Issues
- 1
"Something you have" proved by "Something you know"
#1990 opened by maurocasonato - 1
Appendix A.2 - rationale for limiting password length
#2008 opened by si-chan - 0
Clarify roles for supervised (virtual) remote proofing
#1931 opened by jimfenton - 1
- 0
ID proofing acquaintances
#1927 opened by jimfenton - 0
Profile of subscriber transactions
#1926 opened by jimfenton - 2
Require HttpOnly browser cookies
#1937 opened by jimfenton - 0
Clarify reauthentication requirements at AAL2
#1933 opened by jimfenton - 1
- 1
Identity evidence validators
#1943 opened by jimfenton - 0
Wrong indent level in bulleted/numbered list
#1955 opened by jimfenton - 0
- 2
Miscellaneous typos
#1957 opened by jimfenton - 0
IAL2 Evidence Validation and Identity Verification
#1958 opened by regenscheid - 1
Mislabled Diagram
#1960 opened by jricher - 0
Clarify reuse of OTP authenticator outputs
#1961 opened by jimfenton - 0
Zeroizing vs. reuse of activation factors
#1962 opened by jimfenton - 1
Suggested definition of identity
#1967 opened by jimfenton - 0
Table 4-1 AAL2 Replay Resistance requirement incorrect
#1968 opened by jimfenton - 0
Error in OOB authenticator descriptive text
#1969 opened by jimfenton - 1
FIPS 140 requirements for authenticators at AAL2
#1970 opened by jimfenton - 0
Broken link to ESIG document
#1979 opened by jimfenton - 0
Not all PII is protected
#1981 opened by JasmesGraham - 0
Uniquely addressable requirement for OOB authenticators
#1982 opened by jimfenton - 0
- 1
Labeling of "multi-factor" is confusing
#1984 opened by utsecnet - 0
- 0
Persistent session secrets, SSO, and iOS
#2001 opened by whitehatguy - 0
Wording error in intro to -63A Table 4-1
#1951 opened by jimfenton - 1
- 1
- 0
Unclear presentation language
#1959 opened by jricher - 2
Out-of-Band Authenticators: Required Entropy For Authentication Secrets
#2000 opened by mitchellhenke - 3
Future - Advice on reset link entropy
#1998 opened by Firstyear - 1
- 1
- 2
Two-Factor device unlock clarification
#1987 opened by DamianM1 - 0
Use of "salt" for secret rehashing key is confusing
#1972 opened by jimfenton - 2
- 1
SP800-63a 4.4.1.6 e sequence repeated
#1965 opened by birdybro - 2
Bad link for blacklisting
#1942 opened by glasses4days - 0
Writing in 2nd person
#1925 opened by jimfenton - 0
Extra definition of 'Protected Session'
#1930 opened by jimfenton - 1
Missing words in -63C Section 6 introduction
#1921 opened by jimfenton - 1
Clarify use of "authorization credential"
#1922 opened by jimfenton - 1
Grammatical error in NIST SP 800-63B section 5.2.3
#1953 opened by ksr42 - 0
kljldjfasdf
#1938 opened by stephaniefaith - 1
Incorrect salt length on website?
#1923 opened by pranav-bagree - 1
Use of Federation to describe a three way protocol
#1920 opened by jimfenton - 1
Move attribute references sentence
#1924 opened by jimfenton