Skip to content

CodeB

Code Blockchain

  • CodeB Home
    • About CodeB
    • CodeB Homepage
    • Youtube Channel
    • Get Started
    • Self-Sovereign Identity
      • Blockchain X.509 Certification Authority
      • Authenticated Anonymity
        • HOWTO send authenticated but anonymous messages with the CodeB CommandLine Interface
      • “The Path to Self-Sovereign Identity” by Christopher Allen
      • Use CodeB SSI as OIDC Identity Provider for NextCloud
      • What are the Components of Digital Identity?
      • CodeB assigns a Self-Sovereign Identity to every mobile device on this planet
      • Identity Namespace
      • Verifiable Claims (VC)
    • Off-Chain System
      • Decentralized Applications
      • Off-Chain Namespace
    • Instant Settlements
      • Settlement Namespace
  • Blockchain APIs
    • Java Script APIs
    • REST APIs
      • 1. Create Principal Account
      • 2. Bearer Token Generation
      • 3. Create Self-Sovereign Identity
    • Websocket Protocol
      • JSON based APIs
      • Create Self-Sovereign Identity
      • Add Claim to Self-Sovereign Identity (SSI)
      • Create DID Document
      • Realtime Session2Session Communication
    • Web Services
      • Antifraud Namespace
        • STIR/SHAKEN and CLI Spoofing Mitigation
        • Stir/Shaken APIs
          • Integration of Stir/Shaken into Asterisk
        • CLI Spoofing / OBR Fraud
        • CodeB CommandLine Interface (CLI)
          • HOWTO send authenticated but anonymous messages with the CodeB CommandLine Interface
        • Distributed IMEI Blacklisting
        • Detect & Protect Against Wangiri Callback Fraud
      • CDR Reconsilation
      • Identity Namespace
        • What are the Components of Digital Identity?
        • Verifiable Credentials (VC)
        • Capabilities Matrix
        • Key Management
          • Mnemonic Phrase / Key Generator
        • Self-Sovereign Identity (SSI)
          • Authenticated Anonymity
            • HOWTO send authenticated but anonymous messages with the CodeB CommandLine Interface
          • Electronic Know Your Customer (eKYC)
          • SSI linked Off-Chain Storage
        • Encrypted Data Sharing
      • Off-Chain Namespace
        • Encrypted Data Sharing
        • Decentralized Applications
        • SSI linked Off-Chain Storage
      • Settlement Namespace
        • Mint Token
        • Transfer Token
        • Split Payments
        • Create Voucher
        • Burn Token
      • JSON Namespace
        • Authenticated Anonymity
          • HOWTO send authenticated but anonymous messages with the CodeB CommandLine Interface
        • Add key roles and permissions to Self-Sovereign Identity (SSI)
        • Add Claim to Self-Sovereign Identity (SSI)
        • Realtime Session2Session Communication
      • Tools Namespace
  • Wallets
    • Server based Wallet
      • Adding Verifiable Claims (VC) to Self-Sovereign Identity (SSI)
    • Mobile Wallet
      • Transfer Funds
        • SSI Funds
      • Mnemonic Phrase / Key Generator
        • Key Generator
  • Passwordless Identity Broker
    • CodeB Identity Broker
    • CodeB Signator
    • CodeB Authenticator
    • CodeB SMS
  • Voice
    • Distributed SIP Proxy
    • SIP Bridge and VPN
    • SIP Bridge Client
  • SMS
    • CodeB SMS App
      • Your Phone, Your Identity: Unveiling CodeB’s Next-Gen Authentication Solution
      • Unlocking WordPress Security: Embrace Passwordless Authentication with CodeB TOTP SMS Android App
      • Unlock Premium Security for Free with CodeB!
      • Unveiling CodeB’s Newest Mobile Advancement: Digital Signatures Now Part of “CodeB TOTP SMS”
      • CodeB SMS now with TOTP Authenticator
      • Windows Authentication with Authenticator App (TOTP)
      • How do I configure CodeB SMS for SMS Authenticity
    • Distributed SMS Aggregator (SMS Hub)
    • Blockchain SMS Client and SMPP Gateway (bSMSC)
    • How do I configure CodeB SMS for SMS Authenticity
  • About CodeB
    • Support Forum
    • Unlock Premium Security for Free with CodeB!
    • Youtube Channel
    • CodeB Homepage
    • Discussion Forum
    • Contact Us
    • Impressum

Pioneering Windows Login with OpenID Connect Identity Token via CodeB

August 19, 2023 by editor

Introduction

In an era dominated by digital advancements, CodeB emerges as a vanguard, underscoring the imperative of robust security for Windows workstations. The common misconception is that amplifying Windows login security is a labyrinthine task, leading to a reliance on lackluster password strategies.

Challenging this paradigm, CodeB Credential Provider simplifies the adoption of a Windows Logon Token. Be it a rudimentary USB Memory Stick, a cutting-edge X.509 PKI Smartcard, an Android Phone, a multifaceted Authenticator App, or a standard NFC/Mifare/Desfire Contactless Card, CodeB’s innovative solution is set to transform your security landscape. Taking a monumental leap, CodeB Credential Provider now pioneers the acceptance of OpenID Connect Identity Tokens issued by mobile devices.

The recent “Storm-0558” incident spotlighted the vulnerabilities of centralized Identity Signature Keys. History is testament to the fact that such keys, when compromised, become gateways for malicious intrusions. With the expertise of the CodeB Identity Broker team combined with the CodeB Authenticator, your mobile metamorphoses into a personal identity fortress. The key, generated and securely stored in the mobile’s secure key store, mitigates risks associated with compromised OpenID Connect Signature Keys.

Delving into CodeB Credential Provider Editions

CodeB Credential Provider, with its intricate design, caters to a broad spectrum of user needs, bifurcating into two distinct editions:

1. System Tray Stand-alone Application: A comprehensive solution, this edition amalgamates all essential components into a singular system tray application, ideal for users who prioritize directness.

2. Suite of Tools and Applications: This edition resonates with users who value granularity and precision. It unfurls a collection of standalone tools and applications, making it a favorite among enterprise setups where bespoke solutions are paramount.

This guide pivots its focus on the independent tools version, elucidating the process of Windows login using an OpenID Connect Identity Token.

Detailed Guide to CodeB Credential Provider

Step 1: Software Retrieval: Commence by downloading the independent tools version of the CodeB Credential Provider from this link: https://blog.codeb.io/downloads/codeb_smartloginhelper.zip

Step 2: CodeB Authenticator App Setup: Download and set up the CodeB Authenticator App from the Google Playstore here:

https://play.google.com/store/apps/details?id=com.codeb.authenticator

This app transforms your mobile into a personal OpenID Connect Identity Provider.

Step 3: Software Extraction: Post download, extract the `codeb_smartloginhelper.zip` file to a preferred directory.

Step 4: Library Integration: Navigate to the `CredentialProviderInstaller.exe` tool and execute it with administrator rights. A single click on the “Install Credential Provider” button ensures the library’s seamless installation and registration.

Step 5: Licensing Protocols: If you possess a license key, this step is pivotal. If not, CodeB’s support channels, including email and website chat, are at your disposal to issue an Evaluation key.

To integrate the key, initiate the `SmartLoginLicensing.exe` application with elevated permissions, input your license details, and confirm with the “Save Key” button.

Step 6: OpenID Connect Identity Integration: With the foundational elements in place, the next phase involves associating your local or domain accounts with your mobile’s OpenID Connect Identity Provider. Ensure the CodeB Authenticator is installed, configured, and started.

To commence the synchronization, activate the `LinkOpenID.exe` tool. Provide your Username/Domain (optional), mobile number, and the Binding PIN. The Binding PIN, an added layer of security, should be congruent in both the CodeB Authenticator App and the CodeB Credential Provider.

For ease of access during Windows login, you can assign an Alias to your mobile number, allowing you to input the Alias as opposed to the lengthy mobile number. Upon configuration, click “Link” and ensure you approve the linking on your mobile’s CodeB Authenticator App.

Step 7: Credential Provider Transition: At the Windows login interface, users can effortlessly switch between the native Windows credential provider and CodeB’s variant. For authentication, simply input your configured Alias or mobile number into the username field, leaving other fields untouched as authentication approval is managed via your mobile.

A notable feature is the capability to obscure the default Windows Credential Provider using the CodeB Credential Provider Filter, a topic that warrants a comprehensive exploration.

CodeB Credential Provider has redefined the paradigms of security and convenience in Windows login mechanisms. By adhering to the outlined steps, users can seamlessly set up their systems to support diverse login modalities, from rudimentary USB Memory Sticks to advanced TOTP Generators, PKI Smartcards, and now, OpenID Connect. For any challenges or queries, the adept team at CodeB is ever-ready to assist and guide.

Youtube: https://youtu.be/n756kY7gOoY

Categories CodeB, CodeB Authenticator, Credential Provider Tags authenticator, credential provider, login, logon, OAuth2, openid, OpenID Connect, smart, smart login, Win Login, Window Login, Window Logon, windows
Elevate Windows Login Security with TOTP Authenticator Apps via CodeB
The CodeB Credential Provider: A Comprehensive Guide to Multi-Faceted Windows Logon Methods

Recent Posts

  • CodeB Credential Provider – Bluetooth 2FA Authentication
  • Pioneering the Implementation of CAMARA APIs
  • Enhancing Security in Legacy Applications through 2FA, SSO, and Passwordless Authentication with CodeB Solutions
  • Adding 2FA and SSO to Legacy Applications
  • Unlocking the Future: CodeB Credential Provider V2
  • Die Zukunft der Authentifizierung: CodeB Credential Provider V2
  • Passwordless Login to Windows
  • Passwortloses Anmelden bei Windows
  • Multi-Factor Authentication für Windows-Anmeldung & RDP
  • CodeB Authenticator: A New Era of Web Authentication

Categories

  • AddKeyHash2Identity
  • AntiFraud
  • APIs
  • Bluetooth
  • Burn Token
  • CalculateZKPKeys
  • CAMARA
  • Claims
  • CodeB
  • CodeB Authenticator
  • CodeB TOTP SMS
  • CreateIdentity
  • CreateKeyOnServer
  • CreateMSG2Address
  • CreateMSG2Group
  • CreateMSGKeyOnNode
  • Credential Provider
  • GetFromDistributedFileStorage
  • getKeyPurpose
  • Identity Wallet
  • Identity Wallet
  • ImportMSGKeyToNode
  • Key Management
  • ListReceivedMessages
  • Messaging
  • Mint Token
  • Mobile Wallet
  • News
  • OAuth2
  • Off-Chain Storage
  • OpenID
  • Proxy
  • RegisterKeyInMemberSSI
  • REST API
  • RetrieveMessage
  • RetrieveRawMessage
  • Save2DistributedFileStorage
  • Self-Sovereign Identity
  • Settlement
  • SignData
  • SMS
  • SMS
  • Split Payment
  • Stir/Shaken
  • StoreKeyOnServer
  • SubmitMSG2Address
  • SubmitMSG2Group
  • Transfer Token with Identity
  • TransferToken
  • UnLockAccount
  • UpdateGroupList
  • ValidateMSG
  • Voice
  • Voucher
  • Web Service
  • WebSocket
  • X.509

Pages

  • Authenticated Anonymity
  • CodeB
    • CodeB SMS App
  • CodeB – Pioneering Blockchain Technology
    • Blockchain APIs
      • JSON based APIs
      • REST APIs
      • Web Services
        • Antifraud Namespace
        • CDR Reconsilation
        • Identity Namespace
        • JSON Namespace
        • Off-Chain Namespace
        • Settlement Namespace
        • Tools Namespace
      • Websocket Protocol
    • Blockchain eForms
      • Electronic Know Your Customer (eKYC)
    • CodeB Video Conferencing
    • Decentralized Applications
    • Mobile Wallet
    • Self-Sovereign Identity
    • Server based Wallet
      • Adding Verifiable Claims (VC) to Self-Sovereign Identity (SSI)
    • Settlements
    • ZUGFeRD / XInvoice: A Unified Data Format for Electronic Invoicing
  • CodeB assigns a Self-Sovereign Identity to every mobile device on this planet
  • CodeB SIP SoftPhone
  • Get Started
  • Java Script APIs
  • Passwordless Identity Broker
  • Public Posts
  • Voice
    • CodeB SIP Bridge and VPN
    • SIP Bridge Client
  • XInvoice

Archives

  • October 2023
  • September 2023
  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • April 2023
  • March 2023
  • February 2023
  • January 2023
  • December 2022
  • October 2022
  • September 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • January 2022
  • December 2021
  • November 2021
  • October 2021
  • July 2021
  • June 2021
  • May 2021
  • April 2021
  • March 2021
  • December 2020
  • October 2020
  • July 2020
  • June 2020
  • April 2020
  • March 2020
  • February 2020
  • January 2020
  • November 2019
  • October 2019
  • September 2019
  • August 2019
  • April 2019
  • February 2019
  • January 2019
  • December 2018
  • October 2018
  • September 1999

Tags

2FA aloaha android antifraud app Auth0 Authentication authenticator azure b2c blockchain CodeB connect credential credential provider desfire identity json login logon mifare mobile multi-factor authentication NFC OIDC openid OpenID Connect Passwordless provider self-sovereign identity smart smartlogin smart login smartlogon SMS ssi token TOTP two-factor authentication Window Login Window Logon windows winlogin Win Login winlogon
© 2026 CodeB • Built with GeneratePress