Hacker News new | ask | show | jobs
by jgrahamc 1359 days ago
It's the "Yubico Security Key" (https://www.yubico.com/pt/product/security-key-nfc-by-yubico...) which supports: WebAuthn, FIDO2 CTAP1, FIDO2 CTAP2, Universal 2nd Factor (U2F). So, should work.
2 comments

Just to clarify: they don’t have the GPG applet. They can do SSH auth via the new fido2 support, but not via older methods like x509 RSA keys or GPG-as-an-ssh-key
x509 certificates (PIV applet) can be elliptic as well, just to clarify.
True. I always forget because they can’t (to my knowledge) use ed25519, just ecdsa.
No, the e-mail i got from them say it is the Yubico 5 NFC or the Yubico 5C NFC

that does have PIV and PGP modules.

https://www.yubico.com/br/product/yubikey-5-nfc/ https://www.yubico.com/br/product/yubikey-5c-nfc/

You can use PIV for SSH just fine.

It's not OpenSSH's weird FIDO mode, but I don't like the FIDO mode anyway because it requires storing a file on the computer.

https://github.com/FiloSottile/yubikey-agent