Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Basic flow

FlowSpecification


Image Added

Use case ID

ATH-UC-06-BF

Use case name

Authentication using itsme

Actors

  • Citizen

  • Healthcare giver
  • Representative of an institution

Short Description

This use case denotes the authentication of a user via itsme


1 (High)

Must have: The system must implement this goal/ assumption to be accepted.

Pre-Conditions

  • The user citizen has already not an account

  • The user citizen has:

    • a phone number

    • an

  • eID card
  • a PIN code of his/her eID card

    • account in itsme

    • a smartphone with the application itsme

    • a five secure code to confirm the operation on itsme

  • a wireless card reader

Post-Conditions

  • The user is authenticated

  • The user has access to the services of the mobile application

Steps (basic flow)

0

The user access accesses to the WebSSO application interface to authenticate him/herself and choose the option eID

1

The user chooses to connect via itsme 


2The user enters his/her phone number recognized by itsme

3The user connects to the itsme application and confirms the operation

4The user sends his/her credentials

5

1

The user connects using his/her credentials (eID card + PIN) and the wireless card reader

2

The application sends an access request to the SP

36

The SP sends an authentication request to the IDP


47

The IDP checks the identity of the user with the AA 


58

The IDP sends a response message to the SP to inform it that the user is identified


69

The SP returns a response message to the application to enable the authentication


710

The user is authenticated and can use the the services of the mobile application

Exceptions (exception flows)

  • The PIN phone number of the eID card user is not correctrecognized by itsme

  • The creation is aborted (e.g. loss of connection, problem with the wireless card reader, the session is expired)

Frequency

  • Every time the user needs to authenticate to the mobile application

...