CIBA (ATM/Kiosk)
The Client-Initiated Backchannel Authentication (CIBA) Flow is an OpenID Foundation standard.
Read more about OIDC Client-Initiated Backchannel Authentication Flow.
Integration
This diagram illustrates Client-Initiated Backchannel Authentication (CIBA) on an ATM or kiosk.

- The process begins when the user triggers authentication on the ATM (or other client terminal). The ATM then calls the Authorization Server.
- The Authorization Server creates an operation via the PowerAuth Cloud.
- The user confirms the operation.
- PowerAuth informs the Authorization Server that the operation has been approved, either via a callback or by polling.
- The Authorization Server creates an access token.
- The ATM receives the access token via CIBA Poll or Ping mode.