Introduction
Integration involves the device-side and server-side components of the S3 Suite and therefore it may involve multiple teams. Integration should be coordinated between the teams to ensure end-to-end interoperability.
Integrating with the S3 Suite involves multiple steps. You can anticipate potential hurdles and minimize integration errors by establishing a common understanding among an organization’s mobile app, mobile app infrastructure, and authentication infrastructure teams implementing the Nok Nok solution, and by planning the integration in a coordinated manner.
Integration Roadmap
Integration with the S3 Suite involves the following high-level steps:
Deploy the Authentication Server: If you are not using the Nok Nok Authentication Cloud, install the Authentication Server in your data center and create databases to store user data. The Nok Nok API Server is also installed at this time.
Configure the Authentication Server: Configure the Server for the UAF or FIDO2 protocol, specify your UAF or FIDO2 authenticators using a FIDO policy, set up OOB authentication, define the components you need to support Adaptive Authentication, configure Quick Authentication, create tenants, and create your Admin Console users.
Familiarize yourself with the tutorial implementations: We recommend that you study the tutorial implementations provided by Nok Nok. We provide Tutorial App for mobile apps and Tutorial Web App for web apps using FIDO2/WebAuthn.
Test using a mobile app: Test your installation using a client application from Nok Nok. You can test with the Tutorial App.
Test web app authentication: Study Tutorial Web App to see how both platform authenticators like Fingerprint and external tokens like security keys can be used to bolster or replace password login for a web app. Use the Nok Nok Passport App on a mobile device to see passwordless out-of-band authentication to a web app from a mobile device using QR codes or push notifications.
Test using a browser: Test your installation using a desktop browser that supports FIDO2/Web Authentication with Windows Hello or TouchID or external tokens such as security keys.
Design the interfaces: Before beginning integration, you need to design the user interface for triggering and confirming FIDO operations.
Integrate with your application: Now you are ready to begin integration using the App SDK API.
See the Getting Started Guide for more details.