Multifactor authentication

🔎 MA is an extended verification procedure. To gain access to data, user should present more than one “proof”.

The categories of such evidence include:

1️⃣ Information that the subject possesses.

This is secret information that only an authorized entity knows. A password can be a speech word, a text word, a combination for a lock, or a personal identification number (PIN.).

However, it has significant drawbacks: keeping the password secret is often difficult, because attackers are constantly coming up with new ways of stealing, hacking and selecting a password. This makes the password mechanism faintly protected. Many secret questions, such as “Where were you born? “, are elementary examples of the knowledge factor because they can be known to a wide group of people or be investigated.

2️⃣ Thing that the subject possesses.

Here it is important that the subject possessed some unique object. It can be a personal print, a key to the lock, a data file containing the characteristic.

The characteristic is often embedded in a special device: for example, a plastic card.

For an attacker, it is more difficult to get such a device than to crack the password, and the subject can immediately report in case of theft of the device. This makes this method more secure, but the cost is higher.

3️⃣ Property possessed by the subject.

The characteristic is the physical feature of the subject. It can be a face, fingerprint, iris of the eye, capillary patterns, DNA sequence, or voice.

This method is the easiest: you do not need to remember the password or transfer the authentication device with you.

However, a biometric system must be highly sensitive to confirm an authorized user, but reject an attacker with similar biometric parameters. Also the cost of such a system is quite large.

✅Two-factor authentication is a type of multi-factor authentication. 2FA presents a technology that provides identification through a combination of two different components.

Decimal helps communities to issue and manage blockchain assets.