fosstodon.org: About · Status · Profiles directory · Privacy policy
Mastodon: About · Get the app · Keyboard shortcuts · View source code · v4.3.7
Wenn Sie einen #NitroKey (Hardware Token) verwenden, so können Sie Ihre(n) Server auch mittels 2FA bei der Verwendung von
SSH schützen. Wie das geht beschreiben wir in diesem Artikel
Wird es möglicherweise nicht: Jedes einzelne Passwort verschlüsselt mit gpg, privater Schlüssel existiert nur in einem #Nitrokey. Zur Nutzung des Nitrokey muss dessen Gehäuse berührt werden.
https://chrichri.ween.de/articles/a248ad8/nitrokey-3-usb-c
https://chrichri.ween.de/articles/8664afb/storing-passwords-and-using-a-2nd-factor-for-authentication
@splitbrain @xfce I'm using a nitrokey 3Amini. Works fone and without trouble...
https://dokuwiki.nausch.org/doku.php/nitrokey:arch:3a#nitrokey_start_und_secure_shell
"fwupdmgr security" on my ThinkPad T14s Gen4 running on Fedora Linux 41.
Full HSI-4 security standard with secure-boot enabled and Linux kernel in lockdown mode.
Hard disk encrypted with LUKS and the key is stored on a hardware security module (#Nitrokey 3 USB Stick) and protected by a PIN number.
#Nitrokey 3 Firmware 1.8 With PIV Windows Login, NIST P-521, Brainpool
https://www.nitrokey.com/news/2025/nitrokey-3-firmware-18-piv-windows-login-nist-p-521-brainpool
I am looking to buy a set of hardware security keys. The #yubikey seems to be the most common and best documented, but the lack of open source and upgradable firmware puts me off. #nitrokey seems like a better option in this regard, but the design is not as nice. I would also very much like a key that combines both USB-A and C. I have now found the #token2 [PIN+ Dual Release3](https://www.token2.com/shop/product/pin-dual-release3-fido2-1-key-with-openpgp-and-otp-and-dual-usb-ports) which fulfills this, but the company is completely unknown to me, and I haven't found much discussion of their products online, which makes me a bit reluctant. They are, however, a member of the FIDO alliance, which is reassuring. The Linux support for their tools also seem to be second-grade. Does anyone have any experience with them?
I intend to use the key for FIDO U2F/FIDO2 authentication, as well as TOTP for the services that do not yet support FIDO. I also want to use it for storing my PGP and SSH private keys.
#U2F #FIDO #FIDO2 #TOTP #hardwaresecuritykey #cybersecurity
@nitrokey OK, ich werde es versuchen. Bestellt ist der #Nitrokey schon. Mal schauen, ob ich das für #archlinux umsetzen kann.
Mastodon is the best way to keep up with what's happening.
Follow anyone across the fediverse and see it all in chronological order. No algorithms, ads, or clickbait in sight.
Login