#YubiKey

Maurice Kevenaarmkevenaar@masto.nu
2025-12-11

Replacing my 2019 Yubico YubiKey 5 NFC and 5Ci with YubiKey 5C NFC variants. This time with a custom #YubiStyle

The Double Rainbow variant will be my daily driver. The Red key will serve as the backup key in case the rainbow variant breaks.

Now migrating all services from my old keys to the new keys. Lucky for me, I have documented all uses of my old keys.

#security #yubikey #otp #openpgp #fido

Yubikey
Mad Argon :qurio:madargon@is-a.cat
2025-12-08

Damn, #Yubikey migration almost complete...

It's like most people dependent on smartphones for #2FA logins everywhere, but much worse. Smartphone usually has one #authenticator app, everything visible in one place, Yubikeys have various modules inside and I use most of it for many different things.
Authenticator part here is the easiest one, at least I have nice list of accounts/services to display with one simple command. But I have to remember U2F enabled services myself... Or check how many files I encrypted with GPG, or where I could use ssh keys...
Oh, and I use also pam-u2f and have FIDO LUKS login configured...
:blobCat_anxious_sweat:

Seriously, user could become even more dependent in more complex ways...

Why the hell these things don't just support firmware updates?!

0xKaishakunin0xKaishakunin
2025-12-08

Im 2. Teil zeige ich wie man mit Schlüssel offline erstellt und auf beliebig viele Token wie oder verschiebt.
Damit ist auch ein der geheimen Schlüssel möglich

cryptomancer.de/posts/20251208

0xKaishakunin0xKaishakunin
2025-12-07

Ich habe eine kurze bebilderte Anleitung geschrieben wie man mit und Schlüssel direkt auf wie oder erstellt

cryptomancer.de/posts/20251207

chris@strafpla.netchris@strafpla.net
2025-12-07

It’s one of the days when I receive an unexpected Apple two-factor request so I change the password for my #AppleID, log out every device connected to it to discover that my iPhone does not like to talk to my #Yubikey.
(But the rest of the devices work.)

Ryan Clough :scremcat:CiscoJunkie@techhub.social
2025-12-06

Wow, getting SSH set up *resiliently* for #Yubikey (FIDO2) auth was more work than I expected. Got it working, though!

2025-12-06

@leckse Should I use my socialsecuritynr instead ?
Or one of those -totally-not-fallible #yubikey / securitykey ?

How bout fingerprints ?
Or maybe my #retina ?

2025-12-05

I just realized that I can now use an SSH key to sign my commits with #Git (and therefore on #GitHub) 🤯

Made the set-up with my #Yubikey way easier, the struggle with GPG was real.

Mathias MagdowskiMMagdowski@bildung.social
2025-12-03

@hsanhalt Vielleicht kann uns die @hsanhalt dann mal an der @uni-magdeburg.de beraten, wie man einen Single-Sign-On für die universitären IT-Dienste wie E-Mail, Cloud oder Moodle mit einem zweiten Faktor schützt (wie z.B. einem #YubiKey, den ich jedoch rein privat nutze).
Wir nutzen nämlich keine #2FA sondern vertrauen rein auf einen Benutzernamen und ein Passwort, das selbstredend für alle Dienste gleich ist, auch für den WLAN-Zugang.

Foto des YubiKey an meinem Schlüsselbund
2025-12-03

github.com/gitbls/sdm update enables #yubikey to unlock encrypted rootfs partitions.

#raspberrypi

🇵🇾 Snafu 🐦:linux: 🇺🇦snafu@digitalcourage.social
2025-11-30

Nachdem die Nitrokey 3A Mini offenbar so billig produziert sind, dass mir gestern einer beim simplen Abziehen von einem etwas festeren USB Port in seine Einzelteile zerfallen ist, habe ich beschlossen, auch den anderen einzumotten und komplett zurück zu Yubikey zu wechseln. Die Dinger sind unkaputtbar und auch IP68 zertifiziert. Nutze ich schon seit >15 Jahren ohne jegliche Probleme.

An sich mag ich den Open Source- und Transparenz-Gedanken, unterstütze das auch aktiv, aber wenn die physische Qualität dermaßen unterirdisch ist wie beim Nitrokey 3A Mini (die anderen kann ich nicht beurteilen), dann hilft mir das auch nicht. So ein Security Key ist einigermaßen zentral, der darf nicht einfach so zerfallen bei normaler Nutzung.

#Yubikey #Nitrokey #SecurityKey #Security #FIDO2

2025-11-30

Ok, I got the #Yubikey unlock for #LUKS working.
Problem is, it still needs my password initially for #Grub, which means it's kinda pointless, as grub needs the entire root disk unencrypted to get to /boot 😞

Xyla (🔜39C3 - ☎️5477)Xyla@transfem.social
2025-11-28

if anyone was planning to get some more yubikeys now might be a good time they are currently running a Black Friday discount on the 5 series which is even better than their student discount

#tech #yubikey #security #pgp #fido

Frank Hamm 🏃‍➡️👟🥾DerEntspannende@vivaldi.net
2025-11-28

#BlackFriday Sale at Yubico: 30% off the #YubiKey 5 NFC and 5C NFC (Limit 4 Total)
yubico.com/de/store/2025/black

Stewart X Addisonsxa@fosstodon.org
2025-11-25

RE: infosec.exchange/@BleepingComp

Considered a #Yubikey hardware security key but not taken the plunge. 30% off in their Black Friday sale: yubico.com/gb/store/2025/black

Also #Protonmail (which I use for cloud-based email - based in Switzerland - that isn't sucking your data, along with their #ProtonPass password manager) have some good intro offers: proton.me/mail/black-friday

For some other security related #BlackFriday discounts check out fosstodon.org/@BleepingCompute

[EDIT: Yay - quote toots are now working on @fosstodon!]

Jiří Eischmannsesivany@vivaldi.net
2025-11-24

Just a quick reminder that @yubico is offering 30% off the #Yubikey 5 NFC and 5C NFC (for Czechs: in #Alza it's even 36% off) until Dec 1, so now is the perfect time to make your life more secure.

yubico.com/store/2025/black-fr

#BlackFriday

David Nelsondmnelson
2025-11-24

The Yubico Black Friday sale is on. 30% discount on the 5 NFC and 5C NFC.
yubico.com/store/2025/black-fr

uvok cheetahuvok@woof.tech
2025-11-21

Why doesn't my #yubikey work as #ssh key under #ArchLinux ?

- pcscd must be running
- ccid needs to be installed
- (maybe???) user needs to be part of pcscd

2025-11-20

Joost van Dijk from @yubico tells us about #OpenSSH combined with the #FIDO standard at the @nluug #najaarsconferentie. This info applies on any FIDO #securitykey, not just #yubikey.

#opensourceconference #Linuxconference #conference #conferentie #NLUUG #nluug25nj #hardwarekey

Joost van Dijk presenting in front of a slide about hardware-protecting SSH keys.

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst