top | item 37707113

(no title)

antonjs | 2 years ago

As someone shopping for physical 2FA tokens right now, do you have any recommendations?

discuss

order

stouset|2 years ago

YubiKeys.

Just use FIDO2. I have no idea why OP is trying to use the YubiKey OTP protocol, which is legacy.

jadamson|2 years ago

I wasn't trying to use it, I was just looking around and came across the "YubiKey Personalization Tool", which doesn't show anything about FIDO2.

Now that FIDO2 has been mentioned as something that solves this issue, it turns out there's another tool called the "YubiKey Manager", which allows you to configure/toggle various "applications" on a key, including Yubico OTP and FIDO2.

meepmorp|2 years ago

YubiKeys are fine, just avoid their proprietary OTP thing. They're fairly configurable and also do FIDO/WebAuthn, as well as TOTP/HOTP, PGPcard and PIV.

Alex63|2 years ago

I like my OnlyKey.

slim|2 years ago

nitrokey