RapidIdentity Product Guides - 2019 Rolling Release

FIDO Configuration

FIDO U2F devices can function in multiple domains, which enables a FIDO U2F devices to work in use cases in which RapidIdentity Federation and Portal are not on the same server.  

FIDO_Configuration_via_Auth.jpg

The FIDO App ID Host is the fully qualified domain name of RapidIdentity Federation. For use cases in which RapidIdentity Federation and Portal are enabled in the same server, the FQDN is that of RapidIdentity. Uses cases in which RapidIdentity Federation and Portal are enabled in different servers require the FIDO App ID Host to be the Federation Server (i.e., https://auth.organization.com) . Once the FQDN is entered the FIDO App ID displays automatically.  

FIDO_App_ID_Host_Example.jpg

The FIDO App ID Port is the optional Federation port (i.e. 8443).

FIDO Facets are the allowed domains in which FIDO U2F devices are permissible. Use cases in which Federation and Portal are not on the same server require each domain to be entered as a Facet, otherwise only the RapidIdentity domain is necessary.