Class WebAuthnAuthenticationFilter

java.lang.Object
com.codename1.backend.security.WebAuthnAuthenticationFilter
All Implemented Interfaces:
SecurityFilter

public final class WebAuthnAuthenticationFilter extends Object implements SecurityFilter

Signs a user in with a passkey: hands out the options of a sign-in at POST /webauthn/authenticate/options, and takes the authenticator's answer at POST /login/webauthn.

The options are kept in the session they were asked from, for five minutes unless set otherwise, and are taken out of it before the answer is looked at: a challenge is answered once, in the session it was given to, in time, or not at all.