An implementation of webauthn in OCaml.
Find a file
2021-10-07 08:45:06 +00:00
bin Show device certificate on successful register 2021-10-07 08:45:06 +00:00
cbor works as initial version 2021-09-29 14:34:09 +00:00
flash_message WIP 2021-09-28 11:30:14 +00:00
src Do not require clientExtensions in clientDataJSON 2021-10-06 17:13:41 +02:00
CHANGES.md works as initial version 2021-09-29 14:34:09 +00:00
dune-project WIP 2021-09-28 11:30:14 +00:00
LICENSE.md works as initial version 2021-09-29 14:34:09 +00:00
README.md documentation 2021-10-06 11:57:42 +00:00
webauthn.opam documentation 2021-10-06 11:57:42 +00:00

WebAuthn - authenticating users to services using public key cryptography

WebAuthn is a web standard published by the W3C. Its goal is to standardize an interfacefor authenticating users to web-based applications and services using public key cryptography. Modern web browsers support WebAuthn functionality.

WebAuthn provides two funcitons: register and authenticate. Usually the public and private keypair is stored on an external token (Yuikey etc.) or part of the platform (TPM). After the public key is registered, it can be used to authenticate to the same service.

This module does not preserve a database of registered public keys, their credential ID, usernames and pending challenges - instead this data must be stored by a client of this API in a database or other persistent storage.

WebAuthn specification at W3C

A basic demonstration server is provided (bin/webauthn_demo), running at webauthn-demo.robur.coop.

Documentation

API documentation is available online.

Installation

opam install webauthn will install this library.