Company
Date Published
Author
Emily Lehman
Word count
2513
Language
English
Hacker News points
None

Summary

Twingate is announcing the launch of its support for WebAuthn, a specification that allows servers to register and authenticate users using public key cryptography instead of passwords. This new functionality enables Twingate customers to leverage additional types of authentication, including biometrics and Yubikeys, when using Twingate's Universal MFA for SSH, RDP, or legacy applications that don't natively support MFA. To enable WebAuthn, customers simply need to enable MFA as a Security Policy requirement for a Twingate-protected Resource, with end users then being prompted to configure a WebAuthn method as part of the standard MFA workflow. The adoption of WebAuthn is hindered by its complexity, which makes it challenging for application developers to build support for multiple browsers and platforms. Despite this, WebAuthn offers numerous security benefits, including eliminating man-in-the-middle attacks, reducing incentive to hack databases, and improving end-user experience. Twingate aims to make Zero Trust principles easier to adopt for both administrators and end users through its support for WebAuthn, which deepens the strength of authentication methods while reducing friction in the end-user experience.