|
|
|
How it works
Mideye from the end-user's perspective
Step 1: The end-user requests access to a protected service.
Typically, this is done from a standard web browser.
|
Step 2: The end-user is prompted to enter user name and a
secret password in a first login box.
|
|
|
Step 3: A few seconds after the end-user has entered a
valid user name and the secret password, a one-time password is
presented on the display of the end-user's GSM phone.
|
|
Step 4: The end-user is prompted to enter the one-time
password in a second login box.
|
|
Step 5. If the correct one-time password has been entered, the end-user is
granted access to the service.
In this way, it has been verified that the end-user knows the secret password
and holds the mobile phone / SIM card. Hence, the identification is based on two
independent criteria, both of which must be met in order to gain access to
the service. |
|