Files

888 B

Standards - FIDO2 Passwordless Authentication

FIDO Standards

NIST Standards

  • NIST SP 800-63B: AAL3 - Hardware-based phishing-resistant authenticator
  • NIST SP 800-53 Rev 5: IA-2(6), IA-2(8) Replay-resistant authentication
  • NIST SP 800-157: PIV Derived Credentials

CISA Guidance

  • Phishing-Resistant MFA: Required for federal agencies under EO 14028
  • OMB M-22-09: Federal zero trust strategy requiring phishing-resistant MFA

Vendor Resources