The YubiKey-how IT WORKS

Source: Internet
Author: User
Tags openpgp yubikey yubikey neo

A single YubiKey have multiple functions for protecting access to your email, your apps and your physical spaces. Use one or more Yubikey features, or use them all. The versatile YubiKey does not require software installation or a battery; Just plug it into a USB port, and touch the button for secure and strong authentication. A Yubikey is something you has that provides security protection beyond something you know (like a username/password). Even if someone steals your username and password (which is happening on bunches lately) they can ' t get into your Account without your physical key.

Let's take a look at the options a Yubikey provides:

Yubico one-time PASSWORD (OTP)

The YubiKey generates an encrypted password that can is only used once. Hackers require physical access of your YubiKey to generate the OTP. This feature was available on every YubiKey except the u2f Security Key.

OATH–HOTP (EVENT)

The Yubikey generates a six or eight character one-time password (OTP) for logging to any service that supports Oath-hot P, a strong open authentication standard. The action is event-based, meaning a new one-time password are generated for each event. The OATH-HOTP feature is available on every version of Yubikey except the u2f Security Key.

OATH–TOTP (Time)

The Yubikey generates a six or eight character time-based one-time password (OTP) (in conjunction with a helper applicatio n) for logging to any service (such as Microsoft Cloud accounts, Google Apps, Dropbox, EverNote) that supports OATH-TOTP , a strong authentication standard. A new password is generated at a set time interval, typically every. The OATH-TOTP feature is available on every version of Yubikey except the u2f Security Key.

Challenge and RESPONSE (HMAC-SHA1, Yubico OTP)

The Challenge-response method is best suited for offline validations. Use for Windows, MAC, and Linux computer login. The CR feature is available on every version of Yubikey except the u2f Security Key.

Piv-compliant SMART CARD

Smart Cards contain a computer chip that brokers data exchanges. These same features is contained in the Yubikey NEO, based on the industry standard Personal Identity and verification Ca RD (PIV) interface over the CCID protocol, which supports PIV on a USB interface.

OPENPGP

In the physical world, documents and data is often validated with a signature. In the virtual world, OpenPGP are a standards-based public key cryptography for signing, encrypting, and decrypting texts, e-mails, files, etc. The Yubikey NEO can securely hold the PGP key.

FIDO u2f

An emerging standard from the FIDO Alliance for applying two-factor authentication to any number of web-based applications , such as Gmail. Works via the browser, Chrome today, Firefox under development) and does not require any drivers. Does not require any client software or drivers.  Read more about FIDO u2f. U2F is available on every version of Yubikey except, the Yubikey standard and Yubikey Nano.

STATIC passwords

A basic Yubikey feature that generates a 38-character static password compatible with any application log-in. It is Most-often used with legacy systems, cannot being retrofitted to enable other 2nd factor authentication schemes, Su  CH as Pre-Boot login. Static password is available on every version of Yubikey except the u2f Security Key.

View all Yubikeys in a chart showing which features they each support. Specific applications and step-by-step instructions is on our Applications page.

The YubiKey-how IT WORKS

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.