Skip to main content
Kent Academic Repository

Improved Identity Management with Verifiable Credentials and FIDO

Chadwick, David W., Laborde, Romain, Oglaza, Arnaud, Venant, Remi, Wazan, Ahmad Samer, Nijjar, Manreet (2019) Improved Identity Management with Verifiable Credentials and FIDO. IEEE Communications Standards, 3 (4). pp. 14-20. ISSN 2471-2825. (doi:10.1109/MCOMSTD.001.1900020) (KAR id:80304)

Abstract

We describe how FIDO and W3C VCs can overcome the problems of existing identity management systems. We describe our conceptual

model and architecture, and the protocol we used by extending FIDO’s UAF in order to provide both strong authentication and strong authorization. We built a pilot implementation for U.K. NHS patients to validate our implementation. Patients were able to use a mobile phone with a fingerprint reader to access restricted NHS sites in order to make and cancel appointments and order repeat

prescription drugs. Our initial user trials with 10 U.K. NHS patients found the system to be easy to use, and fingerprints to be preferable to using usernames and passwords for authentication.

Item Type: Article
DOI/Identification number: 10.1109/MCOMSTD.001.1900020
Uncontrolled keywords: FIDO, Verifiable Credentials, Identity Management, Strong Authorisation, Strong Authentication
Subjects: Q Science > QA Mathematics (inc Computing science) > QA 76 Software, computer programming, > QA76.76 Computer software
Divisions: Divisions > Division of Computing, Engineering and Mathematical Sciences > School of Computing
Depositing User: David Chadwick
Date Deposited: 28 Feb 2020 22:53 UTC
Last Modified: 05 Nov 2024 12:45 UTC
Resource URI: https://kar.kent.ac.uk/id/eprint/80304 (The current URI for this page, for reference purposes)

University of Kent Author Information

  • Depositors only (login required):

Total unique views for this document in KAR since July 2020. For more details click on the image.