Authentication scheme
Article 9
1. eu-LISA shall develop an authentication scheme, taking into account information on security risk management and the principles of data protection by design and default and access control principles, including accountability, and allowing to trace the initiator of the verification query. 2. The details of the authentication scheme shall be set out in the technical guidelines. 3. The authentication scheme shall be tested in accordance with Article 12. 4. Where carriers access the carrier interface using the Application Programming Interface referred to in Article 4(2), point (a), the authentication scheme shall be implemented by means of mutual authentication.