Web Authentication


Web Authentication should use WebAuthN.

Historic Web Authentication #

Web Authentication is about Authentication over:

Web Authentication methods SHOULD be performing Delegation and SHOULD NOT using Impersonation.

Web Authentication may be implemented using WEB Access Management technologies.

Web Authentication is often performed using LDAP Authentication.

Do Not Do Web Authentication#

Well, do not do it yourself. Use OpenID Connect or User-Managed Access.

If you must, then use only Known widely implemented APIs or SDKs for all Encryption and Hashing.

Best Practices Password#

Be sure to use Best Practices Password

