Authenticator may refer to NIST.SP.800-63B or to the FIDO Authenticator

To US this is all just very confusing as an Authenticator is nothing different than a claim that is typically tied to a specific Authentication Method during the Credential Enrollment process by the Identity Proofing process.


Authenticator is defined in NIST.SP.800-63B as something that the claimant possesses and controls (typically a cryptographic module or password) that is used to authenticate the claimant’s Digital Identity.

In previous editions of NIST.SP.800-63 versions, this was referred to as a token.

