FireID Mobile Login
With the rapid growth of mobile portals security concerns around their use have escalated rapidly. Some mobile portals, like Mobile Banking, provide critical high-value services that are actively targeted by hackers.
FireID Mobile Login provides seamless two-factor authentication for mobile portals, increasing security while simplifying the user experience. FireID Mobile Login launches a secure browser session, secured transparently with OTP authentication. This session navigates directly to the mobile portal, removing the need for the user to type in a login name or OTP.
How does FireID Mobile Web Authentication work?
- User clicks on Mobile Web token in the FireID application. Username and OTP are embedded in the URL, and application opens the URL using the https protocol.
- When the web server receives this URL, the OTP is stripped from the URL and sent to the FireID Authentication Server (or a 3rd party Authentication Server) for authentication. If the OTP part of the URL is missing, the web server rejects the authentication request and the login fails.
- Once the FireID Authentication Server has validated the OTP, the web server then opens the webpage requested by the user’s phone web browser. The user may then be asked for another password or PIN to login to the website.