Authentication Using Mobile Credentials

You now have the Unifyia ID wallet credentials which you can use to login and authenticate to the Unifyia Platform or any other Relying Parties (RPs) (Integrated Applications) configured with (via OIDC/SAML to work with) Unifyia SSO provider. Depending on the credential preferences set by your organization, the available multi-factor authentication methods will be presented. Select Try Another Way to switch between authentication methods. The following are the MFA options enabled via the app for login:

You now have the Unifyia ID wallet credentials which you can use to login and authenticate to the Unifyia Platform or any other Relying Parties (RPs) (Integrated Applications) configured with (via OIDC/SAML to work with) Unifyia SSO provider. Depending on the credential preferences set by your organization, the available multi-factor authentication methods will be presented. Select Try Another Way to switch between authentication methods. The following are the MFA options enabled via the app for login:

Authentication Using PKI Credential

Using the PKI certificate on your mobile phone, you have the following methods to access the Unifyia platform and third-party applications.

Sign in to the Unifyia Platform on a Personal Computer

Supported Browsers

  • Windows
    • Google Chrome
    • Microsoft Edge
  • macOS
    • Safari
  1. Launch the Unifyia Platform on your personal computer.
  2. Enter your email and select SIGN IN.
  3. The registered mobile device is displayed on the page. Select it.
  4. A notification is sent to the Unifyia ID Wallet. The notification is visible under the mobile device notifications list. Select this notification to proceed. You can also view the approval request under the notifications section on the mobile app.  Tap on the approval request to proceed.
  5. Depending on your mobile device's settings, you may need to swipe, enter a PIN, password, or pattern, or use biometric authentication (such as fingerprint or facial recognition) to unlock the device. Unlock your device using the set user authentication method. Follow the on-screen instructions or prompts to input the required authentication method.
  6. The Login Request approval screen is displayed.
  7. Select Approve to authenticate.
  8. The application prompts for the authentication credentials configured to unlock the mobile device. Input the details.
  9. You are now logged in to the platform.
  10. If you select Deny, the sign-in to the platform will fail.

Sign in to the Unifyia Platform on a Mobile Browser

  • Supported Mobile Browser: Safari
  • Supported Mobile Phone: Apple iPhone

You can sign in to the platform with the issued PKI credential on your mobile device using the Safari browser. Currently, this feature is exclusively available for Apple iPhones.

  1. Launch the Unifyia Platform on your mobile phone using the Safari browser.
  2. On the sign-in page, select the option User Smart Card.
  3. A pop-up to select the certificate appears. Select the issued PKI certificate.
  4. A notification is sent to the Unifyia ID Wallet.
  5. The notification is visible under the mobile device notifications list. Select this notification to proceed. You can also view the approval request under the notifications section on the mobile app. Tap on the approval request to proceed.
  6. The Login Request approval screen is displayed.
  7. Select Approve to authenticate.
  8. You are now logged in to the platform.
  9. If you select Deny, the sign-in to the platform will fail.

Sign in to Third-Party Mobile Applications

Supported third-party apps

  • Outlook
  • Mail Client

Using the PKI credential issued on your app, you can sign in to the third-party mobile applications that support certificate-based authentication (CBA). Unifyia ID Wallet supports CBA for mobile apps such as Outlook, Mail Client

  1. Launch the third-party application on your mobile phone.
  2. On the sign-in page, select the option to sign in with a smart card or a certificate.
  3. A pop-up to select the certificate appears. Select the issued PKI certificate.
  4. A notification is sent to the Unifyia ID Wallet.
  5. The notification is visible under the mobile device notifications list. Select this notification to proceed. You can also view the approval request under the notifications section on the mobile app. Tap on the approval request to proceed.
  6. The Login Request approval screen is displayed.
  7. Select Approve to authenticate.
  8. You are now logged in to the platform.
  9. If you select Deny, the sign-in to the platform will fail.

Authenticate Using FIDO2 Credential

This section explains how to use the FIDO2 credentials issued on the wallet app.

Required

  • ID wallet app installed on a mobile phone.
  • Registered NFC-supported passkeys (FIDO2) on the Unifyia ID Wallet.

Steps

  1. Sign in using your email to display the authentication options. A QR code is displayed.
  2. If your phone camera has the native capacity to scan the QR code, scan the QR code to proceed, tap your NFC-supported passkeys (FIDO2) near the NFC antenna, and enter the set PIN to authenticate. You may also use a QR code scanner app to scan the code.
  3. You are logged into the relying party application.

Authenticate Using Push Verify Credential

  1. Open the Unifyia Platform.
  2. Enter your email and select SIGN IN.
  3. The registered mobile device is displayed on the page. Select it.
  4. A notification is sent to the Unifyia ID Wallet. The notification is visible under the mobile device notifications list. Select this notification to proceed. You can also view the approval request under the notifications section on the mobile app.  Tap on the approval request to proceed.
  5. Depending on your mobile device's settings, you may need to swipe, enter a PIN, password, or pattern, or use biometric authentication (such as fingerprint or facial recognition) to unlock the device. Unlock your device using the set user authentication method. Follow the on-screen instructions or prompts to input the required authentication method.
  6. The Login Request approval screen is displayed.
  7. Select Approve to authenticate.
  8. The application prompts for the authentication credentials configured to unlock the mobile device. Input the details.
  9. You are now logged in to the platform.
  10. If you select Deny, the sign-in to the platform will fail.

Authentication Using OTP Credential

  1. Open the Unifyia Platform.
  2. Enter your email and select SIGN IN.
  3. If login via OTP is not the preferred mode configured by your organization, you need to select Try Another Way on the sign-in page and select the One Time Password (OTP)
  4. Now, open the ID Wallet app and tap on the OTP.
  5. Enter the displayed OTP on the platform sign-in page to log in.