ODR kommer att vara otillgängligt pga systemunderhåll onsdag 25 februari, 13:00 -15:00 (ca). Var vänlig och logga ut i god tid. // ODR will be unavailable due to system maintenance, Wednesday February 25, 13:00 - 15:00. Please log out in due time.
 

Passwordless Authentication System Using TKey

Publicerad

Typ

Examensarbete på kandidatnivå
Bachelor Thesis

Program

Modellbyggare

Tidskriftstitel

ISSN

Volymtitel

Utgivare

Sammanfattning

Threats targeting authentication systems are becoming more widespread in the current digital landscape, and passwords are challenged in their role as the dominant authentication method due to poor user habits and cognitive limitations. This thesis describes the design and implementation of a passwordless authentication system developed in Python and Go for a simple web application and proxy server. A two-factor authentication system was implemented utilizing a TKey (Chalmers version) from Tillitis AB with Ed25519 signing, as well as Time-based One-Time Password (TOTP) functionality. Additionally, a recovery mechanism was implemented that utilizes mnemonic phrases to handle the loss of a TKey. The project explores the possibilities of passwordless authentication using a TKey, and in the broader sense hardware-based authentication. It demonstrates that hardware-based authentication schemes relying on cryptographic signatures are effective candidates for tomorrow’s authentication systems.

Beskrivning

Ämne/nyckelord

Cybersecurity, Cryptography, Authentication, Hardware-based authentication

Citation

Arkitekt (konstruktör)

Geografisk plats

Byggnad (typ)

Byggår

Modelltyp

Skala

Teknik / material

Index

item.page.endorsement

item.page.review

item.page.supplemented

item.page.referenced