Portugal Overview - RUB-NDS/FutureTrust GitHub Wiki
In Portugal, a Public Identity Provider (Fornecedor de Autenticação)[1] is available for authentication on public administration services and run by the Modernization Agency (AMA – Agência para a Modernização Administrativa).
The authentication protocol is based on SAML and supports 2 types of credentials:
- National eID (Cartão de Cidadão) – a smartcard based ID, containing 2 separate digital certificates for authentication and signature (non-repudiation). The card has also the biographic and biometric data of the citizen in a proprietary data structure and is capable of performing an EAC-like authentication between the chip and the terminal. The card is mandatory for all Portuguese citizens and the digital signature activation is optional.
- Digital Mobile Key (Chave Móvel Digital) – a cloud based solution for authentication of the citizen, derived from the National eID. The authentication is performed through an OTP delivered by SMS to the registered mobile phone number. Enrolment and use of Digital Mobile Key is optional.
1. ^ Direktoratet for forvaltning og IKT. (2014). Integrasjonsguide for ID-porten.