Comarch MobileID is a new authentication and authorization method based on mobile phones that combines features never before seen together in one solution. It delivers security, ease of use and advanced technology at a low price. Comarch MobileID can operate as a stand-alone system and may also be integrated with Comarch Security Access Manager DRACO.

Basic components of Comarch MobileID
During login the application asks the user to provide the login and password generated by Comarch MobileID. All the user has to do is start the application using a Personal Identification Number (PIN) only he knows. The application generates a passcode which the user deploys to confirm his identity in the application.
A two-part authentication takes place involving what the user knows (PIN) and what the user possesses – a mobile phone with a personalized Comarch MobileID.
Transaction authorization is based on challenge and response. The server component generates an authorization code according to the transaction data: account number, sum and current time. The user enters this data into the application on his mobile phone (or other mobile device). Using this as a base, a response authorization code is generated and is validated by the Comarch MobileID server.