Credential Issuance by Operators
The Unifyia platform allows the operators to issue multiple types of identities such as PIV, PIV-I, CIV,
DPIV, DFIDO2, and Passkeys (FIDO2) on devices such as smart cards, NFC cards, and security keys.
Additionally, they can issue mobile (Mobile) and derived mobile (DMobile) identities in the Unifyia ID
Wallet app on mobiles devices (currently only on iOS devices). The platform allows operators to issue
identities singularly as well as in combination based on the configured workflow. For example,
- PIV+FIDO2
- PIV+FIDO2, Mobile ID
- FIDO2, Mobile ID
- DPIV+DFIDO2
- DPIV+DFIDO2, DMobile ID
- DPIV, DMobile ID
- DFIDO2, DMobile ID
NOTE
- It may be noted that in the above listed credential issuance combinations, when a plus symbol is used to define the credentials, it means that those credentials can be issued in a single issuance process. If a comma is separating the credentials, then it means that a single workflow can enable issuance of both the credentials but not in a single issuance process.
PIV, PIV-I, CIV, and PIV+FIDO2 identities can only be issued exclusively by the operators. Operators can
issue all other identities on behalf of the users if required. The issuance of DPIV and DFIDO2
identities is permitted only when the users have an existing, active PIV ID.
Granular Credential Issuance
A unique feature of the Unifyia platform is its ability to allow independent issuance of multiple PIV and FIDO2 credential types approach allows organizations to adapt to evolving security requirements, easily update credentials as needed, and maintain a high level of control and flexibility, all while preserving the integrity and consistency of their identity management processes.
The following are the identities that an operator can issue: