Skip to content

Comparing authenticatorVersion and firmware version #218

Answered by emlun
CyrilCadoux asked this question in Q&A
Discussion options

You must be logged in to vote

Hi! An authenticatorVersion isn't available at all in the responses returned from most authenticators, so no, that would be impossible. If anything it would have to be embedded in the attestation certificate somehow, but I don't know of a standardized format for it.

I think the authenticatorVersion in the MDS is primarily meant for use with UAF devices, which report a lot more information than U2F/CTAP2 devices do. U2F/CTAP2 attestations don't include things like authenticatorVersion to prevent tracking users, and because most U2F/CTAP2 authenticators don't support firmware updates.

Replies: 1 comment 3 replies

Comment options

You must be logged in to vote
3 replies
@CyrilCadoux
Comment options

@emlun
Comment options

@CyrilCadoux
Comment options

Answer selected by CyrilCadoux
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants