![]() So, to finally answer your question, I think that requiring YubiKey on every access of your password manager is fucking obnoxious and gains you no extra effective security. To access it from anywhere else, it's annoying but not obnoxious - but I almost never need it anywhere else, so that's fine.Īnd by having both TOTP and Webauthn enabled, I have a safety net in case one option suddenly shits the bed. So to access the vault from my phone, the phone needs to be unlocked and I need to be present. When prompted, depending on the key, touch the contacts on the sides of the key or the golden ring on. USB-C support - Connect the YubiKey 5Ci or any USB-C type YubiKey. ![]() As iPads do not have NFC, they will only work through a Lightning or USB connection. The best features of the YubiKey 5C NFC are its eponymous USB-C connector and NFC capabilities, which lets it communicate with. USB Type: USB-C, Lightning NFC-enabled: No Authentication Methods: Passwordless, Strong Two Factor, Strong Multi-Factor Identity & Access Management: AWS. The Yubico Authenticator will work with any USB, Lightning, or NFC-enabled YubiKeys. The iPad Pro and iPhone models are not supported by that several. New logins to Bitwarden require both the master password (not written down anywhere and is just random garbage) and either a TOTP (generated in a separate app that does nothing but TOTP I use OTP Auth) or Webauthn (the YubiKey). The 5Ci, for instance, has Apple Lightning and USB-C connectors. It is compatible with both lightning devices like most iPads and iPhones as well as USB-C. That said, I use Bitwarden, and on my iPhone the device has to be unlocked to even get to the app, and then the app itself requires Face ID.Īutofill in my browser on my iPhone requires Face ID. My SSH keys are on a smart card, and I also have a YubiKey. To give you some background: "cybersecurity", as it's becoming known, is my day job. ![]() Isn't it a fair assumption to assume it might get lost? ![]() I'm not saying your YubiKey should be "cached", I'm saying that if you require it at DB unlock, it can safely remain unlocked until you choose to lock it (or, more likely, that your device is restarted. The YubiKey 5Ci is a hardware USB-C security key equipped with Lightning and USB-C connectors, and boasts 6 applications that can be used simultaneously.
0 Comments
Leave a Reply. |