3 – 5 de dez. de 2025
FEEC / UNICAMP
Fuso horário America/Sao_Paulo
É com grande satisfação que convidamos toda a comunidade do DCA a participar da décima sétima edição do nosso tradicional encontro

Implementing FIDO at UNICAMP: Toward Passwordless, Phishing-Resistant SSO

5 de dez. de 2025 16:08
1m
Hall de entrada FEEC

Hall de entrada FEEC

Trabalho em estágio inicial Sessão de Pôsteres

Palestrante

Jules Davidou

Descrição

This work examines the feasibility of deploying
FIDO2/WebAuthn at UNICAMP to improve both se-
curity and user experience in Single Sign-On (SSO).
We describe the target architecture based on Red Hat
SSO (Keycloak), outline registration and authentica-
tion flows, and assess practical constraints in the cam-
pus environment. In particular, we analyze authenti-
cator options (USB security keys, smartphones, and
platform authenticators) against local limitations such
as the absence of Bluetooth on many university com-
puters and the current Linux workstation landscape.
We consider incremental strategies, including offering
FIDO2 as an optional factor alongside existing meth-
ods, password fallback where necessary, and interop-
erability with established federation approaches already
supported by Red Hat SSO. We conclude with compro-
mise options and a path forward that prioritizes se-
curity, usability, and broad accessibility across UNI-
CAMP’s diverse user base.

Autor

Co-autor

Prof. Marco Amaral Henriques (DCA-FEEC)

Materiais de apresentação