Skip to main content
Version: 11.1.0

FIDO2 Metadata Service (MDS) Server

The FIDO2 Metadata Service (MDS) Server page in Control Center provides a centralized view of all FIDO2 authenticator metadata known to your HYPR deployment. This metadata is used across the platform — most notably by FIDO2 Authenticators Granular Control when building per-application allowlist and denylist policies.

Overview

HYPR automatically syncs authenticator metadata from the FIDO Alliance Metadata Service. Administrators can also upload custom metadata statements for authenticators not covered by the FIDO Alliance MDS.

The MDS Server page has two tabs:

  • FIDO2 Metadata Statements — Browse, search, and filter the full metadata catalog
  • Management — Upload custom metadata and manage manually added entries

Metadata Sources

Each metadata entry is tracked by its source:

SourceDescriptionDeletable from UI
METADATA_SERVICEAutomatically synced from the FIDO Alliance MDSNo
MANUAL_UPLOADUploaded by an administrator via the UI or APIYes

Both sources appear in the metadata table and are available for use in per-application AAGUID policies.

Choose Your Method

Prerequisites

  • Admin role permissions in Control Center
  • FIDO2 must be enabled on your HYPR deployment