THALES GROUP LIMITED DISTRIBUTION to email recipients
Hi Anjul,
Passkeys can be used in conjunction with SSO (SAML, OpenID, etc), meaning you can already use today “login with Gmail/whatever” and use your passkey registered with Google.
Public keys are different between service providers to enforce privacy by default. Two service providers cannot compare their user database and use the public key of the passkeys to identify users they have in common.
Best regards,
|
|
|
|
|
Thomas Duboucher (he/him) |
|
Embedded Security Specialist |
|
Digital Identity and Security Thales |
|
|
From: fido...@fidoalliance.org <fido...@fidoalliance.org>
On Behalf Of Anjul Kc
Sent: samedi 22 novembre 2025 15:48
To: FIDO Dev (fido-dev) <fido...@fidoalliance.org>
Subject: [FIDO-DEV] question
Greetings everyone, I am also interested in passwordless authentication but i have one question that making me disturbed.
I am a student passionate about cryptography. About the process of the authentication process do we have passkeys for various of the websites and is there any scheme used for using the same public key for these third party webs which is similar to using gmail
across multiple third party webs and app, So basically can't we just register publickey once to central trusted authority and use the very same publickey for validation. Just like using gmail to sign in!!
--