Skip to main content
U.S. flag

An official website of the United States government

Dot gov

The .gov means it’s official.
Federal government websites often end in .gov or .mil. Before sharing sensitive information, make sure you’re on a federal government site.

Https

The site is secure.
The https:// ensures that you are connecting to the official website and that any information you provide is encrypted and transmitted securely.

Electronic Authentication Guideline

Published

Author(s)

William E. Burr, Donna F. Dodson, Elaine M. Newton, Ray A. Perlner, William T. Polk, Sarbari Gupta, Emad A. Nabbus

Abstract

This recommendation provides technical guidelines for Federal agencies implementing electronic authentication and is not intended to constrain the development or use of standards outside of this purpose. The recommendation covers remote authentication of users (such as employees, contractors, or private individuals) interacting with government IT systems over open networks. It defines technical requirements for each of four levels of assurance in the areas of identity proofing, registration, tokens, management processes, authentication protocols and related assertions. This publication supersedes NIST SP 800-63-1. [Supersedes SP 800-63-1 (December 2011): http://www.nist.gov/manuscript-publication-search.cfm?pub_id=910006]
Citation
Special Publication (NIST SP) - 800-63-2
Report Number
800-63-2

Keywords

authentication, authentication assurance, credential service provider, electronic authentication, electronic credentials, identity proofing, passwords, PKI, tokens.
Created August 29, 2013, Updated November 10, 2018