In response to the growing prevalence of phishing attacks and the increasing use of cloud and SaaS services, the Grand Reims Urban Community initiated a fundamental transformation of its authentication model. By deploying Thales hardware security keys to their most exposed agents, enabling both FIDO2 authentication for Cloud and SaaS environments and certificate authentication for onpremises environments, the organization opted for a passwordless authentication mechanism that is resistant to phishing and based on trusted hardware.
Thales provided Grand Reims with hybrid hardware keys supporting both FIDO and certificate-based authentication, capable of covering all use cases, as well as mature, easy-to-deploy and easy-to-use key management tools. The richness of certificate-related features, along with compatibility with the identity provider’s key attestation policies, were key differentiators in the solution selection.
Beyond the products themselves, the support provided by Thales and its partner helped secure architectural decisions and establish solid foundations for scaling passwordless authentication across the entire organization.