Enable BankID on mobile in your services
To get you started with BankID on mobile identification through E-Ident, Nets will need a merchant certificate and some configuration setting information from you. The configuration settings are supplied in the setup dialogue with support.
More information about BankID:
Nets through the Signing and Identification Services are resellers of BankID merchant certificates, and this can be ordered either separately or together with E-Ident and/or E-Signing. When ordering a merchant certificate through Nets, you will receive an information letter asking you to complete a form with information needed to create a BankID “brukerstedsavtale” with BankID Norge. Note: In this form you need to specify if you are allowed to handle SSN.
The form shall be returned to our support and based on the form Nets will register this order at BankID. After the registration you will be asked to confirm and sign the order. When the order is signed with BankID Norge, it will be sent to your bank for processing. Your bank may use up to 10 business days for processing the order. Nets will then receive activation information for your BankID merchant certificate from your bank. The merchant certificate will be activated and connected to your configuration.
In cases where you use another reseller, the BankID activation link and code must be sent to Nets without activating it. Contact Nets support to get contact details of receiver of the link and code.
Test merchant certificate
Nets will set you up with a common test merchant certificate if nothing else have been agreed.
here for more information on how to get a BankID on mobile test user.
Handling of SSN
All companies that are allowed to handle social security numbers (SSN) can get this in return from a BankID identification. The end user will always enter his SSN credentials through a log in. The SSN is returned as default to those allowed to handle SSN. This can be turned off using the returnssn identification parameter described below.
Note: Remember to specify that you want to process SSN when ordering your BankID merchant certificate and giving Nets your E-Ident configuration details.
Controlled return of SSN
All customers that are allowed to retrieve SSN have been configured with this in E-Ident. However, not every customer actually needs the SSN each time a user identifies himself. In some cases it is only needed the first time the user is logging in, and for later logins the BankID PID (personal identification) can be used. To turn off the retrieval of SSN and the SSN request to BankID, the customer can add a parameter to the identification request. This is the returnssn parameter. If this is set to false, E-Ident will not request the SSN from BankID and not return it to the customer. Read more about the optional eID specific identification request parameters for respectively OIDC and SAML.
This parameter can be used with BankID (NO) and BankID on mobile (NO).
Preset mobile number and birthdate
The end user’s mobile phone number and birthdate may be preset at the customer's site prior to calling the E-Ident service. The mobile phone number (celnr8) and birthdate (dob6) can be appended to the identification request to E-Ident. This will replace the first step in the flow above. Read more about the optional eID specific identification request parameters for respectively
BankID on mobile specific error codes can be found in BankID documentation at https://confluence.bankidnorge.no/confluence/kiev-open/bankid-error-codes