U2F / Yubikey

Ideas for ADC may be presented here for others to review and point out flaws or further improve the idea.
Forum rules
If you have an account on the wiki, remember to update the ADC Proposals page for new ideas.

http://dcbase.org/wiki/ADC_Proposals_list
Locked
poy
Member
Posts: 78
Joined: 26 Nov 2008, 17:04

U2F / Yubikey

Post by poy » 07 Jul 2016, 18:03

Investigate whether U2F would be useful to DC, and if it is, how to integrate it.

Some links:
- <https://www.yubico.com/about/background/fido/>
- <https://developers.yubico.com/U2F/>

klondike
Member
Posts: 73
Joined: 14 Nov 2010, 13:06

Re: U2F / Yubikey

Post by klondike » 04 Aug 2016, 19:09

In this case maybe the way to go is supporting TLS client authentication which should be possible using the PKCS#11 support of Yubikey.

Another option would be supporting SASL (as I think IRC does) with the OTP system, but that may be overkill and I'm unsure whether it'd work.

Locked