Finnish bank eIDs (FTN)

About Finnish Bank eIDs (FTN)

Signicat supports all eIDs of Finnish banks within the framework of the Finnish Trust Network (FTN). Through one agreement with Signicat, a customer will get access to all these eIDs plus Mobiilivarmenne. The default setup for an FTN customer is that all banks and Mobiilivarmenne are shown to the end-user as login options. If a customer wants to limit the number of options, specific eIDs and Mobiilivarmenne may be removed from the menu shown to end-users.

The TUPAS protocol that was previously in use for the Finnish bank eIDs is obsolete. Banks offer their eID services through OIDC or SAML2 interfaces. A Signicat FTN customer does not need any agreements nor specific technical integration towards the banks; one agreement with Signicat and one integration towards Signicat’s API is sufficient. The personal data returned is the same for all eIDs.

The bank eIDs are of various types. When the end-user has selected the eID to use from the menu displayed by Signicat, the user is redirected to the selected bank’s (or Mobiilivarmenne) user interface. All eIDs supported by Signicat for FTN are “strong electronic identification” according to Finnish regulations, meaning they are Finnish eID level 2, which corresponds to eIDAS level substantial. Signicat is a licensed broker in FTN for “strong electronic identification”.

FTN eIDs may be used for onboarding and for issuing a new eID at the same or a lower assurance level. Special pricing applies. Please contact Signicat support if you have such needs for your service.

The following banks are members of the Finnish Trust Network:

  • Handelsbanken
  • Nordea
  • OP Bank Group
  • Danske Bank
  • Aktia
  • Säästöpankki (Savings Bank)
  • POP Bank
  • Bank of Åland
  • S-Bank
  • OmaSP

Establishment

A Signicat customer may sign up for FTN for authentication and authenticated signing. No agreement with the banks or mobile operators is needed.

Typical login and signature screenshots

The first step contains a list of all FTN banks and Mobiilivarmenne (unless the customer has decided to narrow the list). The customer decides upon layout assisted by Signicat support.

The user selects one of the banks in the list, e.g. Nordea.

The user will get the selected bank’s user interface, e.g. Nordea’s eID as shown below. In some cases, a language selection comes first (Finnish, Swedish, English – not all languages may be supported by all banks).

Test users

The table below contains information about the test users of the FTN banks in preproduction environments.

Notes:

  • Nordea’s and Aktia’s test services only use the correct language on the first page of the login-sequence. The following pages are always in Finnish.
  • The test services of Handelsbanken, Säästöpankki, POP pankki, and OmaSP show login pages in both Finnish and Swedish, but the following pages are always in Finnish.
Bank name Login name Password SSN
Aktia auto-filled auto-filled 010170-999R
OP auto-filled auto-filled 070770-905D
Säästöpankki 11111111 123456 010100A001N
Handelsbanken 11111111 123456 010100A001N
POP Pankki 11111111 123456 010100A001N
Danskebank No preproduction environment
OmaSP 11111111 123456 010100A001N
Nordea
  • DEMOUSER1
  • DEMOUSER2
  • DEMOUSER3
  • DEMOUSER4
no password
  • DEMOUSER1 = 010200A9618
  • DEMOUSER2 = 291292-918R
  • DEMOUSER3 = 030883-925M
  • DEMOUSER4 = 170677-924F
Ålandsbanken No preproduction environment
S-Pankki No preproduction environment

FTN support

These are the contact details of every bank whose eID is offered through FTN.

Bank Support tel. Support Support e-mail Website homepage
Aktia 010 247 010 (private)
010 247 6700 (corporate)
08:00 – 20:00 (private)
08:00 – 18:00 (corporate)
ftn-sd@aktia.fi https://www.aktia.fi/fi/verkkopankki
OP 0100 0500 (private)
0100 05151 (corporate)
08:00 – 18:00 verkkopainikkeet@op.fi https://www.op.fi/
OP 0100 0500 (private)
0100 05151 (corporate)
08:00 – 18:00 verkkopainikkeet@op.fi https://www.op.fi/
Säästöpankki 010 773 6777 08:00 – 22:00 info@samlink.fi https://www.saastopankki.fi/
Handelsbanken 010 444 2545 08:00 – 17:00 finhelp@handelsbanken.fi http://www.handelsbanken.fi/
POP Pankki 9 6964 6012 08:00 – 20:00 tunnistuspalvelu@poppankki.fi https://www.poppankki.fi/henkiloasiakkaat
Danske Bank 0200 2590 09:00 – 16:00 varmennepalvelu@danskebank.fi https://www.danskebank.fi
OmaSP 020 7640 600 08:00 – 20:00 tunnistuspalvelu@omasp.fi https://www.omasp.fi/fi
Nordea 0200 2121 (Swedish)
0200 26262 (English)
0200 2121 (Finnish)
08:00 – 18:00 Technicalsupport.fi@nordea.com http://www.nordea.fi/
Ålandsbanken 0204 292920 (Finnish)
0204 292910 (Swedish)
09:00 – 16:30 Thomas.Knutar@alandsbanken.fi http://www.alandsbanken.fi/
S-Pankki 010 76 5800 e-palvelut@s-pankki.fi http://www.s-pankki.fi

FTN claims

These are possible claims:

Scope Claims
ftn ftn.satu
ftn.personIdentifier
ftn.seed
ftn.legalName
ftn.placeOfBirth
ftn.legalLocality
ftn.sic
ftn.taxReference
ftn.familyBirthName
ftn.firstBirthName
ftn.idpld
ftn.lei
ftn.legalStreetAddress
ftn.businessCodes
ftn.legalCountry
ftn.hetu
ftn.authCachingDisabled
ftn.legalPostalCode
ftn.eori
ftn.firstNames
ftn.legalPersonIdentifier
ftn.vatRegistration
profile website
zoneinfo
birthdate
gender
profile
preferred_username
given_name
middle_name
locale
picture
updated_at
name
nickname
family_name
signicat.national_id signicat.national_id

FTN OIDC error codes

Error code Description (included in response to merchant) Caused by
urn:signicat:error:oidc:RECEIVED_ERROR_RESPONSE “Received OIDC error response” Receiving either an Authentication Error Response or a Token Error Response from the FTN Identity Provider.
urn:signicat:error:oidc:IO_ERROR “I/O error while sending OIDC request” An IO error occurring while sending a Token Request.
urn:signicat:error:oidc:REQUEST_CREATION_ERROR
urn:signicat:error:ftn:oidc:REQUEST_CREATION_ERROR
“Error while creating OIDC request” A failure to create an Authentication or Token Request, possibly due to invalid method configuration.
urn:signicat:error:oidc:RESPONSE_PROCESSING_ERROR “Error while processing OIDC response” Receiving a malformed Authentication or Token Response from the FTN Identity Provider.
urn:signicat:error:oidc:RESPONSE_VALIDATION_ERROR
urn:signicat:error:ftn:oidc:RESPONSE_VALIDATION_ERROR
“The OIDC response could not be validated” Receiving an Authentication Response or Token Response which fails validation.
urn:signicat:error:oidc:INVALID_CONFIGURATION
urn:signicat:error:ftn:oidc:INVALID_CONFIGURATION
“Invalid configuration” An invalid method configuration.
urn:signicat:error:ftn:oidc:TIME_LIMIT_EXCEEDED “Time limit exceeded” A transaction that fails to complete within 10 minutes of having started, as mandated by Traficom.
urn:signicat:error:ftn:UNMET_REQUIREMENT_ERROR “An FTN requirement was not met” Receiving an ID Token which is missing one or more of the mandatory FTN claims.

FTN SAML2 error codes

Error code Description (included in response to merchant) Caused by
urn:signicat:error:ftn:REQUEST_CREATION_ERROR “Error while creating SAML request” A failure to create the SAML authentication request.
urn:signicat:error:ftn:REQUIRED_PARAMETER_MISSING “Response from IdP missed required parameter” See description.
urn:signicat:error:ftn:RESPONSE_PROCESSING_ERROR “Error while processing SAML response” Receiving a SAML response that was not processed, either due to unparsable contents or attributes with unexpected values.
urn:signicat:error:ftn:RESPONSE_CONTAINS_ERROR_CODE “The response contains an error code” See description
urn:signicat:error:ftn:RESPONSE_VALIDATION_ERROR “The SAML response could not be validated” The SAML response was rejected by the validation process.