-
Notifications
You must be signed in to change notification settings - Fork 0
Description
- https://www.yubico.com/
- https://en.wikipedia.org/wiki/YubiKey
- https://github.com/drduh/YubiKey-Guide
- https://support.yubico.com/hc/en-us/articles/360016649279-YubiKey-5-Series-Quick-Start-Guide
Near 49 days since I ordered an hardware authentication device (on my case, after long, long research, eventually decided that would be an YubiKey!) and its finally coming. Well... sort of... it's still on Curitiba! But at least the Brazilian Customs Clearance finally got the package to ask me to pay an small fee standard fee, even if no import tax was need. I'm anxious!
Actually, one of the reasons of my initial interest on Tails was because I would need some place to generate the hardware authentication device private key outside, make an backup, and then import to the smartcard [1]. YubiKey can both be used for GPG asymmetric encryption and SSH authentication (inclusive, based on my research, on Android), so it can work even on nasty threat models
By design smartcards are done in such way that its not possible to extract the private key. And even if the physical hardware is stolen, without the right PIN, the maximum the person can do is reset the key.