{"id":3800,"date":"2024-11-22T06:58:07","date_gmt":"2024-11-22T05:58:07","guid":{"rendered":"https:\/\/rock-the-prototype.com\/%category%\/authentication\/"},"modified":"2024-11-22T08:27:45","modified_gmt":"2024-11-22T07:27:45","slug":"authentication","status":"publish","type":"encyclopedia","link":"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/","title":{"rendered":"Authentication"},"content":{"rendered":"<p><\/p><div class=\"fusion-fullwidth fullwidth-box fusion-builder-row-1 fusion-flex-container nonhundred-percent-fullwidth non-hundred-percent-height-scrolling\" style=\"--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-flex-wrap:wrap;\"><div class=\"fusion-builder-row fusion-row fusion-flex-align-items-flex-start fusion-flex-content-wrap\" style=\"max-width:1144px;margin-left: calc(-4% \/ 2 );margin-right: calc(-4% \/ 2 );\"><div class=\"fusion-layout-column fusion_builder_column fusion-builder-column-0 fusion_builder_column_1_1 1_1 fusion-flex-column\" style=\"--awb-bg-size:cover;--awb-width-large:100%;--awb-margin-top-large:0px;--awb-spacing-right-large:1.92%;--awb-margin-bottom-large:0px;--awb-spacing-left-large:1.92%;--awb-width-medium:100%;--awb-spacing-right-medium:1.92%;--awb-spacing-left-medium:1.92%;--awb-width-small:100%;--awb-spacing-right-small:1.92%;--awb-spacing-left-small:1.92%;\"><div class=\"fusion-column-wrapper fusion-flex-justify-content-flex-start fusion-content-layout-column\"><div class=\"fusion-text fusion-text-1\"><div id=\"ez-toc-container\" class=\"ez-toc-v2_0_86 counter-hierarchy ez-toc-counter ez-toc-custom ez-toc-container-direction\">\n<div class=\"ez-toc-title-container\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">Inhaltsverzeichnis<\/p>\n<span class=\"ez-toc-title-toggle\"><a href=\"#\" class=\"ez-toc-pull-right ez-toc-btn ez-toc-btn-xs ez-toc-btn-default ez-toc-toggle\" aria-label=\"Toggle Table of Content\"><span class=\"ez-toc-js-icon-con\"><span class=\"\"><span class=\"eztoc-hide\" style=\"display:none;\">Toggle<\/span><span class=\"ez-toc-icon-toggle-span\"><svg style=\"fill: #ffffff;color:#ffffff\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" class=\"list-377408\" width=\"20px\" height=\"20px\" viewBox=\"0 0 24 24\" fill=\"none\"><path d=\"M6 6H4v2h2V6zm14 0H8v2h12V6zM4 11h2v2H4v-2zm16 0H8v2h12v-2zM4 16h2v2H4v-2zm16 0H8v2h12v-2z\" fill=\"currentColor\"><\/path><\/svg><svg style=\"fill: #ffffff;color:#ffffff\" class=\"arrow-unsorted-368013\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"10px\" height=\"10px\" viewBox=\"0 0 24 24\" version=\"1.2\" baseProfile=\"tiny\"><path d=\"M18.2 9.3l-6.2-6.3-6.2 6.3c-.2.2-.3.4-.3.7s.1.5.3.7c.2.2.4.3.7.3h11c.3 0 .5-.1.7-.3.2-.2.3-.5.3-.7s-.1-.5-.3-.7zM5.8 14.7l6.2 6.3 6.2-6.3c.2-.2.3-.5.3-.7s-.1-.5-.3-.7c-.2-.2-.4-.3-.7-.3h-11c-.3 0-.5.1-.7.3-.2.2-.3.5-.3.7s.1.5.3.7z\"\/><\/svg><\/span><\/span><\/span><\/a><\/span><\/div>\n<nav><ul class='ez-toc-list ez-toc-list-level-1 ' ><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#What_is_authentication\" >What is authentication?<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Authentication\" >Authentication<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Authentication-2\" >Authentication<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-4\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Authorization\" >Authorization<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-5\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Methods_for_authenticating_digital_identities\" >Methods for authenticating digital identities<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-6\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Authentication_through_knowledge\" >Authentication through knowledge<\/a><ul class='ez-toc-list-level-5' ><li class='ez-toc-heading-level-5'><ul class='ez-toc-list-level-5' ><li class='ez-toc-heading-level-5'><a class=\"ez-toc-link ez-toc-heading-7\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Text_secrets\" >Text secrets<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-5'><a class=\"ez-toc-link ez-toc-heading-8\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Graphic_secrets\" >Graphic secrets<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-5'><a class=\"ez-toc-link ez-toc-heading-9\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Advantages\" >Advantages:<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-5'><a class=\"ez-toc-link ez-toc-heading-10\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Disadvantages_Weaknesses\" >Disadvantages \/ Weaknesses:<\/a><\/li><\/ul><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-11\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Authentication_through_ownership\" >Authentication through ownership<\/a><ul class='ez-toc-list-level-5' ><li class='ez-toc-heading-level-5'><ul class='ez-toc-list-level-5' ><li class='ez-toc-heading-level-5'><a class=\"ez-toc-link ez-toc-heading-12\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Advantages-2\" >Advantages:<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-5'><a class=\"ez-toc-link ez-toc-heading-13\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Disadvantages_Weaknesses-2\" >Disadvantages \/ Weaknesses:<\/a><\/li><\/ul><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-14\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Authentication_through_biometric_feature\" >Authentication through biometric feature<\/a><ul class='ez-toc-list-level-5' ><li class='ez-toc-heading-level-5'><ul class='ez-toc-list-level-5' ><li class='ez-toc-heading-level-5'><a class=\"ez-toc-link ez-toc-heading-15\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Physical_Characteristics\" >Physical Characteristics:<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-5'><a class=\"ez-toc-link ez-toc-heading-16\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Behavior\" >Behavior:<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-5'><a class=\"ez-toc-link ez-toc-heading-17\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Advantages-3\" >Advantages:<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-5'><a class=\"ez-toc-link ez-toc-heading-18\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Disadvantages\" >Disadvantages:<\/a><\/li><\/ul><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-19\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Multi-factor_authentication_MFA\" >Multi-factor authentication (MFA)<\/a><ul class='ez-toc-list-level-5' ><li class='ez-toc-heading-level-5'><ul class='ez-toc-list-level-5' ><li class='ez-toc-heading-level-5'><a class=\"ez-toc-link ez-toc-heading-20\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Physical_Characteristics-2\" >Physical Characteristics:<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-4'><a class=\"ez-toc-link ez-toc-heading-21\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#2-factor_authentication_2FA\" >2-factor authentication (2FA)<\/a><ul class='ez-toc-list-level-5' ><li class='ez-toc-heading-level-5'><a class=\"ez-toc-link ez-toc-heading-22\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#2FA_example\" >2FA example:<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-4'><a class=\"ez-toc-link ez-toc-heading-23\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#TOTP-based_MFA\" >TOTP-based MFA<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-4'><a class=\"ez-toc-link ez-toc-heading-24\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Basic_rules_for_a_secure_TOTP_MFA_implementation\" >Basic rules for a secure TOTP MFA implementation<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-25\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Processes_Login_with_authentication_authorization\" >Processes: Login with authentication + authorization<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-26\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Trust_level_based_processes_Authentication_authorization_based_on_trust_level\" >Trust level based processes: Authentication + authorization based on trust level<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-27\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#History_of_authentication\" >History of authentication:<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-28\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Counter_IT_security_risks_effectively\" >Counter IT security risks effectively:<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-29\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Why_does_Zero_Trust_play_a_crucial_role_in_IT_security\" >Why does Zero Trust play a crucial role in IT security?<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-30\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Secure_authentication_%E2%80%93_challenges_and_best_practices\" >Secure authentication &#8211; challenges and best practices<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-31\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Overview_of_key_authentication_technologies\" >Overview of key authentication technologies<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-32\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Best_practices_for_secure_authentication\" >Best practices for secure authentication<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-33\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Recommendation_from_the_Rock_the_Prototype_Podcast_Digital_identities_and_identity_access_management\" >Recommendation from the Rock the Prototype Podcast: Digital identities and identity access management<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-34\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#Why_this_podcast_episode_is_relevant_for_you\" >Why this podcast episode is relevant for you:<\/a><\/li><\/ul><\/li><\/ul><\/nav><\/div>\n<h2><span class=\"ez-toc-section\" id=\"What_is_authentication\"><\/span>What is authentication?<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p><strong><a href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/\" target=\"_blank\" title=\"Authentication is a multi-step process in identity management. Authentication in an IT system implements IT security functions that are realized by various security services and components.\" class=\"encyclopedia\">Authentication<\/a><\/strong> is a multi-stage <strong>process in identity management<\/strong>. <strong>Authentication<\/strong> in an IT system implements IT security functions that are realized by various security services and components.<\/p>\n<p><\/p><div id=\"attachment_3451\" style=\"width: 1292px\" class=\"wp-caption alignnone\"><img decoding=\"async\" aria-describedby=\"caption-attachment-3451\" class=\"wp-image-2396 size-full\" src=\"https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2023\/01\/Authentifizierung.jpg\" alt=\"What is authentication? - How do the Auth processes of authentication, authentication and authorization differ?\" width=\"1282\" height=\"564\" srcset=\"https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2023\/01\/Authentifizierung-200x88.jpg 200w, https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2023\/01\/Authentifizierung-300x132.jpg 300w, https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2023\/01\/Authentifizierung-400x176.jpg 400w, https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2023\/01\/Authentifizierung-600x264.jpg 600w, https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2023\/01\/Authentifizierung-768x338.jpg 768w, https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2023\/01\/Authentifizierung-800x352.jpg 800w, https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2023\/01\/Authentifizierung-1024x450.jpg 1024w, https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2023\/01\/Authentifizierung-1200x528.jpg 1200w, https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2023\/01\/Authentifizierung.jpg 1282w\" sizes=\"(max-width: 1282px) 100vw, 1282px\"><p id=\"caption-attachment-3451\" class=\"wp-caption-text\">What is authentication? &ndash; How do the Auth processes of authentication, authentication and authorization differ?<\/p><\/div>\n\n<p>Within the <a href=\"https:\/\/rock-the-prototype.com\/en\/programming-languages-frameworks\/framework\/\" target=\"_blank\" title=\"A framework is a set of guidelines or rules that provides a structure for the organization and development of code in a particular programming language or platform. The framework serves as a basis or blueprint on which to build when developing software applications.\" class=\"encyclopedia\">framework<\/a> of <strong>authentication processes<\/strong>, a distinction is made between<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Authentication\"><\/span>Authentication<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>A user authenticates himself to an IT system (IT service, server, &hellip;) by providing proof of his identity, the user name.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Authentication-2\"><\/span>Authentication<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>With authentication, the system checks the authenticity of the proof provided in order to verify the identity of a user. Authentication can be performed by a <a href=\"https:\/\/rock-the-prototype.com\/en\/cloud-computing-cloud-technology\/cloud\/\" target=\"_blank\" title=\"What is cloud? Cloud or cloud computing moves data and programs from desktop PCs or servers in a company to remote cloud servers. Cloud storage therefore consists of a standard server network in a cloud data center or distributed across several cloud server locations.\" class=\"encyclopedia\">cloud<\/a> service, a dedicated server or another component connected to the network through which authentication is performed.<\/p>\n<\/div><a class=\"fusion-modal-text-link\" data-toggle=\"modal\" data-target=\".fusion-modal.Zero Trust - Beyond VPN - Why the Virtual Private Network is in the Shadow of Zero Trust \" href=\"#\"><iframe class=\"lazyload\" style=\"border-radius: 12px;\" src=\"data:image\/svg+xml,%3Csvg%20xmlns%3D%27http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%27%20width%3D%27100%27%20height%3D%27352%27%20viewBox%3D%270%200%20100%20352%27%3E%3Crect%20width%3D%27100%27%20height%3D%27352%27%20fill-opacity%3D%220%22%2F%3E%3C%2Fsvg%3E\" data-orig-src=\"https:\/\/open.spotify.com\/embed\/episode\/71PEsChCz0Fgf2x5FvDYjG?utm_source=generator\" width=\"100%\" height=\"352\" frameborder=\"0\" allowfullscreen=\"allowfullscreen\"><\/iframe><\/a>\n<div class=\"fusion-text fusion-text-2\"><h3><span class=\"ez-toc-section\" id=\"Authorization\"><\/span>Authorization<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>If the authenticity of a user&rsquo;s identity could be successfully verified, the IT system (IT service, server, &hellip;) can grant the user defined rights for the IT service\/server.<\/p>\n<h2><span class=\"ez-toc-section\" id=\"Methods_for_authenticating_digital_identities\"><\/span>Methods for authenticating digital identities<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>Basic principle: access is granted after proof.<\/p>\n<div class=\"table-wrap\">\n<table class=\"wrapped confluenceTable tablesorter tablesorter-default stickyTableHeaders\" role=\"grid\">\n<colgroup>\n<col>\n<col><\/colgroup>\n<thead class=\"tableFloatingHeaderOriginal\">\n<tr class=\"tablesorter-headerRow\" role=\"row\">\n<th class=\"confluenceTh tablesorter-header sortableHeader tablesorter-headerUnSorted\" tabindex=\"0\" role=\"columnheader\" scope=\"col\" data-column=\"0\" aria-disabled=\"false\" aria-sort=\"none\" aria-label=\"Methode: No sort applied, activate to apply an ascending sort\">\n<div class=\"tablesorter-header-inner\" style=\"text-align: left;\">Method<\/div>\n<\/th>\n<th class=\"confluenceTh tablesorter-header sortableHeader tablesorter-headerUnSorted\" tabindex=\"0\" role=\"columnheader\" scope=\"col\" data-column=\"1\" aria-disabled=\"false\" aria-sort=\"none\" aria-label=\"Erl&auml;uterung: No sort applied, activate to apply an ascending sort\">\n<div class=\"tablesorter-header-inner\" style=\"text-align: left;\">Explanation<\/div>\n<\/th>\n<\/tr>\n<\/thead>\n<tbody aria-live=\"polite\" aria-relevant=\"all\">\n<tr role=\"row\">\n<td class=\"confluenceTd\"><strong>Authenticate <\/strong><\/td>\n<td class=\"confluenceTd\">Showing the proof to the system<\/td>\n<\/tr>\n<tr role=\"row\">\n<td class=\"confluenceTd\" colspan=\"1\"><strong>Authentication<\/strong><\/td>\n<td class=\"confluenceTd\" colspan=\"1\">System checks the proof<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/div>\n<p>Most common <strong>authentication method<\/strong>: password entry<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Authentication_through_knowledge\"><\/span>Authentication through knowledge<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Authentication using knowledge verifies knowledge of a secret.<\/p>\n<h5><span class=\"ez-toc-section\" id=\"Text_secrets\"><\/span><em>Text secrets<\/em><span class=\"ez-toc-section-end\"><\/span><\/h5>\n<ul>\n<li>Password\n<ul>\n<li>PIN, TAN<\/li>\n<li>&hellip;<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<h5><span class=\"ez-toc-section\" id=\"Graphic_secrets\"><\/span><em>Graphic secrets<\/em><span class=\"ez-toc-section-end\"><\/span><\/h5>\n<ul>\n<li>QR code (= indirect text)<\/li>\n<li>Select pictures on which friends can be recognized<\/li>\n<li style=\"list-style-type: none;\">\n<\/ul>\n<h5><span class=\"ez-toc-section\" id=\"Advantages\"><\/span>Advantages:<span class=\"ez-toc-section-end\"><\/span><\/h5>\n<ul>\n<li>established =&gt; everyone knows about the method, easy to use<\/li>\n<li>Secret can be changed at any time<\/li>\n<li>no special hardware necessary<\/li>\n<li style=\"list-style-type: none;\">\n<\/ul>\n<h5><span class=\"ez-toc-section\" id=\"Disadvantages_Weaknesses\"><\/span>Disadvantages \/ Weaknesses:<span class=\"ez-toc-section-end\"><\/span><\/h5>\n<ul>\n<li>Security depending on complexity\n<ul>\n<li style=\"list-style-type: none;\">\n<ul>\n<li>the more complex, the safer<\/li>\n<li>the more complex, the more difficult to remember<\/li>\n<\/ul>\n<\/li>\n<li>too many secrets are difficult to remember<\/li>\n<li>only safekeeping of the secret provides protectio<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<h3><span class=\"ez-toc-section\" id=\"Authentication_through_ownership\"><\/span>Authentication through ownership<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Authentication using possession involves checking the presence of a specific object.<\/p>\n<ul>\n<li>ID card<\/li>\n<li>USB token<\/li>\n<li style=\"list-style-type: none;\">\n<\/ul>\n<h5><span class=\"ez-toc-section\" id=\"Advantages-2\"><\/span>Advantages:<span class=\"ez-toc-section-end\"><\/span><\/h5>\n<ul>\n<li>no special knowledge required<\/li>\n<\/ul>\n<h5><span class=\"ez-toc-section\" id=\"Disadvantages_Weaknesses-2\"><\/span>Disadvantages \/ Weaknesses:<span class=\"ez-toc-section-end\"><\/span><\/h5>\n<ul>\n<li>Object can be lost<\/li>\n<li>Theft possible and enables access to digital identity<\/li>\n<li>mostly additional hardware required, e.g. card reader<\/li>\n<\/ul>\n<p>However, it is also important to note that <strong>haptic cards<\/strong> and the associated readers will not necessarily be replaced entirely in the course of digitization. Rather, <strong>virtual authentication solutions<\/strong> are intended to serve as a practical supplement to facilitate globally mobile working. In addition, virtual card images can serve as a backup should haptic cards be lost or damaged.<\/p>\n<h3 id=\"id-8.3Identit&auml;tsmanagement-8.3.1.3AuthentisierungdurchbiometrischeMerkmale\"><span class=\"ez-toc-section\" id=\"Authentication_through_biometric_feature\"><\/span>Authentication through biometric feature<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Authentication by biometric features involves checking physical characteristics of a person.<\/p>\n<h5><span class=\"ez-toc-section\" id=\"Physical_Characteristics\"><\/span><em>Physical Characteristics:<\/em><span class=\"ez-toc-section-end\"><\/span><\/h5>\n<ul>\n<li>Fingerprint<\/li>\n<li>Face shape<\/li>\n<li>Iris<\/li>\n<li>&hellip;<\/li>\n<li style=\"list-style-type: none;\">\n<\/ul>\n<h5><span class=\"ez-toc-section\" id=\"Behavior\"><\/span><em>Behavior:<\/em><span class=\"ez-toc-section-end\"><\/span><\/h5>\n<ul>\n<li>Movement patterns<\/li>\n<li>&hellip;<\/li>\n<li style=\"list-style-type: none;\">\n<\/ul>\n<h5><span class=\"ez-toc-section\" id=\"Advantages-3\"><\/span>Advantages:<span class=\"ez-toc-section-end\"><\/span><\/h5>\n<ul>\n<li>unique per person<\/li>\n<\/ul>\n<h5><span class=\"ez-toc-section\" id=\"Disadvantages\"><\/span>Disadvantages:<span class=\"ez-toc-section-end\"><\/span><\/h5>\n<ul>\n<li>Special hardware required for capture<\/li>\n<li>biometric information is SENSIBLE information<\/li>\n<li>Testing not possible exactly, but only on the basis of probabilities<\/li>\n<li>enables counterfeiting, this must only be &ldquo;good enough<\/li>\n<li>Once a feature is compromised, it is difficult to change the feature<\/li>\n<li style=\"list-style-type: none;\">\n<\/ul>\n<h3><span class=\"ez-toc-section\" id=\"Multi-factor_authentication_MFA\"><\/span>Multi-factor authentication (MFA)<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>In multi-factor authentication, different <em>authentication methods<\/em> OR <em>authentication factors<\/em> are checked simultaneously, i.e. simultaneously during the execution of an identification process.<\/p>\n<h5><span class=\"ez-toc-section\" id=\"Physical_Characteristics-2\"><\/span>Physical Characteristics:<span class=\"ez-toc-section-end\"><\/span><\/h5>\n<ul>\n<li>Fingerprint<\/li>\n<li>Face shape<\/li>\n<li style=\"list-style-type: none;\">\n<\/ul>\n<h4><span class=\"ez-toc-section\" id=\"2-factor_authentication_2FA\"><\/span>2-factor authentication (2FA)<span class=\"ez-toc-section-end\"><\/span><\/h4>\n<p>In 2-factor authentication, TWO <em>authentication methods<\/em> OR <em>authentication factors<\/em> are checked simultaneously, i.e. at the same time during the execution of an Ident operation.<\/p>\n<h5><span class=\"ez-toc-section\" id=\"2FA_example\"><\/span>2FA example:<span class=\"ez-toc-section-end\"><\/span><\/h5>\n<p>1st factor: Knowledge: Password<br>\n2nd factor: Possession: smartphone, through which second code is provided.<\/p>\n<h4><span class=\"ez-toc-section\" id=\"TOTP-based_MFA\"><\/span>TOTP-based MFA<span class=\"ez-toc-section-end\"><\/span><\/h4>\n<p>Multi-factor authentication with a time-based one-time password (TOTP) is an MFA variant that realizes an improved level of protection if the time period of the one-time password is sufficiently short (typically around 60sec or even less than 30sec) and can be combined with an additional Auth-App such as the <strong><a class=\"external-link\" href=\"https:\/\/apps.apple.com\/de\/app\/google-authenticator\/id388497605\" rel=\"nofollow\">Google Authenticator app<\/a><\/strong> can be realized.<\/p>\n<p>The TOTP MFA procedure was published back in 2011 by the <strong><a class=\"external-link\" href=\"https:\/\/www.ietf.org\/\" rel=\"nofollow\">Internet Engineering Task Force<\/a><\/strong> (<strong>IETF<\/strong>) as <a class=\"external-link\" href=\"https:\/\/tools.ietf.org\/html\/rfc6238\" rel=\"nofollow\">RFC 6238<\/a>. The TOTP algorithm is a hash function in which a secret password is hashed together with the current time.<\/p>\n<p>This HMAC-based algorithm generates a <strong>one-time passwor<\/strong>d and is specified according to <a class=\"external-link\" href=\"https:\/\/tools.ietf.org\/html\/rfc4226\" rel=\"nofollow\">RFC 4226<\/a>; the RFC defines exactly this standard according to which the hash values are formed. The procedure can be implemented in such a way that slight deviations of the time between client and server are accepted.<\/p>\n<h4><span class=\"ez-toc-section\" id=\"Basic_rules_for_a_secure_TOTP_MFA_implementation\"><\/span>Basic rules for a secure TOTP MFA implementation<span class=\"ez-toc-section-end\"><\/span><\/h4>\n<p>The following basic rules apply for a secure TOTP MFA implementation:<\/p>\n<ul>\n<li><strong>Quality of random numbers<\/strong>: For a cryptographically secure password, actually randomly chosen elements for the one-time password are also important<\/li>\n<li><strong>Secret Key for each user<\/strong>: Each user needs his or her personal, secret access key (Secret Key)<\/li>\n<li><strong>Brute force protection<\/strong>: A 6 or even 8 digit one-time password is short. Additionally, it MUST be ensured that the user has only a few attempts per interval to authenticate. Otherwise, a brute force attack by a potential attacker will succeed within a very short time.<\/li>\n<li><strong>Protection against replay attacks<\/strong>: An accepted key must not be accepted a second time within the same time interval.<\/li>\n<li><strong>HTTPS\/TLS encryption<\/strong>: The encryption service SHALL be protected via HTTPS protocol and TLS certificate, so that the key transport is protected.<\/li>\n<li><strong>Protection of QR codes<\/strong>: QR codes used in the MFA process MUST be generated in a protected environment. No Secret Key may be distributed in an uncontrolled manner.<\/li>\n<li style=\"list-style-type: none;\">\n<\/ul>\n<h3><span class=\"ez-toc-section\" id=\"Processes_Login_with_authentication_authorization\"><\/span>Processes: Login with authentication + authorization<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<div class=\"table-wrap\">\n<table class=\"wrapped confluenceTable tablesorter tablesorter-default stickyTableHeaders\" role=\"grid\">\n<colgroup>\n<col>\n<col><\/colgroup>\n<thead class=\"tableFloatingHeaderOriginal\">\n<tr class=\"tablesorter-headerRow\" role=\"row\">\n<th class=\"confluenceTh tablesorter-header sortableHeader tablesorter-headerUnSorted\" tabindex=\"0\" role=\"columnheader\" scope=\"col\" data-column=\"0\" aria-disabled=\"false\" aria-sort=\"none\" aria-label=\"Funktion: No sort applied, activate to apply an ascending sort\">\n<div class=\"tablesorter-header-inner\" style=\"text-align: left;\"><strong>Function<\/strong><\/div>\n<\/th>\n<th class=\"confluenceTh tablesorter-header sortableHeader tablesorter-headerUnSorted\" tabindex=\"0\" role=\"columnheader\" scope=\"col\" data-column=\"1\" aria-disabled=\"false\" aria-sort=\"none\" aria-label=\"Erl&auml;uterung: No sort applied, activate to apply an ascending sort\">\n<div class=\"tablesorter-header-inner\" style=\"text-align: left;\"><strong>Explanation<\/strong><\/div>\n<\/th>\n<\/tr>\n<\/thead>\n<tbody aria-live=\"polite\" aria-relevant=\"all\">\n<tr role=\"row\">\n<td><strong>Authentication <\/strong><\/td>\n<td>Verification of identity, e.g. via user name and password<\/td>\n<\/tr>\n<tr role=\"row\">\n<td><strong>Login<\/strong><\/td>\n<td>Process for initiating a session of a user; for distributed services, <strong>single sign-on<\/strong> (SSO) is always desirable from the user&rsquo;s perspective because it allows the user to authenticate and authorize conveniently instead of having to log on to each service separately. The general specifications are defined in <a class=\"external-link\" title=\"https:\/\/tools.ietf.org\/html\/rfc6749\" href=\"https:\/\/tools.ietf.org\/html\/rfc6749\" rel=\"nofollow\">RFC 6749<\/a>.<\/td>\n<\/tr>\n<tr role=\"row\">\n<td><strong>Authorization<\/strong><\/td>\n<td>Successful authentication is used to check whether the user has the necessary authorization to use the service(s). Only then will access be allowed.<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/div>\n<h3><span class=\"ez-toc-section\" id=\"Trust_level_based_processes_Authentication_authorization_based_on_trust_level\"><\/span>Trust level based processes: Authentication + authorization based on trust level<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>When establishing identities, it is strongly recommended that entities that want to access digital identities &ndash; similar to the <strong>eIDAS-based technical implementation<\/strong> of the AusweisApp 2 &ndash; verify them beforehand and make this verification transparent for users. For this purpose, different confidence levels are to be used, depending on the type of data to be queried.<\/p>\n<\/div><a class=\"fusion-modal-text-link\" data-toggle=\"modal\" data-target=\".fusion-modal.Episode 5 - Zero Trust - Beyond VPN: Why the Virtual Private Network is in the Shadow of Zero Trust\" href=\"#\"><iframe style=\"width: 100%; max-width: 660px; overflow: hidden; border-radius: 10px;\" src=\"https:\/\/embed.podcasts.apple.com\/us\/podcast\/episode-5-zero-trust-beyond-vpn-why-the-virtual\/id1684835330?i=1000619599387\" height=\"175\" frameborder=\"0\" sandbox=\"allow-forms allow-popups allow-same-origin allow-scripts allow-storage-access-by-user-activation allow-top-navigation-by-user-activation\"><\/iframe><\/a>\n<div class=\"fusion-text fusion-text-3\"><h2><span class=\"ez-toc-section\" id=\"History_of_authentication\"><\/span><strong>History of authentication<\/strong>:<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>The history of authentication goes back a long way, long before digital technologies entered our daily lives. In ancient civilizations, seals and signatures were used as a form of identity confirmation. With the emergence of commercial banks in the Middle Ages, the first rudimentary passwords and pins were developed to allow customers to access their vaults or accounts. In the 20th century, especially with the advent of computers, digital authentication became increasingly relevant. The introduction of usernames and passwords in the 1960s was a significant step, followed by the development of token-based systems and smart cards in the 1980s and 1990s. Biometric authentication, which uses physical or behavioral characteristics such as fingerprints or voice recognition, became increasingly popular in the late 20th and early 21st centuries. Today, in an era of cloud technology and the Internet of Things, authentication is realized through a combination of traditional passwords, biometrics and two-factor authentication methods to ensure security in an increasingly connected world.<\/p>\n<h2><span class=\"ez-toc-section\" id=\"Counter_IT_security_risks_effectively\"><\/span><strong>Counter IT security risks effectively<\/strong>:<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>In today&rsquo;s digitized world, the risks surrounding authentication are diverse and constantly changing. The most common threats include:<\/p>\n<ul>\n<li><strong>Phishing attacks<\/strong>: Attackers try to trick users into entering their login details on fake websites.<\/li>\n<li><strong>Man-in-the-middle attacks<\/strong>: In this type of attack, an intruder interacts between two parties and can steal or manipulate information.<\/li>\n<li><strong>Brute force attacks<\/strong>: This involves systematically trying out all possible password combinations until the attacker gains access.<\/li>\n<li><strong>Password recovery attacks<\/strong>: If password recovery processes are not secure, attackers can use them as a gateway.<\/li>\n<\/ul>\n<p>To counter these and other security threats, organizations are turning to <strong>advanced authentication methods<\/strong> such as <strong>multi-factor authentication<\/strong>, <strong>adaptive authentication<\/strong> and <strong>continuous authentication<\/strong>. In addition, it is crucial to train users in security practices, conduct regular security audits and keep systems constantly updated to minimize potential vulnerabilities.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Why_does_Zero_Trust_play_a_crucial_role_in_IT_security\"><\/span><strong>Why does Zero Trust play a crucial role in IT security?<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>In an era where cyberattacks are becoming increasingly sophisticated and traditional security perimeters are no longer sufficient, the Zero Trust model is coming to the fore. This security concept is based on a simple principle: Trust nothing, verify everything. Instead of focusing on perimeter defense, Zero Trust relies on strict identity verification for anyone attempting to access network resources, regardless of whether the access is from inside or outside the network. Combined with advanced authentication methods, <strong>Zero Trust<\/strong> ensures that only authorized users and devices have access to critical data and applications. This minimizes the risk of data breaches and ensures that resources are secure even in open and decentralized network environments. If you want to take your IT security to the next level, understanding Zero Trust in combination with effective security measures and modern authentication is key. Dive deeper into this topic and find out now how you can optimally protect your digital ecosystem.<\/p>\n<\/div><div class=\"fusion-text fusion-text-4\"><h2>Secure authentication &ndash; challenges and best practices<\/h2>\n<p>Authentication is at the heart of digital security, as it ensures that only authorized persons or devices have access to sensitive data and systems. In a world where digital identities are playing an increasingly important role, strong and reliable authentication processes are essential.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Overview_of_key_authentication_technologies\"><\/span><strong>Overview of key authentication technologies<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p><strong>1. single sign-on (SSO)<\/strong><br>\nSSO systems allow users to gain access to multiple applications or services with a single authentication. This not only improves user-friendliness, but also reduces the attack surface as fewer passwords are used. <strong>2. adaptive authentication<\/strong><br>\nThis technology analyzes contexts such as location, device information and user behavior to assess security risks and automatically adjust the required security level. This creates a balance between convenience and security. <strong>3. passkey-based authentication (WebAuthn)<\/strong><br>\nBy using cryptographic keys that are stored locally on a device, passkey-based authentication makes traditional passwords obsolete. This approach is supported by modern standards such as FIDO2 and offers significant advantages in terms of security and user-friendliness.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Best_practices_for_secure_authentication\"><\/span><strong>Best practices for secure authentication<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h3>\n<ul>\n<li><strong>Improve password management<\/strong><br>\nUse password managers to generate and store complex and unique passwords. Passwords should be checked and changed regularly, especially after security incidents.<\/li>\n<li><strong>Protect sensitive data with encryption<\/strong><br>\nUse Transport Layer Security (TLS) to encrypt data during transmission and secure sensitive data such as passwords in hashed form in the memory.<\/li>\n<li><strong>Regular training<\/strong><br>\nSchool users on potential threats such as phishing and safe behavior when dealing with digital identities.<\/li>\n<\/ul>\n<\/div><a class=\"fusion-modal-text-link\" data-toggle=\"modal\" data-target=\".fusion-modal.Digitale Identit&auml;ten und Identity Access Management - Folge 13 - Rock the Prototype Podcast\" href=\"#\"><iframe class=\"lazyload\" style=\"border-radius: 12px;\" src=\"data:image\/svg+xml,%3Csvg%20xmlns%3D%27http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%27%20width%3D%27100%27%20height%3D%27352%27%20viewBox%3D%270%200%20100%20352%27%3E%3Crect%20width%3D%27100%27%20height%3D%27352%27%20fill-opacity%3D%220%22%2F%3E%3C%2Fsvg%3E\" data-orig-src=\"https:\/\/open.spotify.com\/embed\/episode\/1YSGCDOOCXWpruSO1XLXJG?utm_source=generator\" width=\"100%\" height=\"352\" frameborder=\"0\" allowfullscreen=\"allowfullscreen\"><\/iframe><\/a>\n<div class=\"fusion-text fusion-text-5\"><h2><span class=\"ez-toc-section\" id=\"Recommendation_from_the_Rock_the_Prototype_Podcast_Digital_identities_and_identity_access_management\"><\/span><strong>Recommendation from the Rock the Prototype Podcast: Digital identities and identity access management<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>For further insights into modern security approaches and authentication strategies, we recommend listening to <strong>podcast episode 13: Digital Identities and Identity Access Management<\/strong>. In this episode, we take a deep dive into the world of identity verification and shed light on how single sign-on and adaptive authentication are implemented in modern systems.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Why_this_podcast_episode_is_relevant_for_you\"><\/span><strong>Why this podcast episode is relevant for you:<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h3>\n<ul>\n<li><strong>Understanding of authentication systems:<\/strong> Learn how different authentication methods interlock to strengthen IT security.<\/li>\n<li><strong>Practical insights:<\/strong> Find out how companies overcome challenges such as zero trust and multi-factor authentication.<\/li>\n<li><strong>Strategic application:<\/strong> Get tips on how to optimize authentication processes and adapt them to the needs of your project.<\/li>\n<\/ul>\n<\/div><a class=\"fusion-modal-text-link\" data-toggle=\"modal\" data-target=\".fusion-modal.Apple Podcast - Folge 13 - Digitale Identit&auml;ten und Identity Access Management - Rock the Prototype Podcast\" href=\"#\"><iframe style=\"width: 100%; max-width: 660px; overflow: hidden; border-radius: 10px;\" src=\"https:\/\/embed.podcasts.apple.com\/us\/podcast\/folge-13-digitale-identit%C3%A4ten-und-identity-access-management\/id1684107786?i=1000636867860\" height=\"175\" frameborder=\"0\" sandbox=\"allow-forms allow-popups allow-same-origin allow-scripts allow-storage-access-by-user-activation allow-top-navigation-by-user-activation\"><\/iframe><\/a>\n<div class=\"fusion-text fusion-text-6\"><h3>Rock the Prototype Podcast<\/h3>\n<p>The <strong>Rock the Prototype Podcast<\/strong> and the <strong>Rock the Prototype YouTube channel<\/strong> are the perfect place to go if you want to delve deeper into the world of web development, <a href=\"https:\/\/rock-the-prototype.com\/en\/prototyping-en\/prototyping\/\" target=\"_blank\" title=\"What is prototyping? Prototyping is both a process and a strategy for realizing ideas as quickly as possible.\" class=\"encyclopedia\">prototyping<\/a> and technology.<\/p>\n<p class=\"p1\"><strong>&#127911; Listen on Spotify: &#128073; Spotify Podcast: <a href=\"https:\/\/bit.ly\/41pm8rL\">https:\/\/bit.ly\/41pm8rL<\/a><\/strong><\/p>\n<p class=\"p1\"><strong><span class=\"s1\">&#127822;<\/span> Enjoy on Apple Podcasts: <span class=\"s1\">&#128073;<\/span>&nbsp;<a href=\"https:\/\/bit.ly\/4aiQf8t\">https:\/\/bit.ly\/4aiQf8t<\/a><\/strong><\/p>\n<p>In the podcast, you can expect exciting discussions and valuable insights into current trends, tools and best practices &ndash; ideal for staying on the ball and gaining fresh perspectives for your own projects. On the YouTube channel, you&rsquo;ll find practical tutorials and step-by-step instructions that clearly explain technical concepts and help you get straight into implementation.<\/p>\n<p><strong>Rock the Prototype YouTube Channel<\/strong><\/p>\n<p>&#128640; Rock the Prototype is &#128073; Your format for exciting topics such as software development, prototyping, software architecture, cloud, DevOps &amp; much more.<\/p>\n<p>&#128250; &#128075;&nbsp;<strong><a href=\"https:\/\/www.youtube.com\/@Rock-the-Prototype\" target=\"_blank\" rel=\"noopener\">Rock the Prototype YouTube Channel<\/a>&nbsp;&#128072;&nbsp; &#128064;&nbsp;<\/strong><\/p>\n<p style=\"padding-left: 40px;\">&#9989; Software development &amp; prototyping<\/p>\n<p style=\"padding-left: 40px;\">&#9989; Learning to program<\/p>\n<p style=\"padding-left: 40px;\">&#9989; Understanding software architecture<\/p>\n<p style=\"padding-left: 40px;\">&#9989; Agile teamwork<\/p>\n<p style=\"padding-left: 40px;\">&#9989; Test prototypes together<\/p>\n<p><strong>THINK PROTOTYPING &ndash; PROTOTYPE DESIGN &ndash; PROGRAM &amp; GET STARTED &ndash; JOIN IN NOW!<\/strong><\/p>\n<h4>Why is it worth checking back regularly?<\/h4>\n<p>Both formats complement each other perfectly: in the podcast, you can learn new things in a relaxed way and get inspiring food for thought, while on YouTube you can see what you have learned directly in action and receive valuable tips for practical application.<\/p>\n<p>Whether you&rsquo;re just starting out in software development or are passionate about prototyping, UX design or IT security. We offer you new technology trends that are really relevant &ndash; and with the Rock the Prototype format, you&rsquo;ll always find relevant content to expand your knowledge and take your skills to the next level!<\/p>\n<\/div>\n<\/div><\/div><\/div><\/div><div class=\"fusion-fullwidth fullwidth-box fusion-builder-row-2 fusion-flex-container has-pattern-background has-mask-background nonhundred-percent-fullwidth non-hundred-percent-height-scrolling\" style=\"--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-flex-wrap:wrap;\"><div class=\"fusion-builder-row fusion-row fusion-flex-align-items-flex-start fusion-flex-content-wrap\" style=\"max-width:1144px;margin-left: calc(-4% \/ 2 );margin-right: calc(-4% \/ 2 );\"><div class=\"fusion-layout-column fusion_builder_column fusion-builder-column-1 fusion_builder_column_1_1 1_1 fusion-flex-column\" style=\"--awb-bg-size:cover;--awb-width-large:100%;--awb-margin-top-large:0px;--awb-spacing-right-large:1.92%;--awb-margin-bottom-large:0px;--awb-spacing-left-large:1.92%;--awb-width-medium:100%;--awb-order-medium:0;--awb-spacing-right-medium:1.92%;--awb-spacing-left-medium:1.92%;--awb-width-small:100%;--awb-order-small:0;--awb-spacing-right-small:1.92%;--awb-spacing-left-small:1.92%;\"><div class=\"fusion-column-wrapper fusion-column-has-shadow fusion-flex-justify-content-flex-start fusion-content-layout-column\"><a class=\"fusion-modal-text-link\" data-toggle=\"modal\" data-target=\".fusion-modal.Rock the Prototype - Software development &amp; Prototyping Podcast iTunes\" href=\"#\"><iframe id=\"embedPlayer\" style=\"width: 100%; max-width: 660px; overflow: hidden; border-radius: 10px; transform: translateZ(0px); animation: 2s ease 0s 6 normal none running loading-indicator; background-color: #e4e4e4;\" src=\"https:\/\/embed.podcasts.apple.com\/us\/podcast\/rock-the-prototype-software-development-prototyping\/id1684835330?itsct=podcast_box_player&amp;itscg=30200&amp;ls=1&amp;theme=auto\" height=\"450px\" frameborder=\"0\" sandbox=\"allow-forms allow-popups allow-same-origin allow-scripts allow-top-navigation-by-user-activation\"><\/iframe><\/a><\/div><\/div><\/div><\/div>\n\n","protected":false},"excerpt":{"rendered":"<p>Authentication is a multi-step process in identity management. Authentication in an IT system implements IT security functions that are realized by various security services and components.<\/p>\n","protected":false},"author":1,"featured_media":3465,"template":"","meta":{"_bbp_topic_count":0,"_bbp_reply_count":0,"_bbp_total_topic_count":0,"_bbp_total_reply_count":0,"_bbp_voice_count":0,"_bbp_anonymous_reply_count":0,"_bbp_topic_count_hidden":0,"_bbp_reply_count_hidden":0,"_bbp_forum_subforum_count":0},"categories":[1232],"tags":[1394,1255,1391,1392,1336,1144,1390,1340,1176,1235,1387,1393,1142,1348,1385,1386,1146,1148,1395,1259,1173,1262,1291,1384,1287,1288],"class_list":["post-3800","encyclopedia","type-encyclopedia","status-publish","has-post-thumbnail","hentry","category-it-security","tag-2-factor-authentication","tag-authentication","tag-biometric-features","tag-biometrics","tag-cloud-en","tag-design-pattern-en","tag-digital-identities","tag-digital-identity","tag-frameworks-en","tag-it-security-en","tag-mfa-en","tag-multi-factor-authentication","tag-programming","tag-security-en","tag-security-standard-en","tag-security-standards-en","tag-software-design-en","tag-software-development","tag-totp-based-mfa","tag-usability-en","tag-web-app-en","tag-web-apps-en","tag-webapp-en","tag-webbrowser-en","tag-website-en","tag-websites-en"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.2 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Authentication - Auth processes explained in an easy to understand way!<\/title>\n<meta name=\"description\" content=\"What is authentication? \u2705 How do the Auth processes of authentication, authentication, and authorization differ? \u2705\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Authentication - Auth processes explained in an easy to understand way!\" \/>\n<meta property=\"og:description\" content=\"What is authentication? \u2705 How do the Auth processes of authentication, authentication, and authorization differ? \u2705\" \/>\n<meta property=\"og:url\" content=\"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/\" \/>\n<meta property=\"og:site_name\" content=\"Rock the Prototype - Softwareentwicklung &amp; Prototyping\" \/>\n<meta property=\"article:modified_time\" content=\"2024-11-22T07:27:45+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2023\/01\/Authentifizierung-2.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"615\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"13 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/authentication\\\/\",\"url\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/authentication\\\/\",\"name\":\"Authentication - Auth processes explained in an easy to understand way!\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/authentication\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/authentication\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/rock-the-prototype.com\\\/wp-content\\\/uploads\\\/2023\\\/01\\\/Authentifizierung-2.jpg\",\"datePublished\":\"2024-11-22T05:58:07+00:00\",\"dateModified\":\"2024-11-22T07:27:45+00:00\",\"description\":\"What is authentication? \u2705 How do the Auth processes of authentication, authentication, and authorization differ? \u2705\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/authentication\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/authentication\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/authentication\\\/#primaryimage\",\"url\":\"https:\\\/\\\/rock-the-prototype.com\\\/wp-content\\\/uploads\\\/2023\\\/01\\\/Authentifizierung-2.jpg\",\"contentUrl\":\"https:\\\/\\\/rock-the-prototype.com\\\/wp-content\\\/uploads\\\/2023\\\/01\\\/Authentifizierung-2.jpg\",\"width\":1200,\"height\":615,\"caption\":\"Authentifizierung - Authentication\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/authentication\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Startseite\",\"item\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/rock-the-prototype\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Prototyping Wiki\",\"item\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/wiki\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Authentication\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/\",\"name\":\"Rock the Prototype - Softwareentwicklung &amp; Prototyping\",\"description\":\"Prototyping: Software Prototypen, Software entwickeln &amp; Programmieren im Team\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Authentication - Auth processes explained in an easy to understand way!","description":"What is authentication? \u2705 How do the Auth processes of authentication, authentication, and authorization differ? \u2705","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/","og_locale":"en_US","og_type":"article","og_title":"Authentication - Auth processes explained in an easy to understand way!","og_description":"What is authentication? \u2705 How do the Auth processes of authentication, authentication, and authorization differ? \u2705","og_url":"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/","og_site_name":"Rock the Prototype - Softwareentwicklung &amp; Prototyping","article_modified_time":"2024-11-22T07:27:45+00:00","og_image":[{"width":1200,"height":615,"url":"https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2023\/01\/Authentifizierung-2.jpg","type":"image\/jpeg"}],"twitter_card":"summary_large_image","twitter_misc":{"Est. reading time":"13 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/","url":"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/","name":"Authentication - Auth processes explained in an easy to understand way!","isPartOf":{"@id":"https:\/\/rock-the-prototype.com\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#primaryimage"},"image":{"@id":"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#primaryimage"},"thumbnailUrl":"https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2023\/01\/Authentifizierung-2.jpg","datePublished":"2024-11-22T05:58:07+00:00","dateModified":"2024-11-22T07:27:45+00:00","description":"What is authentication? \u2705 How do the Auth processes of authentication, authentication, and authorization differ? \u2705","breadcrumb":{"@id":"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#primaryimage","url":"https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2023\/01\/Authentifizierung-2.jpg","contentUrl":"https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2023\/01\/Authentifizierung-2.jpg","width":1200,"height":615,"caption":"Authentifizierung - Authentication"},{"@type":"BreadcrumbList","@id":"https:\/\/rock-the-prototype.com\/en\/it-security\/authentication\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Startseite","item":"https:\/\/rock-the-prototype.com\/en\/rock-the-prototype\/"},{"@type":"ListItem","position":2,"name":"Prototyping Wiki","item":"https:\/\/rock-the-prototype.com\/en\/wiki\/"},{"@type":"ListItem","position":3,"name":"Authentication"}]},{"@type":"WebSite","@id":"https:\/\/rock-the-prototype.com\/en\/#website","url":"https:\/\/rock-the-prototype.com\/en\/","name":"Rock the Prototype - Softwareentwicklung &amp; Prototyping","description":"Prototyping: Software Prototypen, Software entwickeln &amp; Programmieren im Team","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/rock-the-prototype.com\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"}]}},"_links":{"self":[{"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/encyclopedia\/3800","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/encyclopedia"}],"about":[{"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/types\/encyclopedia"}],"author":[{"embeddable":true,"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/users\/1"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/media\/3465"}],"wp:attachment":[{"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/media?parent=3800"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/categories?post=3800"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/tags?post=3800"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}