Re: Smart Card and WebCrypto (Re: On the future of <keygen> and application/x-x509-*-cert MIME handling)
Tim Guan-tin Chien <[email protected]>
| Newsgroups | gmane.comp.mozilla.security,gmane.comp.mozilla.devel.platform |
|---|---|
| Message-ID | <CALXJ5srN2nAakjL1H++orLMT7t4oBfntsyX9iYOrg84c7adG5A@mail.gmail.com> |
On Sun, Aug 30, 2015 at 5:37 PM, Tim Guan-tin Chien <[email protected]> wrote: >> It seems a potential future for that which works within the web's >> security model is FIDO, see >> >> https://fidoalliance.org/ >> https://support.google.com/accounts/topic/6103521 > > Indeed, banks in Taiwan are slowly rolling out OTA based > authentications primary mobile app banking users, despite 100% of the > ATM cards are already smart cards (required by legal mandate against > forgery since 2006) and you can already access back accounts from > "WebATM" websites & smart card readers with -- again, ActiveX or Java > plug-in. Sorry, this should be s/OTA/OTP/ -- "one time password" devices and authentications. (too much FxOS for me...)