Configure Passkeys (FIDO2) Policy

Passkeys, utilizing FIDO (Fast Identity Online) standards, provide a secure, passwordless authentication method designed to enhance security and user experience. FIDO protocols (FIDO2, WebAuthn) leverage public key cryptography to enable robust, phishing-resistant authentication.

The Passkey (FIDO2) Policy feature in the Unifyia platform allows you to configure a policy for registration and authentication of the FIDO2 passkeys as per FIDO2 specifications defined by the FIDO Alliance. It currently supports the registration and authentication of FIDO2 passkeys with the Unifyia platform but does not support creating or managing policies for other relying parties. This policy when configured defines the implementation, management, and compliance requirements for using passkeys within an organization.

The Passkey (FIDO2) Policy option in the platform allows you to do the following:

  • Add a policy for registration and authentication of the FIDO2 Passkey
  • Enable/disable policy
  • Edit policy
  • Delete policy

Log into the platform to configure the policy.

Add Policy

  1. Navigate to Configuration > Passkey (FIDO2) Policy.
  2. Select + Add Policy.
  3. There are two sections – one section to configure the registration policy and another for the authentication policy.
  4. Configure the Passkeys (FIDO2) Registration and Authentication Policy as per your organization's access policies.
  5. Select Save to complete the addition of a new FIDO2 Policy.

Manage Passkey Policies

  1. Navigate to Configuration > Passkey (FIDO2) Policy. The list of all the configured policies is displayed.
  2. To edit a policy, select the Pencil icon. Edit the information as required. Select Update to save the data or Cancel to exit the process.
  3. To delete a policy, select the Binicon. Select Yes to confirm or No to exit the process.