Chip Authentication Program: Difference between revisions

Content deleted Content added
Tags: Mobile edit Mobile app edit
Line 3:
 
==Operating principle==
The CAP specification supports several authentication methods. The user first inserts their smartcard into the CAP reader and enables it by entering the PIN. A button is then pressed to select the transaction type. Most readers have 2two or 3three transaction types available to the user under a variety of names. Some known implementations are:
;Code/identify: Without requiring any further input, the CAP reader interacts with the smartcard to produce a decimal [[one-time password]], which can be used, for example, to log into a banking website.
;Response: This mode implements [[challenge-response authentication]], where the bank's website asks the customer to enter a "challenge" number into the CAP reader, and then copy the "response" number displayed by the CAP reader into the web site.