A Novel Protocol Using Captive Portals for FIDO2 Network Authentication
Ver/ abrir
Use este enlace para citar
http://hdl.handle.net/2183/36476Coleccións
- Investigación (FIC) [1615]
Metadatos
Mostrar o rexistro completo do ítemTítulo
A Novel Protocol Using Captive Portals for FIDO2 Network AuthenticationData
2024Cita bibliográfica
Rivera-Dourado M, Gestal M, Pazos A, Vázquez-Naya J. A Novel Protocol Using Captive Portals for FIDO2 Network Authentication. Applied Sciences. 2024; 14(9):3610. https://doi.org/10.3390/app14093610
Resumo
[Abstract]: FIDO2 authentication is starting to be applied in numerous web authentication services, aiming to replace passwords and their known vulnerabilities. However, this new authentication method has not been integrated yet with network authentication systems. In this paper, we introduce FIDO2CAP: FIDO2 Captive-portal Authentication Protocol. Our proposal describes a novel protocol for captive-portal network authentication using FIDO2 Authenticators as security keys and passkeys. For validating our proposal, we have developed a prototype of FIDO2CAP authentication in a mock scenario. Using this prototype, we performed a usability experiment with 15 real users. This work makes the first systematic approach for adapting network authentication to the new authentication paradigm relying on FIDO2 authentication.
Palabras chave
WebAuthn
network authentication
captive portal
protocol
FIDO2
security key
authenticators
passkey
network authentication
captive portal
protocol
FIDO2
security key
authenticators
passkey
Descrición
This paper is an extended version of the paper published in the international conference: 2023 JNIC Cybersecurity Conference (JNIC), Vigo, Spain, 21–23 June 2023. The developed prototype can be found in Github, published as Open Source: https://github.com/martinord/fido2cap-server (accessed on 23 April 2024).
Versión do editor
Dereitos
Atribución 3.0 España