Elevate access for an already signed in user using FIDO2 Webauthn
POST /elevate/webauthn
Generate a Webauthn challenge for elevating user permissions
Authorizations
Section titled “Authorizations ”Responses
Section titled “ Responses ”Challenge sent for elevation
object
Base64url-encoded binary data
A time, in milliseconds, that the caller is willing to wait for the call to complete
The RP ID the credential should be scoped to
A list of CredentialDescriptor objects representing public key credentials acceptable to the caller
object
The valid credential types
Base64url-encoded binary data
The authenticator transports that can be used
A requirement for user verification for the operation
Hints to help guide the user through the experience
Additional parameters requesting additional processing by the client and authenticator
object
default
Section titled “default ”An error occurred while processing the request
Standardized error response
object
HTTP status error code
Example
400Human-friendly error message
Example
Invalid email formatError code identifying the specific application error