carzian

@carzian@lemmy.ml

This profile is from a federated server and may be incomplete. Browse more on the original instance.

carzian,

Have you considered using github.com/imranr98/obtainiumYou give it the repository of the app and it will handle checking for new versions and updating them

Scraft161, to privacy
@Scraft161@tsukihi.me avatar

Hardware security key options?

I've been thinking about getting a hardware security key and have heard of yubikey before; but I want to see what my options are and if they are worth it in your opinion.
My current setup is a local KeePassXC database (that I sync between my PC and phone and also acts as TOTP authenticator app), I know that KeePass supports hardware keys for unlocking the database.

I am personally still of the belief that passwords are the safest when done right; but 2FA/MFA can greatly increase security on top of that (again, if done right).
The key work work together with already existing passwords, not replace them.

As I use linux as my primary OS I do expect it to support it and anything that doesn't I will have to pass on.

PS: what are the things I need to know about these hardware keys that's not being talked about too much, I am very much delving into new territory and want to make sure I'm properly educated before I delve in.

@linux @technology @technology @privacy

carzian,

Great answer, I will add that another major difference between the Apex Flex and the FlexSecure is the FlexSecure comes with factory default signing keys (which you can change), while the Apex Flex does not. This means you can’t add your own applets the Apex Flex. Para_lyzed touched on this but I wanted to emphasize that the flexsecure gives you the ability to fully manage the implant while the Apex Flex doesn’t. There are trade-offs of course.

carzian, (edited )

If you’re insane this company makes hardware keys that you can implant under your skin and read via nfc dangerousthings.com/product/apex-flex/

(There is also a ring version if for some reason you don’t want to shove a microchip inside you 🫣)

carzian,

Just wanted to add something different from the other posts, definately not recommending it.

That being said, it is a hardware key. You can set it up as a Fido2 key, making it as secure as any of the other options here, it is not biometrics.

Like I mentioned, you have to be a little crazy to go that route

  • All
  • Subscribed
  • Moderated
  • Favorites
  • localhost
  • All magazines
  • Loading…
    Loading the web debug toolbar…
    Attempt #