3 ms·
Ah ok, I see what you mean. So can we use the PKI solution today to use as a second factor for, say, Google?
by dimonomid 8y ago
Ah ok, I see what you mean. So can we use the PKI solution today to use as a second factor for, say, Google?
- danjoc 8y agoFireFox based browsers support pkcs11 for smart cards like Yubikey. The right way can be built today. Popular services never built it. Maybe when security keys are more popular, they will. I believe trying to make the wrong way work at any cost will only entrench the wrong way. I'd rather point out that there is a better way in hopes that others will adopt it. Your article makes a valid point about the catch 22 of U2F keys. I simply disagree with your conclusions that it is the user who should try harder to make U2F work. It seems like you are pointing out that U2F is fundamentally broken, but you haven't accepted that yet.