Re: [webauthn] residentKey: "preferred-if-unlimited"? (#1822)

My proposal several months ago was to have platforms map prefered to false for security keys with less than some number of available RK slots.  

For older keys without the ctap2.1  member the platform would always map prefered to false.  

That would let RP always ask for preferred and more or less the correct thing would happen.  

People didn't like that idea at the time.   

RP like Microsoft that only support the discoverable flow would ask for required and the correct thing would happen for them.  

How many RP are going to support alternatives to the autofill UI.   

If RP only support that then we are back to RP setting required anyway.  

It sounds like the preferred option is mostly useful to RP that  have some sort of username first flow that is not using autofill.



-- 
GitHub Notification of comment by ve7jtb
Please view or discuss this issue at https://github.com/w3c/webauthn/issues/1822#issuecomment-1370388609 using your GitHub account


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Wednesday, 4 January 2023 01:22:56 UTC