Re: [webauthn] undefined terms and terms we really ought to define (#462)

Ticked items:

- external authenticator (to be defined in conjunction with roaming authnr)
- first factor - as in "first-factor authenticator" aka one that is actually multi-factor because it is user verification-capable (1st factor, something you are), and wields the private key (2nd factor, a secret you possess).
- scope, as in:
  - Public key credential's scope
  - strong, attested, scoped, public key-based credentials


-- 
GitHub Notification of comment by emlun
Please view or discuss this issue at https://github.com/w3c/webauthn/issues/462#issuecomment-442084788 using your GitHub account

Received on Tuesday, 27 November 2018 14:48:55 UTC