An updated version of the Electronic Authentication Guideline was released by NIST last Tuesday (2/5/13) – go to http://csrc.nist.gov/publications/drafts/800-63-2/sp800_63_2_draft.pdf to view the updated draft.
As industry co-authors of this document, a couple of us at Electrosoft were provided an opportunity to review and provide input towards the draft version of SP 800-63-2, so we were aware of its impending release. As described in the news item from NIST, “substantive changes are made only in section 5, Registration and Issuance Processes” in the draft document.
Several of our professional colleagues have asked for a summary of the changes in this draft and the implications of these changes. We thought it may be helpful to post this summary for others who are interested. The attached table lists the major changes in this draft version and the implications of the changes.
Comments and interpretations from our readers are welcome. Please Contact Us for any additional information.
--Sarbari Gupta