Re: [webauthn] Relying Party Session

In fact, WebAuthn doesn't even assume that the RP has a concept of sessions. It's perfectly valid (although probably a terrible user experience) to perform a new authentication ceremony for each interaction with the RP.

-- 
GitHub Notification of comment by emlun
Please view or discuss this issue at https://github.com/w3c/webauthn/issues/1111#issuecomment-437845753 using your GitHub account

Received on Monday, 12 November 2018 11:24:56 UTC