Safari on OSX - Webauthn (FIDO2) not complete

Latest version of Safari, v13.x, support Webauthn (FIDO2) but the implementation is not complete.

It looks like it does not support the CTAP2 protocol if "userVerificarion = Required" is set. This would require that the user input a PIN before using (touching) the security key.


Example can be found at https://webauthn.me/debugger. Register your FIDO2 security key and play with the different parameters. Use the debugger and change "userVerification from "preferred" to "required" and it will fail.


This works in Microsoft Edge for OSX and Chrome for OSX.


Does anyone know when or if Apple will correct this? I am using latest version of OSX (Catalina) with all updates. The Safari Preview version, latest one, has the same error.


MacBook Pro 15", macOS 10.15

Posted on Jan 28, 2020 4:09 AM

Reply

Similar questions

1 reply

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

Safari on OSX - Webauthn (FIDO2) not complete

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.