Configure Workflows

Workflows are essential in optimizing the identity issuance process within an organization. Workflows establish a structured framework for identity issuance by defining the steps, required data, and task sequence. This guarantees a consistent and standardized approach to identity issuance.

Customization is a key feature of workflows, allowing tailoring to the specific needs and policies of the organization. You can design various authentication workflows to accommodate different assurance levels. You have the flexibility to configure workflows by selecting essential data elements and ensuring compliance with organizational regulations for data capture.

Furthermore, workflows facilitate users to be associated with group(s), role(s), device profiles, visual IDs, enrollment data, type of identity to be issued, and the sequence of issuance during the identity issuance process. This ensures that each user is issued identities according to their role and requirements.

Compliance with regulatory standards and organizational policies is another crucial aspect facilitated by workflows. Incorporating essential checks and validations ensures adherence to regulatory guidelines and internal policies throughout the identity issuance process. Additionally, workflows offer real-time visibility into the status of identity issuance tasks, empowering administrators to monitor progress effectively.

The tutorial provides comprehensive guidance on the various parameters that an administrator can configure in a workflow for enabling identity issuance.

Supported Identity Devices

  • Personal Identity Verification (PIV) based smart devices
    • ID-One PIV v2.4.1 on Cosmo V8.1
    • ID-One PIV v2.4.2 on Cosmo V8.2
    • ID-One PIV v2.3.4 on Cosmo V7
    • G&D SCE 7.0 with PIV Applet V1.0
    • Thales IDPrime PIV v3.0
    • ZTPass on NXP P71D600
    • Yubico - YubiKey 5 Series
  • Mobile Identities (Requires Unifyia ID Wallet App)

Identity Types

You can configure workflows for the below-listed identity types.

  • PIV (PIV-enabled smart cards/security keys)
  • CIV (CIV-enabled smart cards/security keys)
  • Derived PIV or DPIV (PIV-enabled smart cards/security keys)
  • Derived FIDO2 or DFIDO2 (FIDO2-enabled smart cards/security keys)
  • FIDO2 passkeys (Security keys)
  • Mobile Identities using the Unifyia ID Wallet app

You can configure a single workflow that enables users to authenticate using multiple types of authentication factors. The possible combinations are listed below. It may be noted that a PIV ID must be issued first for a user to enable the issuance of DPIV and DFIDO identities.

  • PIV ID
  • CIV ID
  • FIDO2 passkeys
  • Mobile Identities
  • DPIV
  • DFIDO2
  • PIV ID + FIDO2 passkeys
  • PIV ID + FIDO2 passkeys + Mobile Identities
  • FIDO2 passkeys + Mobile Identities
  • DPIV + DFIDO2 + Mobile Identities

The workflow feature of the Unifyia platform allows you to do the following:

  1. Create a workflow
  2. Search a workflow
  3. Edit a workflow
  4. Clone a workflow
  5. Delete a workflow