Digipass S3 is now DigipassONE. This section is currently being updated to reflect our new name.

Deployment Architecture

Prev Next

The Authentication Server should be deployed behind your application’s infrastructure and should not be directly exposed to the Internet. See Figure 1. This model provides additional security and also provides greater programmatic control over Authentication Server behavior.

Figure 1 Deployment Architecture

The API Server handles session management. To use your application infrastructure to handle session management, write a custom API Server session plugin. If your application infrastructure uses a static rules engine or a risk scoring system, your application infrastructure can use those systems to determine which Nok Nok authentication policy to select.