4 ms·
Google != passkeys. Google may allow multiple keys, but that is outside of what FIDO specifies for passkeys. Here's a source saying that passkeys expect one and
by Zamicol 3y ago
Google != passkeys. Google may allow multiple keys, but that is outside of what FIDO specifies for passkeys.
Here's a source saying that passkeys expect one and only one key:
https://auth0.com/blog/our-take-on-passkeys/ https://auth0.com/blog/our-take-on-passkeys/
"Passkeys are designed to [...] allow the FIDO credential to roam across multiple devices. This [means that there's] no need to repeat enrollment on each device [.]"
- ewoodrich 3y agoNot sure what you mean, I have passkeys enrolled from Apple, Windows and Android devices on my Google account and all trigger the same passkey prompt based on the platform implementation. "Device-bound passkeys that do not support syncing are an option for organizations that require additional proof of provenance of a user’s passkeys". Apple supports what sounds like roaming passkeys but device specific passkeys like you are wanting are already supported by the FIDO spec. I think you're interpreting "no need" here as a if that's a hard requirement. Multiple FIDO hardware keys are already supported on many websites so the idea that the passkey standard mandates a 1:1 relationship doesn't make sense.
- Zamicol 3y agoHow are websites going to implement multi-key user accounts? This is all just left up to implementations?