Page 45 - Implementation of Secure Authentication Technologies for Digital Financial Services
P. 45

Figure 29 – Ecosystem Architecture





























            7.1.3   Example: K-FIDO Enrolment example
            This section provides a use case that is based on   tification and authentication, an i-PIN backed by a
            the FIDO specification. It describes how “K-FIDO”   PKI certificate issued by a small number of service
            combines FIDO UAF specification and PKI to enable   providers can be generated and associated with the
            authentication and ID verification at the same time   Resident Registration Number. Figure 30 illustrates
            for successful commercial Fintech deployments in   this relationship.
            Korea. K-FIDO is a specification to be published by   The citizen can use many identification meth-
            KISA (Korea Internet Security Agency), enabling    ods such as accredited certificates, mobile, bank
            biometric  accredited  certification  services  that   accounts, and credit cards for internet services that
            provide accredited certificates without password   request an online (i.e. non face-to-face) identification
            using FIDO in Korea.                               method.
               Korean National ID is used in offline identifica-  Online service providers can choose Identifica-
            tion and contains a unique Resident Registration   tion methods such as Accredited Certificates, Mobile
            Number. To facilitate private and secure online iden-

            Figure 30 – National ID and i-PIN in Korea



























                                             Implementation of Secure Authentication Technologies for Digital Financial Services  43
   40   41   42   43   44   45   46   47   48   49   50