What is a Passwordless Identity?
A "Passwordless Identity" is a user identity which does not require an alphanumeric password for gaining access to applications and services associated with that particular user. Instead, the identity is bound to a public-private key pair that acts as the primary credential for user authentication. The user's private key is stored on a smartphone, a smart card, or a FIDO security token; the public key is stored on a validation server on-premises or in the cloud. Learn more about Passwordless Login Methods.
Generally speaking a passwordless login based on public-key encryption is inherently multi-factor, as it requires the use of a strong possession factor and a combination of biometrics and/or PIN.
Most legacy MFA methods include passwords an option in the multi-factor layering; these are known as password-based MFA.
More recently, enterprise teams are modernizing their identity stack by implementing a process that removes passwords entirely. This is what we refer to as True Passwordless MFA.