stdevel, to security
@stdevel@chaos.social avatar

Finally bought a #YubiKey! 🔐

#Security

goettl, to KindActions German
@goettl@graz.social avatar

Tjo, Handy & Token Verknüpfung gescheitert bei Nichts mit neuem yubico Token 😠 fürs Finanzonline heuer.

Fido Token Verknüpfung ist wohl am SP gescheitert. Rote Box mit Session-ID, Support Bot kennt sich nicht aus und hilft mir nicht. Frust bei mir! Handy-Verknüpfung nicht besser -QR-Code Scan fehlgeschlagen, da vom dummen User (mir) im DigitalenAmt nicht auffindbar. Fail 2.

Bleibts' dann bei SMS Token... Uff. Da war ich mit der Handysignatur schon mal weiter.

goettl, (edited )
@goettl@graz.social avatar

@publicvoit ja das wäre geil.... wenn es das ist, dann bekomme ich jetzt einen Auszucker vor dem Bildschirm.

Übrigens, ja, das war es. Keine FIPS Zertifizierung. Ich glaube, ich bleibe dann beim Handy und den SMS Token, solange das so teuer ist für das »digitale Amt«. Der Rest geht ohnehin gut – ist bestimmt dieselbe hw.

Ich bin davon ausgegangen, dass alle so zertifiziert sind, dass es passt. Alter, 90€ …

yawnbox, to random
@yawnbox@disobey.net avatar

IT helpdesk (Lapsus$): ring ring

Employee: hello?

IT: Hello! This is Roger from IT. We've identified a problem with your Okta access and we need to replace your company Yubikey. We've already mailed you a replacement, return your old Yubikey in the box that will have a return shipping label. Please write down your company email and Yubikey PIN on a sticky note and include it in the box so we can fully remove the old Yubikey from Okta. The delivery is scheduled for today so your work wont be impacted come Monday.

employee: ok!

yes, a is possible

hko, (edited ) to rust
@hko@fosstodon.org avatar

Meet oct-git, a new signing and verification tool for use with the distributed version control system:

https://crates.io/crates/openpgp-card-tool-git 🦀

oct-git focuses exclusively on ergonomic use with OpenPGP card-based signing keys

It is designed to be easy to set up, standalone (no long running processes), and entirely hands-off to use (no repeated PIN entry required, by default). It comes with desktop notifications for touch confirmation (if required)

dvzrv,
@dvzrv@chaos.social avatar
schizanon, to passkeys
@schizanon@mastodon.social avatar

PassKeys seem like a bad idea. Google backs them up to the cloud, so if your Google account is compromised then all your private keys are compromised. I don't see how that's an improvement over password+2FA at all.

Now security keys I get; keep the private key on an airgapped device. That's good. Hell I even keep my 2FA-OTP salts on a YubiKey.

oliklee, (edited ) to ubuntu
@oliklee@chaos.social avatar

I have upgraded two systems to #Ubuntu 24.04 now and also tried #Thunderbird as snap (which is the default for Ubuntu 24.04) on another machine.

The system upgrades were incredibly smooth. Thunderbird in general also works fine, but it doesn't support #GPG with private keys on a #YubiKey yet (which is my usecase). (Yes,there is a workaround, although clunky.)

So it looks like I'll stay on 23.10 a bit longer on my main machine.

https://bugs.launchpad.net/ubuntu/+source/thunderbird/+bug/2009825

rhys, to llm
@rhys@rhys.wtf avatar

My first troublesome hallucination with a in a while: (200k context) insisting that I can configure my existing keys to work with PKINIT with and helping me for a couple of hours to try to do so — before realising that GPG keys aren't supported for this use case. Whoops.

No real bother other than some wasted time, but a bit painful and disappointing.

Now to start looking at PIV instead.

chiefgyk3d, to DEFCON
@chiefgyk3d@social.chiefgyk3d.com avatar

I’m prepping for my credential rollover and setting up the new @yubico 5C NFC keys they sent me as I’m a yubico ambassador and decided to get the @defcon stickers from Keyport to style the new keys I will be swapping to as I’m deprecating USB A. Also got new Keyport covers for backups and to swap out my current ones for a different style.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • GTA5RPClips
  • DreamBathrooms
  • everett
  • magazineikmin
  • Durango
  • InstantRegret
  • Youngstown
  • mdbf
  • slotface
  • rosin
  • thenastyranch
  • kavyap
  • ethstaker
  • megavids
  • tacticalgear
  • cubers
  • cisconetworking
  • osvaldo12
  • khanakhh
  • ngwrru68w68
  • modclub
  • tester
  • anitta
  • normalnudes
  • Leos
  • provamag3
  • lostlight
  • All magazines