Digipass S3 is now DigipassONE. This section is currently being updated to reflect our new name.

Integration with a web app

Prev Next

Introduction

When you integrate Digipass S3 Software with your web app, you can replace passwords entirely or you can decide to bolster existing password logins with external FIDO tokens. To use WebAuthn, your web application integrates with the Digipass S3 API Server using the Web App SDK. You can use either or both of the approaches described below to provide strong authentication for your web app.

Approaches

Using FIDO2 via the WebAuthn API

With the adoption of the W3C WebAuthn API by most popular web browsers, web applications can use both bound-to-device authenticators and external authenticators. Examples of built-in device authenticators include those based on fingerprint or face recognition biometrics. External authenticators like security keys, connect to a device through USB, NFC, Bluetooth, or similar method.

Using a Mobile App

Mobile apps can perform strong authentication for your web app running on a laptop or another such device that lacks built-in authenticators. This is referred to as out-of-band (OOB) authentication. On the client-side, using OOB to replace passwords with multi-factor authentication requires using the production-ready OneSpan Passport app, or developing your own mobile app.