A hardware secure token that requires a fingerprint to unlock adds another factor to your secure authentication.

  • Something you have
  • Something you are

Even if the key falls out of your control, the fingerprint reader would render it useless

yubico

I’m a big fan of yubikeys, they have the bio series with built in fingerprint reader, and now the multi-protocol edition is not only webauthn fido2, it acts as a smartcard/PIV (i.e. ssh keys) Tech Details

The one annoying thing is the multi-protocol version isn’t generally available, the fido2 edition is available

feitian

also provides fingerprint fido2 keys, but I’m not familiar with their security reputation https://shop.ftsafe.us/collections/fido-security-key-biometric

others

Any other biometric key options?

  • Admiral Patrick@dubvee.org
    link
    fedilink
    English
    arrow-up
    2
    ·
    1 day ago

    Definitely a fan of Yubi. Long overdue to upgrade mine to something more modern, but I love that they’re so easy to customize and there’s a Linux utility to manage them.