Install FIDO's Identity Verification

Step 1

Installing a modpack using the Technic Launcher is easy. If you don't already have the launcher downloaded, visit our download page to get the latest version.

Step 2

Type in the modpack name (FIDO's Identity Verification) or paste the following url into the search box.

Step 3

Finally, click Install at the bottom right of the launcher after you select FIDO's Identity Verification from the list on the left. The launcher will handle everything else!

FIDO's Identity Verification

by johndrew33
Version 1.0 • Minecraft 1.16.4

FIDO Identity Verification has been shown to protect against accounts takeover through Phishing and other credential-based strikes. For accounts shielded with FIDO Authentication, the account retrieval procedure when a FIDO apparatus is missing or Stolen becomes crucial to preserving the integrity of the consumer's account.

Validating an individual's identity with high confidence is an important aspect of the Procedure, in addition to for account onboarding procedures, assembly Know Your Cornerstone of web safety, account registration and account retrieval procedures Are leaving openings in the credential control lifecycle that let bad actors To do account takeover and enter our networks. Identity Verification and Binding:

FIDO Authentication has been shown to protect against accounts takeover through Phishing and other credential-based strikes. For accounts shielded with FIDO Authentication, the account retrieval procedure when a FIDO apparatus is missing or Stolen becomes crucial to preserving the integrity of the consumer's account. Validating an individual's identity with high confidence is an important aspect of the Procedure, in addition to for account onboarding procedures, assembly Know Your Client

How does it work?

When an individual registers an online service which uses the FIDO normal, the machine creates a set of cryptographic keys, so the personal password is stored from the hardware of this apparatus and the general public password will be stored on the online support. To be able to authenticate an individual's identity, the client's device must demonstrate the online service it has the personal password by doing a mathematical confirmation.

In reality, the client's personal password may only be utilized when the consumer has unlocked the device locally. They're able to do this in a safe and easy way by using their mic, voice, or simply by introducing a PIN. Because of this, the consumer's privacy and accessibility credentials are secure, and consumers aren't forced to choose between greater security and a much better consumer experience -- they could have.

Application:

Through an authentication or enrollment stream, the program utilizes client-side APIs such as WebAuthn and FIDO2 for Android to produce and confirm user credentials with the authenticator. This entails passing a cryptographic challenge from the server to the authenticator, and returning the authenticator's answer to the server for identification.

Server:

The host stores the user's public key credential and accounts information. Through an authentication or enrollment stream, the host creates a cryptographic challenge in answer to a petition by the program. It then assesses the reply to the challenge. The FIDO Alliance keeps a list of accredited third-party goods, including server alternatives. A range of open source FIDO servers will also be available; visit WebAuthn Awesome for more information.

Authenticator:

An individual is going to log into a web app on a mobile device. A FIDO authenticator creates user credentials. An individual credential has a public and a private key element. The general public key is shared together with your ceremony, whereas the private key is kept confidential from the authenticator. An authenticator may be a part of the consumer's device, or an external piece of hardware or applications. The authenticator is used in two primary interactions: enrollment and authentication.

Registration:

In a registration situation, when a consumer is registering for an account on a website, the authenticator generates a fresh key pair that may only be utilized in your services. The general public key and an identifier for your credential will be saved with the host.

Authentication:

Within an authentication situation, when a user returns to the ceremony on a new apparatus, or following their session expires, the authenticator should offer evidence of the consumer's private key. It does so by reacting to some cryptographic challenge issued by the host.

To validate the identification of the consumer, some types of authenticator utilize biometrics such as fingerprints or facial recognition. Others utilize a PIN. Sometimes, a password can be used to confirm the user along with the authenticator provides just second-factor authentication.

Identity Verification & Binding Working Group:

For accounts protected by phishing and other credential-based strikes with FIDO Authentication, the account retrieval procedure when a FIDO device is stolen or lost becomes crucial to keeping the integrity of the user's accounts. Validating an individual's identity with higher confidence is an important element of this procedure, in addition to because of onboarding processes, fulfilling Know Your Client (KYC) and Anti-Money Laundering (AML) requirements.

The FIDO Alliance has recognized newer distant, possession-based techniques such as biometric “selfie" fitting and government-issued identity document authentication as with the capacity to greatly enhance the standard of individuality assurance for new account onboarding and account retrieval. The Alliance has also ascertained a marketplace demand for authoritative advice, performance analysis and certificates for their usage. The FIDO Alliance has made the IDWG to fulfill this requirement. The IDWG will specify criteria for distant identity verification and produce a certificate program and instructional materials to encourage the adoption of the criteria.