Meet passkeys involve a two-step process: key agreement and FIDO CTAP operations. Let's break down the process and address your questions. Key agreement: This step uses Bluetooth Low Energy (BLE) to establish a shared secret between the two devices (phone and authenticator). During this step, the devices perform a secure key exchange, allowing them to derive a shared secret that will be used for encrypted communication. FIDO CTAP operations: After the key agreement is completed, the two devices connect to a relay server, which acts as a bridge for their communication. At this point, the FIDO Client-to-Authenticator Protocol (CTAP) comes into play. CTAP defines how the client and authenticator communicate to perform authentication operations like creating and using credentials. CTAP supports multiple transports for communication, such as USB, NFC, and BLE. However, since you mentioned that the devices connect to a relay server, it is likely that the CTAP communication is using Transmission Control Pro
Topic:
Privacy & Security
SubTopic:
General
Tags: