this post was submitted on 04 Nov 2023
152 points (96.9% liked)

Open Source

30284 readers
503 users here now

All about open source! Feel free to ask questions, and share news, and interesting stuff!

Useful Links

Rules

Related Communities

Community icon from opensource.org, but we are not affiliated with them.

founded 5 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 17 points 10 months ago (3 children)

I have yet to get a Yubikey, mostly because I'm scared of losing or breaking it.

[–] [email protected] 15 points 10 months ago (1 children)

That's why you should get two.

And if you only need FIDO2/passkeys, the Security Key series is half the cost ($25) of the Yubikey 5 ($50) and all you really lose is OpenPGP and PIV (smart card) functionality.

Now I like playing with all the features of the 5, but most people should just need FIDO2.

[–] [email protected] 6 points 10 months ago (1 children)

I looked into this a year ago and most sites did not offer to register a second key, so if you lose your key, you can kiss many of your accesses goodbye. I would never have the key to my digital life on a keychain... The idea is good, but it will cause huge damage if you lose your HW key. On the other hand, if you are cautious and use different PWs and a password manager with 2FA, you are quite safe.

[–] [email protected] 2 points 10 months ago

Hear hear. Not allowing spare keys doesn't make sense. I have as many spare keys for my digital stuff as my apartment. But yeah, too few sites support that

[–] [email protected] 6 points 10 months ago

I have had three of them on my keyring for years (one old personal, one newer personal and one for work) and even though they sometimes get lodged between the keys and a separate ring I have on the main ring none of them ever even got close to looking damaged (excluding some mild fading of the print on the oldest one).

[–] [email protected] 6 points 10 months ago

You can store alternative 2FA methods and backup codes in a safe place just in case your YubiKey fails.