Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Specification

Use case ID

ATH-UC-06-AF-01

Use case name

First authentication using itsme

Actors

  • Citizen

  • Healthcare giver
  • Representative of an institution

Short Description

Depending on the profile of the actor, this alternative flow will be instantiated by one of the four use cases dedicated to the creation of a new account (refer to the basic flows): ATH-UC-01, ATH-UC-02, ATH-UC-03, ATH-UC-04To implement this flow, the user should authenticate him/herself in the mobile application using itsme.

Priority

1 (High)

Must have: The system must implement this goal/ assumption to be accepted.

Pre-Conditions

  • The citizen has not an account

  • The citizen has:

    • a phone number

    • an account in itsme

    • a smartphone with the application itsme

    • a five secure code to confirm the operation on itsme

Post-Conditions

  • The user has an account

  • The user knows his credentials

  • The user is authenticated

  • The user has access to the services of the mobile application

Steps

For more details and depending on the type of the actor, see:

Exceptions (exception flows)

  • The citizen made an error when editing his/her credentials

  • The PIN of the eID card is not correctThe creation is aborted (e.g. loss of connection)

Frequency

  • Every time the user wants to authenticate him/herself and he/she does not have an account.


Exception flow 1


Specification

Use case ID

ATH-UC-06-EF-01

Use case name

The

PIN of the eID card is not correct

citizen made an error when editing his/her credentials

Actors

  • Citizen

  • Representative of an institution
  • Healthcare giver

    Short Description

    It denotes the

    This use case represents the situation when the

    user tries to authenticate with his/her eID card and fails in entering the PIN

    citizen is trying to create a new account in the CSAM portal and he/she make an error when entering his/her credentials (e.g. an error un the e-mail address, an error in the password, etc.). This exception flow may be triggered by the basic flow and any alternative one.

    Priority

    1 (High)

    Must have: The system must implement this goal/ assumption to be accepted.

    Pre-Conditions

    • The

    user
    • citizen has

    already
    • not an account

    • The

    user
    • citizen has:

      • an e-mail address

      • an eID card

      • a code PIN

    code
      • of his/her eID card

      • an account in the web application Mygipass

      • a wireless card reader

    Post-Conditions

    • The
    authentication is interrupted
    • creation of the account falls
    • An error message should be displayed

    Steps

    (basic flow)

    0

    The

    user

    citizen access to the application interface (i.e. WebSSO

    application interface to authenticate him/herself and choose the option eID

    ) to create an account (first authentication)


    1

    The citizen connects for the first time to the application


    2

    The application sends a request message to the SP


    3

    The SP sends a request message (i.e. ask authentication get SSO token) to the IDP


    4

    The IDP checks the identity of the citizen and it does not find it in the authentic data source via the AA


    5

    The IDP contact CSAM to ask it to create the certificate to the citizen (first authentication)


    6

    The CSAM opens a new web browser page to invite the citizen to enter his/her credentials (username, password and secure code)


    7

    The citizen makes an error when entering his/her credentials to the CSAM


    1

    The user tries to connect using a wrong PIN code

    2

    The authentication is interrupted

    Frequency

    • Every time for a

    user
    • new citizen needs to

    authenticate him/herself and enter a wrong PIN code
    • create a new account

    Exception flow 2

    Specification

    Use case ID

    ATH-UC-06-EF-02

    Use case name

    The creation is aborted (e.g. loss of connection, problem with the wireless card reader, the session is expired)

    Actors

    • Citizen

    • Representative of an institution
    • Healthcare giver

    Short Description

    It denotes the exception use case when the user loses the connection and he/she will not be able to finish the authentication. It may happens at any step of the basic and alternative flows.

    Priority

    1 (High)

    Must have: The system must implement this goal/ assumption to be accepted.

    Pre-Conditions

    • The user has already an account

    • The user has:

      • an eID card

      • a PIN code of his/her eID card

      • a wireless card reader

    Post-Conditions

    • The authentication is interrupted

    • An error message should be displayed

    Steps (basic flow)



    Frequency

    • Every time for a user needs to authenticate him/herself and loses the connection

    ...