Skip to main content

Finnish Trust Network (FTN)

Updated this week

Background

Electronic identification (eID) is available on our Professional and Enterprise plans. We currently support:

  • BankID – Sweden

  • BankID NO – Norway

  • MitID – Denmark

  • Finnish Trust Network (FTN) – Finland

The Finnish government has introduced new requirements to increase the security and privacy of FTN authentication. These apply to all providers, including Criipto (our integration partner).

GetAccept's FTN authentication is compliant with the latest governmental requirements.

Good to know: These changes are not visible to your end-users. The login experience works exactly as before.


What’s changing?

According to Traficom’s Recommendation 213/2023 S (Finnish Trust Network OpenID Connect Profile), all FTN integrations must now:

  • Sign authorization requests to Criipto and send them as Request Objects (JWT-secured Authorization Requests)

  • Use Private Key JWT client authentication (instead of client secret authentication)

  • Receive encrypted token and UserInfo responses from Criipto (JSON Web Encryption)

  • Use statically configured JWK sets for signing and encryption

For full details, see Criipto documentation.


Why is this important?

  • Before: FTN logins worked with previous authentication standards.

  • Now: The Finnish government requires all providers to follow stricter security measures.

  • Impact: Without these updates, FTN logins would no longer function once the new requirements take effect.


Who is affected?

  • Only customers using Finnish Trust Network (FTN).

  • No action is required on your side.

  • Users will continue to log in with FTN as usual.

Did this answer your question?