Questions tagged [yubikey]

45 questions
6
votes
2 answers

How to setup SSH/PuTTY to use Yubikey OpenPGP authentication?

I would like to use YubiKey's OpenPGP interface to authenticate myself against my OpenSSH server on Windows 10: I created the keys according to this: gpg --card-status Reader ...........: Yubico Yubikey 4 OTP U2F CCID 0 Application ID ...:…
burnersk
  • 426
  • 2
  • 9
  • 22
5
votes
1 answer

Is it possible to use macOS 'Keychain' + 'TouchID' for pinentry-program?

Is there some way of configuring pinentry-mac, which I currently use to enter the passphrase for my OpenPGP card (a Yubikey), or a different program that'll store the passphrase in the macOS 'Keychain', so that I just have to use 'TouchID' rather…
OJFord
  • 621
  • 3
  • 8
  • 20
5
votes
1 answer

Scdaemon won't detect Yubikey on Windows 10

This has recently started after I updated to Windows 10 1803 (x64). I have updated Gpg4Win to the latest version (3.1.2), but this has not fixed anything. I have tried the following: Remove the Minidriver…
vagaerg
  • 313
  • 2
  • 4
  • 10
4
votes
1 answer

yubikey/gpg-agent always asking for my PIN when running git commit

recently, git has been asking me for my yubikey pin every 3 or 4 times after i've already typed in my pin. this didn't use to happen before. i'm thinking maybe the card isn't getting read correctly or is getting disconnected somehow. it's become…
reuel
  • 41
  • 1
4
votes
2 answers

Unable to get yubikey neo u2f working in Linux inside of VMWare Workstation

I am unable to get my YubiKey Neo U2F working in VMWare Workstation Pro 12.5. Testing it against Yubico's test site or against Akisec's test site both fail in the guest operating system (running Debian Linux 9), but both work in the host operating…
ChrisInEdmonton
  • 8,656
  • 7
  • 42
  • 49
3
votes
1 answer

SSH server asking for password, but PasswordAuthentication is disabled

what you will see is the current state of a problem I am trying to solve. I restarted sshd before filling the body this question. What I am trying to do: I need to use ssh keys with a yubikey combined to secure authentication to SSH. I need to…
ungeblauscht
  • 81
  • 2
  • 7
3
votes
1 answer

Which pam module is used for gnome admin password requests?

I have added the yubikey pam module to my sudo pam config, and I like the results—no one can get superuser access through sudo or su without a yubikey. Setting aside the fact that this is possibly excessive security for a personal machine, I am…
Mike D
  • 133
  • 6
2
votes
1 answer

Yubikey ssh authentication fails with "signing failed for ECDSA-SK"

I have a Yubikey (Security Key NFC by Yubico) that I'm trying to set up on a Linux machine for SSH authentication in Discoverable keys mode. I've followed this tutorial and created the keys with ssh-keygen -t ecdsa-sk -O resident -O…
user134167
  • 53
  • 6
2
votes
1 answer

Can a website detect if the same physical FIDO key is used for multiple accounts?

If I have an account, say with google, and only use that account from location A, using device A, and another google account only used with device B in location B, if I used the same 2fa FIDO key for both accounts, would google have any way of…
2
votes
2 answers

How to disable OpenSC YubiKey password prompt in Firefox

I have a YubiKey nano plugged into a 2019 MacBook Pro. When I visit some websites (one public example being Gmail), Firefox brings up a password dialog prompting me to enter the YubiKey password. Gmail has nothing to do with my YubiKey. Also, I…
Jay Taylor
  • 231
  • 4
  • 9
2
votes
2 answers

YubiKey 5C is not recognized via a docking station

I have a new YubiKey 5C NFC which, when plugged directly in my laptop, works fine. However, when I plug it into my docking station it doesn't work at all. OS: Linux Mint 20.1 Kernel: 5.4.0-77-generic Docking station: Caldigit ts3 Looking at the…
wasp256
  • 103
  • 7
2
votes
0 answers

ssh-add -s Win10

I am unable to add my card using ssh-add -s on Windows 10, ssh-agent is running. Getting below error: C:\Program Files\Yubico\Yubico PIV Tool\bin>ssh-add -s libykcs11.dll Enter passphrase for PKCS#11:Could not add card "libykcs11.dll": communication…
gy082517
  • 21
  • 1
2
votes
0 answers

Bitlocker Full Drive Encryption with YubiKey

I'd like to secure the hard discs of a new Windows 10 (Pro/Enterprise) PC with BitLocker full disc encryptuon using hardware tokens and PIN (real 2FA). How can I set up a YubiKey so I can use it as SmartCard with BitLocker full disc encryption? And…
Sam
  • 2,074
  • 9
  • 28
  • 37
2
votes
0 answers

Why can't I add an elliptic curve certificate (smartcard, Yubikey, piv) as protector to a BitLocker protected partition?

Yubikey as SmartCard I have been using a SmartCard (Yubikey 4, PIV interface) with RSA certificate to unlock BitLocker protected drives. The certificates are self-signed and generated by the Encrypted File System (EFS) wizard. The OID-number of EFS…
A71
  • 518
  • 1
  • 6
  • 16
2
votes
1 answer

Yubikey with Kleopatra on Windows 10

I have a Yubikey 4C Nano that I use with Linux and MacOS without issue. Recently, I installed a version of Windows on my macbook pro that allows me to dual-boot (so I can run the windows version of our application). I installed the necessary…
jwir3
  • 391
  • 2
  • 7
  • 17
1
2 3