Skip to main content

Secure and Inclusive: WebAuthn for (Multi-Factor) Authentication

K.3.201 | Day 2 | 10:30 - 10:55 | Speakers: Storm Heg

Secure and Inclusive: WebAuthn for (Multi-Factor) Authentication
A picture of a devroom at FOSDEM 2024
Open in browser
Get involved in the conversation!Join the chat

Notes

Abstract

Many websites and services require users to authenticate themselves. Passwords are the well-known way to do this, but they don't provide great security anymore on their own. That's why many websites and services are moving to require Multi-Factor Authentication (MFA), using phone apps and SMS messages and email links.

These methods aren't always very user friendly, especially to people with disabilities.

WebAuthn is a new standard that allows websites to use your user's device to authenticate them - more commonly known as Passkeys. It's more secure than passwords, and more user friendly than most MFA.

Let's discuss how WebAuthn works and how you can integrate it into your website or service.

Speakers

Storm Heg

Notice: The placeholder video image is licensed under CC BY-SA 4.0. The original image can be found hereChanges made to the image are: Cropped the image to a new ratio, part of the image was cut off.