usnistgov / 800-63-3

Home to public development of NIST Special Publication 800-63-3: Digital Authentication Guidelines

Home Page:https://pages.nist.gov/800-63-3/

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Table 4-1 AAL2 Replay Resistance requirement incorrect

jimfenton opened this issue · comments

-63B Table 4-1 (which is informative, fortunately) says that replay resistance is not required at AAL2. This is incorrect; replay resistance for at least one authenticator used at AAL2 is required per Section 4.2.2 paragraph 1.

Somehow, this error only appears in the PDF version of the document.