This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "OWASP Knowledge Based Authentication Performance Metrics Project"

From OWASP
Jump to: navigation, search
(Contributors)
(AGENDA)
 
(15 intermediate revisions by 2 users not shown)
Line 8: Line 8:
  
 
== News and Events ==
 
== News and Events ==
Please see the [https://www.owasp.org/index.php/OWASP_Knowledge_Based_Authentication_Performance_Metrics_Project#News News] and [https://www.owasp.org/index.php/OWASP_Knowledge_Based_Authentication_Performance_Metrics_Project#Talks Talks] tabs
+
Our first KBAPMP draft is finished. It is temporary hosted at github: [https://github.com/luisenriquez/kbapmp  KBAPMP_DRAFT]. We are building a dynamic KBA sandbox for testing purposes. We need contributors.
 +
 
 +
KBAPMP Archive: Please see the [https://www.owasp.org/index.php/OWASP_Knowledge_Based_Authentication_Performance_Metrics_Project#News News] and [https://www.owasp.org/index.php/OWASP_Knowledge_Based_Authentication_Performance_Metrics_Project#Talks Talks] tabs
  
 
==What is KBA-PMP ==
 
==What is KBA-PMP ==
Line 57: Line 59:
 
[[https://www.owasp.org/index.php/Choosing_and_Using_Security_Questions_Cheat_Sheet] Choosing and Using Security Questions Cheat Sheet]
 
[[https://www.owasp.org/index.php/Choosing_and_Using_Security_Questions_Cheat_Sheet] Choosing and Using Security Questions Cheat Sheet]
  
OWASP NIST NSTIC Initiative
+
OWASP NNI (NIST NSTIC IDESG) Initiative: https://www.owasp.org/index.php/OWASP_NNI_Initiative
  
 
==Licensing==
 
==Licensing==
Line 73: Line 75:
  
 
* [mailto:luis.enriquez@owasp.org Luis Enriquez]
 
* [mailto:luis.enriquez@owasp.org Luis Enriquez]
 +
* [mailto:bev.corwin@owasp.org Bev Corwin]
  
  
Line 81: Line 84:
  
  
== Standard DRAFT ==
+
=== Standard DRAFT ===
  
  
<!-- This is an open project, so you can check a draft of the document and contribute. The document is currently hosted on github: [https://github.com/luisenriquez/kbapmp]<br> -->
+
[https://github.com/luisenriquez/kbapmp KBAPMP] <br>
 +
 
  
  
 
==== AGENDA ====
 
==== AGENDA ====
 +
 +
We will be presenting the KBAPMP standard at the OWASP APP SEC USA 2016 in Washington between October 11th and October 14th. For more information about the OWASP APP Sec USA 2016, please visit this link: [https://2016.appsecusa.org/ USA_APPSEC_2016]
 +
 +
 
All Meetings are Open and All are Welcome
 
All Meetings are Open and All are Welcome
 
* We are currently debugging draft v12. Join us on github. Don't forget to commit.
 
 
  
 
== KBA-PMP Project Metrics ==
 
== KBA-PMP Project Metrics ==
Line 115: Line 120:
  
 
= News =
 
= News =
 +
 +
== September 23, 2016 ==
 +
 +
== Knowledge Based Authentication Performance Metrics Project (KBA-PMP) will be at AppSecUSA in Washington DC USA, October 11-14, 2016 for the OWASP Project Summit, for details see https://2016.appsecusa.org ==
  
 
== April 20, 2016 ==
 
== April 20, 2016 ==
Line 178: Line 187:
 
https://drive.google.com/file/d/0B3AkniUi7NFeRXduS3pPQTJ6Mm8/view?usp=sharing"
 
https://drive.google.com/file/d/0B3AkniUi7NFeRXduS3pPQTJ6Mm8/view?usp=sharing"
  
= Glossary =
 
 
{{taggedDocument
 
  | type=partialOld
 
  | mode=silent
 
}}
 
{{compactTOC}}
 
 
{{SecureSoftware}}
 
 
==0–9==
 
 
==A==
 
 
==B==
 
 
==C==
 
 
==D==
 
 
==E==
 
 
==F==
 
 
==G==
 
 
==H==
 
 
==I==
 
 
==J==
 
 
==K==
 
 
==L==
 
 
==M==
 
 
==N==
 
 
==O==
 
 
==P==
 
 
Performance Metrics
 
 
==Q==
 
 
==R==
 
 
==S==
 
 
==T==
 
 
==U==
 
 
==V==
 
 
==W==
 
 
==X==
 
 
==Y==
 
 
==Z==
 
 
= KBA Concepts =
 
 
{{taggedDocument
 
  | type=partialOld
 
  | mode=silent
 
}}
 
{{compactTOC}}
 
 
{{SecureSoftware}}
 
 
==0–9==
 
 
==A==
 
 
==B==
 
 
==C==
 
 
==D==
 
 
==E==
 
 
==F==
 
 
==G==
 
 
==H==
 
 
==I==
 
 
==J==
 
 
==K==
 
 
==L==
 
 
==M==
 
 
==N==
 
 
==O==
 
 
==P==
 
 
==Q==
 
 
==R==
 
 
==S==
 
 
Scalability
 
 
==T==
 
 
==U==
 
 
==V==
 
 
==W==
 
 
==X==
 
 
==Y==
 
 
==Z==
 
  
 
= Acknowledgements =
 
= Acknowledgements =
Line 316: Line 194:
 
Luis Enriquez <br>
 
Luis Enriquez <br>
 
Robert Faron <br>
 
Robert Faron <br>
Bev Corwin
+
Bev Corwin <br>
 +
Noreen Whysel <br>
  
 
= FAQs =
 
= FAQs =
 
  
 
==How can I participate in your project?==
 
==How can I participate in your project?==

Latest revision as of 23:00, 26 September 2016

OWASP Project Header.jpg

News and Events

Our first KBAPMP draft is finished. It is temporary hosted at github: KBAPMP_DRAFT. We are building a dynamic KBA sandbox for testing purposes. We need contributors.

KBAPMP Archive: Please see the News and Talks tabs

What is KBA-PMP

There is a lack of standard performance metrics regarding the use of knowledge based authentication (KBA) for remote identity proofing. KBA-PMP's goal is to establish standard performance metrics for knowledge based authentication, following a transnational perspective.


KBA-PMP Best Practices

2. Identity solutions will be secure and resilient.


3. Identity solutions will be interoperable.


4. Identity solutions will be cost-effective and easy to use.


Related Projects

ASVS

[[1] Choosing and Using Security Questions Cheat Sheet]

OWASP NNI (NIST NSTIC IDESG) Initiative: https://www.owasp.org/index.php/OWASP_NNI_Initiative

Licensing

Creative Commons Attribution ShareAlike 3.0 License



Project Leaders


Join our Mailing List

Mailing List


Standard DRAFT

KBAPMP


AGENDA

We will be presenting the KBAPMP standard at the OWASP APP SEC USA 2016 in Washington between October 11th and October 14th. For more information about the OWASP APP Sec USA 2016, please visit this link: USA_APPSEC_2016


All Meetings are Open and All are Welcome

KBA-PMP Project Metrics

Classification

New projects.png
Cc-button-y-sa-small.png
Project Type Files DOC.jpg