SMS OTP in OTP mode
SMS OTP in Hyperlink mode
Registration
Automatic Login
Configuration
TOTP - Time base One Time Password
Configuring an Authenticator
Multiple Device registration
Configuring for pre-shared keys
Configuring for generated keys
Automatic Login
Twitter
Creating an App in Twitter
Configuring the Twitter Authenticator
Username
Configuration
Source Code
WebAuthn
Device Types
Configuring a WebAuthn authenticator
Registering devices
User Interaction for platform devices
Hypermedia Authentication API
iOS Domain Association
Android Domain Association
Known limitations
Windows
Installing the Windows Connector
Configuring an Authenticator
Configuring the Windows Connector
Troubleshooting