FIDO technology makes it easy for users to access their applications and authenticate their identities. However, FIDO2's decentralized approach introduces challenges to enterprise organizations that want to maintain centralized control of which users and tokens are used to access corporate information.
With Pointsharp, your organization sets policies regarding which type of FIDO tokens are allowed to be used and whether they should be combined with biometrics or a PIN code. All tokens are registered and connected to specific users to enable easy lifecycle management. All types of FIDO tokens are supported, for example, Yubico Yubikeys, Feitian Security Keys, Windows Hello, Mobile Devices, and more.
Save time by letting your users enroll their own FIDO2 tokens through a self-service portal. This process is done securely by proving the user's identity with multi-factor authentication. This is especially valuable for large organizations, as enrolling a large number of tokens will not be a burden on the IT department.
With a valid registered FIDO token, a user can log in to a customizable application portal that dynamically adapts and only shows the applications the specific user has access to. With only one click, the user then gets access to their application without the need for further sign-in procedures for a great user experience.
Some FIDO token models, like Yubikeys, can be configured to also provide certificate-based multi-factor authentication for login to devices running Windows or Mac OS and supported thin clients.