| https://utcc.utoronto.ca/~cks/space/blog/sysadmin/YubikeyMos... You know, I owned several revisions of Yubikeys, and I eagerly set them up on every site that would support them. Sadly, unfortunately, they were "not compatible enough" and in fact, it seemed that sites weren't interested in adding or even maintaining existing support, and they fell out of favor with many of us. I really tried! I even went through extraordinary measures to set them up nicely on Ubuntu and Fedora Linux systems! I had ssh keys with mandatory Yubikey auth! It was nearly cybersecurity heaven! I eventually de-registered them everywhere possible, and I got rid of them entirely. In fact I purchased a couple Google Titan keys, and even before registering them, I simply returned them unused. The most secure auth I use now is Microsoft Authenticator, and Google Authenticator for the TOTP stuff. I really don't mind. My general impression is that Yubikeys are "too secure" for consumers to be using. TPTB do not like Yubikeys because of their intrinsically hardened security. TPTB would rather that consumers use security that has some NOBUS breakability in it. I really don't mind, okay? |