CIBA (ATM/Kiosk)

The Client-Initiated Backchannel Authentication (CIBA) Flow is an OpenID Foundation standard.

Integration

This diagram illustrates Client-Initiated Backchannel Authentication (CIBA) on an ATM or kiosk.

Solution System Architecture

  1. The process begins when the user triggers authentication on the ATM (or other client terminal). The ATM then calls the Authorization Server.
  2. The Authorization Server creates an operation via the PowerAuth Cloud.
  3. The user confirms the operation.
  4. PowerAuth informs the Authorization Server that the operation has been approved, either via a callback or by polling.
  5. The Authorization Server creates an access token.
  6. The ATM receives the access token via CIBA Poll or Ping mode.

develop

Mobile-First Authentication