Magzter GOLDで無制限に

Magzter GOLDで無制限に

10,000以上の雑誌、新聞、プレミアム記事に無制限にアクセスできます。

$149.99
 
$74.99/年

試す - 無料

FIDO2 and WebAuthn: Ensuring Secure User Authentication

Open Source For You

|

September 2024

In today's digital landscape, securing online identities is more crucial than ever. Traditional passwords are no longer sufficient to protect sensitive information, which is where advanced passwordless authentication mechanisms like FIDO2 and WebAuthn come into play. These technologies offer a powerful solution for secure user authentication in a browser-based environment.

- Aditya Mitra and Anisha Ghosh

FIDO2 and WebAuthn: Ensuring Secure User Authentication

IDO2, combined with WebAuthn, uses a challenge-response mechanism to authenticate users. This process involves a series of cryptographic requests and responses, ensuring that only the rightful users can access their account. Here’s a simplified look at how this works.

A user signs up on a web scanner and a security key, such as a USB device or a biometric scanner, and enters a PIN for verification. This setup process ensures that only the user can authenticate himself/herself in the future. This mechanism is not just limited to personal accounts but is also integrated into enterprise solutions. For instance, Microsoft’s cloud services, including Active Directory and Entra, utilise security keys as a secure method for users to sign in. Microsoft Entra is a cloud based identity and access management (IAM) solution for an organisation. It keeps a record of the roles and responsibilities of its members with the help of their ID known as Entra ID.

How data is managed

All information related to Entra ID is securely stored in Microsoft Graph, a platform that requires Graph API calls to perform various operations. Graph API is an HTTPbased API that apps can use to programmatically query data and perform a wide variety of other tasks. Typically, these operations are carried out through a user-friendly graphical interface. However, for developers and IT administrators, understanding the behind-the-scenes mechanics of these API calls is essential.

imageAccessing the Graph API

There are two primary methods to access the Graph API.

Delegated permissions: This method allows an application to access the API on behalf of the signed-in user. It’s particularly useful when the application needs to perform actions as the user.

Open Source For You からのその他のストーリー

Open Source For You

Open Source For You

The Fragile Edge: Chaos Engineering for Reliable IoT

Chaos engineering is a great way of detecting possible failures in loT devices. This technology has evolved well for testing cloud failure, but open source communities are still working towards building an efficient chaos engineering toolkit for testing loT devices.

time to read

9 mins

November 2025

Open Source For You

Open Source For You

What Open Source RAG can do for Modern Enterprises

Follow this guide to leverage your enterprise data with a self-hosted AI assistant, powered by the semantic search capabilities of open source vector databases.

time to read

10 mins

November 2025

Open Source For You

Open Source For You

ASF elevates Apache DevLake and Grails to top-level status

The Apache Software Foundation (ASF) has announced that Apache DevLake and Apache Grails have graduated to Top-Level Projects (TLPs), signalling maturity, community growth, and operational independence.

time to read

1 min

November 2025

Open Source For You

Anthropic releases Claude Agent SDK alongside Claude Sonnet 4.5

Anthropic has unveiled Claude Sonnet 4.5, its most powerful code-focused AI model to date, alongside the launch of the Claude Agent SDK, an open source toolkit that allows developers to build autonomous agents powered by Claude's architecture.

time to read

1 min

November 2025

Open Source For You

Open Source For You

How AI is Impacting the Internet of Things

AI and IoT are complementing each other to build powerful and secure connected devices.

time to read

3 mins

November 2025

Open Source For You

Open Source For You

Building Future-ready AI Hardware with Neuromorphic Computing and Sensing

If machines could learn and adapt like us, what doors would that open? Neuromorphic systems are not just mimicking the brain, they are setting the stage for AI that learns, senses, and evolves, just like we do.

time to read

3 mins

November 2025

Open Source For You

Open Source For You

Open Source MLOps Tools: Ideal for Managing ML Data Workflows

MLOps adds automation, organisation and reliability to the machine learning lifecycle. Open source MLOps tools do a great job of helping build a machine learning model, with each tool tackling a distinct challenge.

time to read

6 mins

November 2025

Open Source For You

Open Source For You

Google open sources MCP server for analysing ads data

Google has officially open sourced the Google Ads API Model Context Protocol (MCP) server, now available on GitHub.

time to read

1 min

November 2025

Open Source For You

Open Source For You

Popular Simulation Platforms for the Internet of Vehicles

In these days of traffic congestion and autonomous driving, software that connects pedestrians and vehicles with governing bodies is the need of the hour. Open source simulation platforms for the Internet of Vehicles are enabling just that.

time to read

3 mins

November 2025

Open Source For You

Building an IoT Product? Use OpenRemote

OpenRemote, the open source IoT platform, helps businesses and developers innovate while lowering expenses and enabling complete control over their connected products.

time to read

5 mins

November 2025

Listen

Translate

Share

-
+

Change font size