Trust service catalogue
Verify presence
Bind an identity result to a device, session and time context.
Who was present at this service point?
Record presence at an examination or handover point.
Purpose & scope
Bind an identity result to a device, session and time context.
Identity is bound to an authoritative source within an organization. Search population and access rights must be configured in advance.
From request to decision
Checks are bound to the same session.
- 01Authenticate the relying system
- 02Check scope & purpose
- 03Capture & assurance
- 04Verify presence
- 05Evaluate policy
- 06Create evidence
Deployment-specific assurance
Do not use one threshold indiscriminately across devices and contexts.
| Component | Evaluation requirement | Evidence |
|---|---|---|
| PAD | Attack scope and evaluated configuration | Device / algorithm evaluation report |
| Performance | Threshold, test population, gallery, environment | Versioned evaluation profile |
| Device | Fresh session, certificate and revocation state | Device and configuration records |
| Authority & purpose | Processing basis and resource authorization | Policy version |