@bemyak what do you mean “hard to make copy”? It’s just data, why is it hard?
3 comments
@nikitonsky Nitrokey and Yubikey can act as passkeys for FIDO2. I use my Flipper Zero for WebAuth, and there the keys are encrypted with device-specific keys, so merely copying them onto another device will now work¹. I'm not sure about other implementations, but I assume they act similarly? |
@nikitonsky I assumed by passkeys you meant something like Yubikey or Nitrokey. Once a key is written there, it can't be extracted by "normal" means. If you want a backup, you buy two devices and write your keys to both of them¹
[1] https://support.yubico.com/hc/en-us/articles/360016614880-Can-I-duplicate-a-YubiKey