Ikeruga · @ikeruga
24 followers · 22 posts · Server kolektiva.social

For people informed about and adjacent topics, what two factor authentication solutions do y'all like using? I've looked at as a solution, and it seems pretty good, but I also see lots of people liking and there's also and . None of them seem BAD, they just seem to have different trade-offs.

Boosts appreciated.

#infosec #2fa #opsec #yubikey #onlykey #SoloKey #nitrokey

Last updated 2 years ago

Andrej · @andrej
464 followers · 1384 posts · Server trees.social

I ordered a security token from onlykey.io. I have problems tracking the package and getting in contact with the support.

Did other people have these kinds of problems with them?

#plsboost #onlykey

Last updated 2 years ago

Habe gerade meinen Ersatz eingerichtet. Easy Peasy.
App gestartet, reingesteckt, Pin1 konfiguriert, Pin2 konfiguriert, ZerstörPin eingerichtet, Backup zurückgespielt (vom Hauptkey), getestet, funktioniert.
Wow, das ging einfach.

#onlykey

Last updated 3 years ago

Part4:
When I put the key in my usb-a slot, I had to get used to the fact, that the onlykey felt wobbly. When I pushed a button the onlykey gave in and move downwards. At first I was never sure if I hit the button or not. But then noticed the reaction with lights from the key which is good feedback. After having done it roughly a 100 times today, maybe even more, I got used to it, although the wobbliness feels like low quality.
Having said all this, try it out. I will get my spare one

#onlykey

Last updated 3 years ago

Part3:
On top of the 2 parts before it offers support for Google Authenticator (TOTP), Yubikey compatible OTP, and Universal 2nd Factor (U2F). For the latter you can touch any key on the only key. Unfortunately, there are also some drawbacks. I can‘t get it with USB-C. The software feels like early 2000s. It also has some minor flaws to my understanding. You cannot see how a slot is configured. If you want to change something you don‘t knowing it was used before or not.

#onlykey

Last updated 3 years ago

Part2: First of all, I like that the is pin protected. If I lose it, someone would have to brute force the pins. Not strong I would say, but better than nothing.
Secondly I can enter a URL, a username and a passwort and then pressing one button opens the address and logs me in. I tried it on several of my accounts, with tab and with return, and it worked smoothly. Even in a virtual machine. On top of this it offers a self destruct feature, which I like. The config can be backed up encr

#onlykey

Last updated 3 years ago

Part1: I spent some time today playing with the . My first try a year ago I stopped, I didn’t get the idea. After having been successful with s the last day, I thought I give it a try. And I am happy. I wondered what issues I had last year. Today, I got everything working smoothly and could immediately see how to integrate into my daily life. The 24 slots (of which only 12 can be use easily at one time) offer so much more than a regular yubikey.

#yubikey #onlykey

Last updated 3 years ago

@kaspar just spent some time to setup mine. Today played with the

#onlykey

Last updated 3 years ago

Question regarding . I wanted to configre a slot witht heir app on macos, but all entries except the label vanish when I click on "Set Slot". In the basic tab as well as in the advanced tab. Any ideas? I downloaded the newest app version

#onlykey

Last updated 3 years ago

Wildy :verified_paw: · @me
62 followers · 478 posts · Server socialpa.ws

Hey, that x offer let me have two 5 NFC for just €35 incl. shipping! Pretty neat, even if I don't like Cloudflare that much :P

Finally, I can give friends keys and not pay thru the nose for it!

(I have an and a Yubi 4 Nano, and Onlykey kinda sucks sometimes).

#yubico #cloudflare #yubikey #onlykey

Last updated 3 years ago

Wildy :verified_paw: · @me
30 followers · 158 posts · Server socialpa.ws

@jonasvautherin I use an . Nice h/w buttons to input PINs or output static/TOTP/whatever you want. Functions as a keeb so you don't need software. Still need to go to a website or use its app to let it set initial time for TOTP tho... but that way it works on anything that has a modern browser and that's all. Supports FIDO2.

the h/w is not completely open source and there's still no support for PGP/SSH on Windows (it's NOT an 'OpenPGP Smartcard'!). I pondered writing something for it!

#onlykey

Last updated 3 years ago

Wildy :verified_paw: · @me
26 followers · 141 posts · Server socialpa.ws

Now, folks. Which do you prefer, and why? , , , or something else entirely?

#2fa #fido2 #u2f #security #key #nitrokey #onlykey #solokey #yubikey

Last updated 3 years ago

Wildy :verified_paw: · @me
22 followers · 84 posts · Server socialpa.ws

@matt In other words, . Because nobody knows what's in this proprietary closed source blob of an USB key.

sucks at windows support tho.

#yubikey #onlykey

Last updated 3 years ago

Wildy :verified_paw: · @me
3 followers · 44 posts · Server socialpa.ws

@keyoxide Hey, any good options for managing for a small site (such as this one)? Currently using this: github.com/PennockTech/openpgp

Also, is nice, but y'know...

PS: It's a shame does not support email encryption/signing on while does :( just recently moved to OnlyKey and ECC keying

#gnupg #gpg #pgp #wkd #keybase #onlykey #android #yubikey

Last updated 3 years ago

parenTessaLation · @jakimfett
-1 followers · 1945 posts · Server hackers.town

@alpinefolk @lightweight how is the portability across platforms on those?

Currently using an (12 slots) for this on my end, and index cards for the infrequent ones.

My favourite part is never fiddling with browser plugins...it even works with mobile, provided I remember to bring my OTG adapter.

#onlykey

Last updated 3 years ago

zeno · @Zeno
108 followers · 1156 posts · Server fosstodon.org

Build myself a necklace for my . This way I can't loose it, at least I hope^^

#onlykey

Last updated 3 years ago

zeno · @Zeno
108 followers · 1156 posts · Server fosstodon.org

One last post about my for today, I promiss^^
As one ladt thing I wanted to find a way to authenticate sudo and other stuff on my servers with my hardwarekey on my PC. Learned about pam-ssh-agent-auth and set that up. Works now.
Just have to deploy that to the rest of my servers.

#onlykey

Last updated 3 years ago

zeno · @Zeno
108 followers · 1156 posts · Server fosstodon.org

While using my for authentication on linux was super easy, getting ssh and gpg working on/with it is a huge pain

#onlykey

Last updated 3 years ago

zeno · @Zeno
108 followers · 1156 posts · Server fosstodon.org

I pulled the trigger and bought an . 5-20 business days shipping, so lets hope for the best^^

#onlykey

Last updated 3 years ago

zeno · @Zeno
108 followers · 1156 posts · Server fosstodon.org

I am thinking about buying a security key.
What I like, vs the yubikey, is the pincode and that it is open source.
And it looks like it works with everything I need it to. SSH, PGP, authentication on Linux, Diskencryption, Authentication with Bitwarden and other online accounts.
For everybody, that has one already, is there something you don't like about it, something that doesn't work.
I am curious, before I pull the trigger.

#onlykey

Last updated 3 years ago