#yubikey

shac ron ₪‎shac@ioc.exchange
2025-06-18

It would be nice if my #yubikey stopped murdering my MacBook battery while it’s sleeping

Forstforst
2025-06-17

Heh, looks like it's only on that I can create a for on hardware key (). Desktop and web insists on treating it as an MFA-only device, which is pretty annoying. Authentication with one seems to work fine though.

Baudouin Feildelamdg2@diaspodon.fr
2025-06-17

Salut Masto, je cherche à acheter une clé de sécurité FIDO2 pour sécuriser l'accès à mes services gouvernementaux ici en Tchéquie.

Le fournisseur d'identité recommende YubiKey 5 (ou NFC) ou bien la IdemKey (GoTrust).

Est-ce que vous avez les mêmes recommendations?

#FIDO2 #YubiKey

2025-06-15

@juengling
Ja hab eins in einer alten usbA Version von #Victorinox am Schlüsselbund. Mit USB-Stick, Messer, Schere, Kugelschreiber. Brauche die Werkzeuge sehr häufig. Leider gibts keinen #nitrokey oder #Yubikey dafür.
Als ich es vor 10Jahren gekauft habe wars noch als IT-Tool vermarktet worden.

2025-06-13

Are there good yubikey alternatives that are in a credit card form factor? Ideally something very cross platform friendly.

Something that holds cryptographic keys and can answer TOTP challenges, ideally.

#yubikey #cybersecurity #linux #android #windows

2025-06-13

Nextcloud sicher nutzen: Überblick über Weboberfläche, Clients und essentielle Sicherheitsfunktionen wie 2FA, starke Passwörter und Freigaben.

Teil 3 der Artikelserie »Nextcloud«. 👇

kuketz-blog.de/nextcloud-nutze

#nextcloud #2fa #passwort #sicherheit #security #yubikey #nitrokey

2025-06-12

Nextcloud sicher nutzen: Überblick über Weboberfläche, Clients und essentielle Sicherheitsfunktionen wie 2FA, starke Passwörter und Freigaben.

Teil 3 der Artikelserie »Nextcloud«. 👇

kuketz-blog.de/nextcloud-nutze

#nextcloud #2fa #passwort #sicherheit #security #yubikey #nitrokey

2025-06-12

I'm betting the answer here is "this isn't possible" but if anyone knows how to tell OpenSSH that when it's enumerating pubkeys it should check which of the two known authentication dongles is actually plugged into the computer, and only prompt me to unlock the SK key that belongs to that dongle, not both of them, please tell me how.

#openssh #yubikey

🧿🪬🍄🌈🎮💻🚲🥓🎃💀🏴🛻🇺🇸schizanon
2025-06-09
2025-06-04

Does anyone have experience with either #Yubikey, #Nitrokey or any other hardware security token for both #MFA/#2FA as well as #encryption via #PGP/#GPG or #SMIME?

In particular, I am looking at the Nitrokey 3A NFC. As far as I can tell, Yubico only sells #MFA tokens(?), unless the YubiKey 5 FIPS Series can hold encryption keys as well?

Both price and open hardware aspect definitely speak for Nitrokey, but I do not know anyone who owns such a token... Anyone who I can talk to?

2025-05-31

TIL that Pure Storage issues YubiKeys branded with their logo!

(eBay, not my listing:)

ebay.com/itm/135898756327

Interesting: Just over the side of the logo, the phrase "NO NFC" is seen (not sure if an add-on label, or part of the logo). NFC-enabled keys ship with NFC disabled by default until first power-up (and can be re-disabled in ykman -R / --restrict option):

yubico.com/getting-started/

... so I'm not sure if this means NFC is permanently disabled, but it seems likely. Will update when I get one.

#YubiKey

Closeup of YubiKey in a transparent antistatic bag. Key is oriented "portrait", angled away. Through the bag, the QR-like code, the serial, the "FIPS" label, and the PureStorage logo can be seen.The Pure Storage logo - an orange hexagon as if drawn with a very thick line, with soft corners, and with a break in the lower-right, as if that side had been shortened but leaving the bottom each horizontal. The effect is like a very fat P.
2025-05-27

Fuck #Authy. Fuck it in it's stupid ass. They got rid of the desktop version. Fine. It sucks, but I could deal with it. Then they dropped support for #GrapheneOS. Meaning I'm locked out of everything. Luckily I have a #YubiKey so I can get into most things. I guess it's time to move to something else.

Mad A. Argon :qurio:madargon@is-a.cat
2025-05-27

I realized I didn't wear #yubikey on chain on my neck for 8 days (because of circumstances). And this is absolutely record for me, it was never so long until now!
Does it mean I have a problem? :neofox_laugh_tears_256:

I have it on me now. I couldn't feel so... naked? without armor? anymore.

#nerd #MagicalThinking

The one with the Вовк 🐺braid@alpaka.garden
2025-05-20

#DuckDuckFedi I have a #PGP key on a #YubiKey. I'm now at a new laptop, how do I teach my #gpg installation to make use or the YubiKey for my identity ? All documentation I find is about moving an existing key to a YubiKey rather than making use of an existing key on a YubiKey ...

Norbert Tretkowskinorbert@tretkowski.de
2025-05-18

Mein Nitrokey 3A Mini ist jetzt innerhalb von eineinhalb Jahren zum zweiten Mal defekt und ich bin froh, seit dessen ersten Ausfall immer einen Yubikey als Backup bei mir zu haben...

#Nitrokey #Yubikey

2025-05-15
Ich hab meinen #yubikey wieder gefunden!!! #EinJahrSpäter
Forstforst
2025-05-14

@corsac Afaik the agent can only use the keys stored in the GPG applet on the . What you'll likely want is to have both the GPG and OpenSSH agents running simultaneously, and choose which one you want with the "IdentityAgent" client option. You can, say, specify it per-host in your user's SSH config file, or maybe make some shell aliases :>

Corsaccorsac
2025-05-14

Does anyone know if it's possible to use gpg-agent as ssh-agent while using ed25519-sk resident keys on a Yubikey?

I'm mainly using my GPG authentication key (stored on a Yubikey) as an SSH key, but I'd like to also have the option to use the FIDO-backed keys.

If I store the key handle on the filesystem (using ssh-keygen -K) it works but I'd like to keep it in memory (using ssh-add -K) and that doesn't work with gpg-agent enable-ssh-support

2025-05-14

I have to say that I find it almost funny how broken the fido2 /webauth is now after passkeys have started to be a thing. Was just trying to use it on the demo.yubico.com/ and the loops and amount of errors I see with popups appearing in front of me and talking about passkeys when it's nothing of the sort... And just keeps failing to authenticate... I mean I'm sure I've tried it before on this android phone using the chrome browser and it worked 🥲.

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst