Credential Issuance by Operators

The Unifyia platform allows the operators to issue multiple types of identities such as PIV, PIV-I, CIV, DPIV, DFIDO2, and Passkeys (FIDO2) on devices such as smart cards, NFC cards, and security keys. Additionally, they can issue mobile (Mobile) and derived mobile (DMobile) identities in the Unifyia ID Wallet app on mobiles devices (currently only on iOS devices). The platform allows operators to issue identities singularly as well as in combination based on the configured workflow. For example,

  • PIV+FIDO2
  • PIV+FIDO2, Mobile ID
  • FIDO2, Mobile ID
  • DPIV+DFIDO2
  • DPIV+DFIDO2, DMobile ID
  • DPIV, DMobile ID
  • DFIDO2, DMobile ID

NOTE
  • It may be noted that in the above listed credential issuance combinations, when a plus symbol is used to define the credentials, it means that those credentials can be issued in a single issuance process. If a comma is separating the credentials, then it means that a single workflow can enable issuance of both the credentials but not in a single issuance process.

PIV, PIV-I, CIV, and PIV+FIDO2 identities can only be issued exclusively by the operators. Operators can issue all other identities on behalf of the users if required. The issuance of DPIV and DFIDO2 identities is permitted only when the users have an existing, active PIV ID.

Granular Credential Issuance

A unique feature of the Unifyia platform is its ability to allow independent issuance of multiple PIV and FIDO2 credential types approach allows organizations to adapt to evolving security requirements, easily update credentials as needed, and maintain a high level of control and flexibility, all while preserving the integrity and consistency of their identity management processes.

The following are the identities that an operator can issue:

Task Description
Issue PIV/PIV-I/CIV ID Issue a PIV/PIV-I/CIV ID for the enrolled and approved users.
Issue Derived PIV Credentials Issue a Derived PIV/PIV-I/CIV Credential for approved users with an active PIV ID.
Issue PIV+FIDO2 Credentials Issue a PIV+FIDO2 Credential for approved users.
Issue Derived FIDO2 Credentials Issue a Derived FIDO2 Credential (DFC/DFIDO) for approved users with an active PIV ID.
Issue Passkeys (FIDO2) Issue passkeys (FIDO2) for users.
Issue Mobile Credentials Issue mobile credentials on behalf of users on their mobile devices for users.
Issue Derived Mobile (DMobile) Credentials Issue derived mobile credentials on behalf of users on their mobile devices for users with an active PIV ID.
Issue PIV+FIDO2, Mobile Credentials Issue PIV+FIDO2 and mobile credentials for users.

On this page