Beyond FIPS 201 Revision 3 – Updating PIV associated Guidelines
FIPS 201, Personal Identity Verification (PIV) for federal employees and contractors recently completed its third revision. The goal of the revision was to
1) incorporate federal department and agencies’ new or changing business requirements,
2) adapt to changes in the environment/technology, and
3) align with OMB’s M-19-17.
With these revision goals in mind, FIPS 201 Revision 3 now expands the set of PIV authenticators beyond the current set and beyond the smart card form factor. The Standard addresses interagency use of the additional authenticators (i.e., Derived PIV Credentials) via federation. The revision also aims to facilitate issuance of PIV Cards by enabling remote identity proofing. These changes and others will be further detailed in PIV-associated Special Publications (SPs), where needed.
Milestone activities include:
Milestone Activity |
Projected FYQ Completion |
Notes |
---|---|---|
Business Requirements Meeting with Federal Stakeholders |
Q1 2019 |
Feedback from stakeholders have been incorporated in FIPS 201-3 |
Coordination with HSPD-12 cre team, GSA, DoD, ISC, OPM, OMB |
ongoing activity |
Stakeholders with roles and responsibilities under HSPD-12 providing feedback/content |
FRN announcement and publication of FIPS 201-3 public commenting DRAFT |
2020 -Q3 |
90 day public comments period – ending 2020 Q4.
|
Public workshop introducing and discussing draft FIPS 201-3 |
FY 2020 Q3 |
Comments may be submitted to piv_comments [at] nist.gov (piv_comments[at]nist[dot]gov). |
Comment resolution |
FY2021 Q2- |
Length of comment resolution dependent on volume of comments |
FRN announcement and publication of Final FIPS 201-3 |
FY2022 Q1 |
Complete |
FIPS 201 associated SPs update or development of new SPs
|
On-going |
Currently in progress |