Digipass S3 is now DigipassONE. This section is currently being updated to reflect our new name.

Implement passkeys with the iOS Tutorial App

Prev Next

Requirements

IDE

Xcode 26.0 or later

Computer

Mac OS X 26 or later

Device

Touch ID capable device running iOS 14 or later

Other

  • Apple Developer account

  • Unique bundle ID1

1 You must provision a unique bundle ID for your version of the iOS Tutorial app. To learn more, see the Apple documentation on App ID Identifiers.

Download the iOS SDK

  1. Login to the Digipass S3 Authentication Cloud portal.

  2. Locate the Software Downloads tile.
    List of software downloads including Cordova, Web, and iOS SDK options.

  3. Click iOS SDK and download the zip file.
    Interface for downloading various SDKs including Cordova, Web, iOS, and Android.

Review the iOS tutorial app settings

Learn how the iOS tutorial app is configured in the server to see how your own client application would be set up.

  1. Open the Configuration menu and click Apps.
    OneSpan dashboard showing signed-in user and navigation options for applications.

  2. On the Apps page, search for Nok Nok Tutorial for iOS and click the Edit icon.
    List of apps with highlighted tutorial and edit action options displayed.

  3. You should see a page with the settings for Nok Nok Tutorial for iOS:      

    • Package Name/URL: ios:com.noknok.ios.tutorialappplus
      This name cannot be changed.

    • App Name: Nok Nok Tutorial for iOS
      The app name displayed in the Server Console.

    • Facet ID2
      FIDO UAF is checked, so FIDO UAF Facet ID will be available.

    • Adaptive Ruleset: tutorial3
      Sets the authentication flow based on the user's device and their response to challenges.

    • Supported OOB Modes:
      Specifies what will be sent to users with out-of-band authentication.

      • QR Code

      • Push notification              

        • Use Token Signing Key

          • Token Signing Key          

            • Handle for Token Signing Key: {default}store

    • Use APNs Production Server: (checked)
      App configuration settings including package name, team ID, and supported modes.

  4. Once you have reviewed the iOS tutorial app settings, you should also:

    1. Navigate to Configuration > Authentication Methods

    2. Open FIDO2/WebAuthn and ensure that RP ID is not set to localhost but to  http://staging.digipassone.com.

2 The Facet ID depends on the bundle ID key which you have assigned.
3 Set to tutorial to apply rules for the Tutorial app. To see which rules would be applied, access the link, Click here to view Ruleset.

Build the iOS tutorial app

Enable Touch ID authentication

  1. Launch Xcode and open the folder where you downloaded the iOS App SDK.

  2. Navigate to TutorialAppPlus > TutorialAppPlus and double-click TutorialAppPlus.xcodeproj

  3. Set your Bundle Identifier in the General tab in the Tutorial App.

  4. Connect a Touch ID-capable device to your build machine.

  5. Set the connected iOS device as the target.

  6. Press the play button to build and run the iOS tutorial app on your device.

Connect the iOS tutorial app to Digipass S3 Authentication Cloud

  1. On your computer, open a browser and append this to the Authentication Cloud base URL /<tenant>/webapps/demo/gwtutorial/configure with <tenant> being your tenant name.4

  2. On the Web App Configuration page, ensure that the Configuration Version is set to automatic.

  3. Click Apply Configuration.
    Web app configuration settings including tenant, server host, and apply configuration button.

  4. Next, click Show QR Code. You should see the Configuration QR code dialog.
    A QR code for configuration, with instructions to scan using an application.

  5. Launch the iOS Tutorial app on your device.

  6. Click Scan QR Code from the top left menu to connect the iOS tutorial app to your tenant.

4 Your tenant name appears in the header of the portal.

Test the iOS tutorial app

  1. Open the iOS tutorial app and enter your username in the field provided. Click Next.
    OneSpan login screen with options to sign in or sign up for users.

  2. When you are prompted for a Password, enter "noknok." Click Next.
    OneSpan app login screen with fields for username and navigation buttons.

  3. You will be asked to set up authentication. Register a passkey by clicking FIDO Auth.
    OneSpan app setup options include FIDO Auth, Mobile Device, and Email or SMS.

  4. You will be presented with various options to register a passkey. Choose one and follow the instructions:      

    1. Platform authenticator

    2. Security Key

    3. Face ID

    4. Passcode

    5. PIN

    6. Yes/No

    7. Watch

    8. Device
      User registration screen displaying various authentication options and settings for security features.

  5. Once you have registered all your preferred methods, log out.

  6. Test your passkey. Sign in with the username, click Next and authenticate using one of the methods you selected.

  7. If you are able to sign in, log out again and sign in using another method until you have tested them all.

You can now proceed to Adding your iOS application to the Digipass S3 Authentication Cloud.