Page 45 - Implementation of Secure Authentication Technologies for Digital Financial Services
P. 45
Figure 29 – Ecosystem Architecture
7.1.3 Example: K-FIDO Enrolment example
This section provides a use case that is based on tification and authentication, an i-PIN backed by a
the FIDO specification. It describes how “K-FIDO” PKI certificate issued by a small number of service
combines FIDO UAF specification and PKI to enable providers can be generated and associated with the
authentication and ID verification at the same time Resident Registration Number. Figure 30 illustrates
for successful commercial Fintech deployments in this relationship.
Korea. K-FIDO is a specification to be published by The citizen can use many identification meth-
KISA (Korea Internet Security Agency), enabling ods such as accredited certificates, mobile, bank
biometric accredited certification services that accounts, and credit cards for internet services that
provide accredited certificates without password request an online (i.e. non face-to-face) identification
using FIDO in Korea. method.
Korean National ID is used in offline identifica- Online service providers can choose Identifica-
tion and contains a unique Resident Registration tion methods such as Accredited Certificates, Mobile
Number. To facilitate private and secure online iden-
Figure 30 – National ID and i-PIN in Korea
Implementation of Secure Authentication Technologies for Digital Financial Services 43