How to Choose the BEST 2FA Key for Security (Yubikey)

แชร์
ฝัง
  • เผยแพร่เมื่อ 17 พ.ค. 2024
  • Is the Yubikey 5 Series best? Or the Security Key series? What about NFC, Nano or the 5Ci? If you feel confused, you're not alone. Here's a simple explanation that will make it easy to decide. Get your Yubikey here: geni.us/yubico-store
    ▶ For one-time passcodes, choose the 5 series: geni.us/yubico-5c
    ▶ For simple 2FA authentication: geni.us/yubico-key
    If you care about your personal security and privacy online, download my free security checklist here:
    ✅ Security Checklist: www.allthingssecured.com/secu...
    🔹🔹🔹What You Should Watch Next🔹🔹🔹
    We've got a lot of great privacy- and security-related content here on the All Things Secured TH-cam channel (although we admit we're a bit biased). If you're wanting to increase your online cybersecurity, here's what's next:
    ✅ How to Set Up a Security Key: • Setup a 2FA Key for MA...
    ✅ Yubikey 5 Compared to Yubikey Bio: • Yubikey Bio vs Yubikey...
    ✅ How to Set Up 2FA authenticator app codes: • Setup 2FA Authenticato...
    🔹🔹🔹Help Support All Things Secured (Recommended Services)🔹🔹🔹
    If you enjoy this kind of practical security and privacy content, one of the best ways you can help support this channel is by using these affiliate links to our favorite products and services. When purchasing through these links, you not only get the best available deal, the companies will also pay us a small commission. Thank you for your support!
    ✅ Recommended Password Manager: www.allthingssecured.com/yt/1...
    ✅ Recommended Identity Monitoring: www.allthingssecured.com/try/...
    ✅ Recommended 2FA Security Key: www.allthingssecured.com/yt/y...
    ✅ Recommended Secure Email: www.allthingssecured.com/try/...
    ✅ Recommended VPN: www.allthingssecured.com/try/...
    *********************
    Video Timestamps
    *********************
    0:00 - Which 2FA Key Should You Buy?
    0:47 - Different Yubikey Series Keys
    1:09 - Question 1: Do You Need One-Time Passcodes?
    2:40 - Question 2: Do You Need Extended Authentication?
    3:55 - Questions 3: Where Will You Use a 2FA Key?
    4:28 - Yubikey NFC Keys
    4:49 - Which Yubikey 2FA Key Should You Choose?
    5:06 - What about 5Ci or Nanos?
    5:48 - Final Recommendations
    *********************
    There are a lot of options when it comes to the @Yubico 2FA security key. In this video, Josh explains how you can tell the difference between them and what features will help you choose which key is right for you.
    #2fa #cybersecurity #persinfosec
  • วิทยาศาสตร์และเทคโนโลยี

ความคิดเห็น • 318

  • @AllThingsSecured
    @AllThingsSecured  ปีที่แล้ว +19

    I'll do my best to answer any questions in the comments here. Get the latest deals on Yubico security keys using this link (affiliate): geni.us/yubico-store

    • @fearless6947
      @fearless6947 ปีที่แล้ว

      how many devices can I use the security key and 5 series?

    • @somelaveenguy6822
      @somelaveenguy6822 ปีที่แล้ว

      Thanks! Just ordered 2 of the 5 series.

    • @herbsabeast1
      @herbsabeast1 2 หลายเดือนก่อน

      To me If my Yubico key got stolen how on earth are they going to know it's mine? For the Bio Yubico key what makes you think they can't just copy your fingerprint off the key? In reality hackers are not going to guess your password but bypass whatever security it has. In reality the hardware key isn't 100% random, but it could be good enough. What happens if I can't find either of my 2fA keys? Am I just out of luck?

  • @rejphotography
    @rejphotography 3 หลายเดือนก่อน +9

    This video helped me. However I was still left scratching my head at the end. I watched it 3 times but never heard anything that talked about what the difference was between the 5 series and the 5 FIPS.
    I’m going to have to find other videos for that info.
    You’re videos are always very informative and to the point. I do feel like you go a little fast sometimes and miss opportunities to provide just a little more info.
    I only recently found your channel and have been binging all videos for over a week now.
    Thank you for all you do.

  • @user-vf3hu3tt9e
    @user-vf3hu3tt9e ปีที่แล้ว +2

    Great video. As an accountant 2fa keys are an important part of my workplace information security plan. I highly recommend them to all accountants.

  • @LuisGuzman-tz3tv
    @LuisGuzman-tz3tv ปีที่แล้ว +3

    Very informative. I had no idea which to choose. Thanks!

  • @laquinceanera
    @laquinceanera 8 หลายเดือนก่อน

    Simple and easy to understand, the best video on this topic!

  • @VinhNguyen-ul8yg
    @VinhNguyen-ul8yg 9 หลายเดือนก่อน

    Bro, thanks for the clear and concise explanation. The best!!!!

  • @ZachDC
    @ZachDC ปีที่แล้ว +22

    I was just about to order such a device from Amazon but decided to watch ONE MORE video (yours) on the topic, and I was very happy to discover you offered an affiliate link. Having been a fan of yours for some time now, I am more than happy to give your channel the credit for the sale than Amazon.

    • @AllThingsSecured
      @AllThingsSecured  ปีที่แล้ว +2

      Thanks so much!

    • @ZachDC
      @ZachDC ปีที่แล้ว +2

      @@AllThingsSecured Ordered 2 ... one for me and my best friend (a Vietnam vet and retiree ... and who wrote and led the tours --- back in the day --- for the Washington Monument interior stairs and the basement tour of the Lincoln Memorial ) BUT who was recently scammed and lost significant funds. EVEN SO, he cut the scammers and their threats off and indeed called his bank and the police. PLEASE -- EVERYONE --- DO ---NOT --GIVE IN - TO THE THREATS. CALL YOUR BANK AND CALL THE POLICE

    • @AyCee21
      @AyCee21 7 หลายเดือนก่อน +1

      Always buy directly from the vendor and not a 3rd party.

    • @Alluringwaterfalls
      @Alluringwaterfalls หลายเดือนก่อน

      @@AllThingsSecured I am confused, I will be working from home and sometimes my local library. I also have a Editor (limited) for my channel. Which one do I need?

  • @jl44257
    @jl44257 7 หลายเดือนก่อน +9

    I think the idea behind the nano is that it makes it more appealing for those who focus on preventing hacks.
    For example I'd rather have a small almost unnoticeable key plugged in my laptop that stays at home 24/7 instead of having a pen-drive sticking out of my port

    • @theepicduck6922
      @theepicduck6922 5 หลายเดือนก่อน +1

      That and form factor is a consideration. Some people prefer to have a laptop bag form factor.

    • @veiledzorba
      @veiledzorba 4 หลายเดือนก่อน

      That's where I am. I'm more worried about crackers and compromised passwords than anything else. As I'm a smartphone refusenik, yubikey makes a lot of sense - but the number of sites that directly support yubikey is VERY small. Most of the sites I use that even allow 2FA are all about the PHOOOOOONNE, which is a complete non-starter for me.

    • @KrypteiaXi
      @KrypteiaXi 4 หลายเดือนก่อน

      So if your laptop is stolen the nano is stolen as well.

    • @veiledzorba
      @veiledzorba 4 หลายเดือนก่อน

      That's VERY true, one of my clients had her laptop stolen. As her backup drive was with it, it was stolen too. But - a desktop at home is far less likely to be stolen, AND you can unplug the yubi when you're not home.

    • @Pusahispidasaimensis
      @Pusahispidasaimensis 3 หลายเดือนก่อน

      @@KrypteiaXi Doesn't matter much as long as the thief doesn't know your passwords

  • @mscarmenw
    @mscarmenw ปีที่แล้ว

    Your video answered my question. Thank you!

  • @miketungate
    @miketungate ปีที่แล้ว +1

    Great video. I have been trying to figure out the differences in keys and they was a nice summary. Thanks.

  • @TheProductCritiques
    @TheProductCritiques 7 หลายเดือนก่อน

    This Yubico YubiKey 5 NFC review is fantastic! Two-factor authentication is a must these days, and this security key seems like a top-notch solution. Your comprehensive review and demonstration really helped me understand how it works and why it's so important for online security. It's great to know that it supports NFC, making it even more convenient. Thanks for shedding light on this essential tool for safeguarding our digital lives! 🔐💻👏

  • @TheCryptoSmit
    @TheCryptoSmit ปีที่แล้ว

    Great video, thank you very much for explanation ❤

  • @matheusmartinsfarias5762
    @matheusmartinsfarias5762 11 หลายเดือนก่อน

    Wonderful. Finally I found a video that expose the info clearly. Tks, obrigadooo

  • @ryancorrea8936
    @ryancorrea8936 ปีที่แล้ว

    Your communication skills are marvelous.

  • @steveshuffle
    @steveshuffle ปีที่แล้ว +7

    brilliant video! I have 2 Yubikey 5-series and will also use them now for 1-time codes where platforms don't allow for keys!

    • @AllThingsSecured
      @AllThingsSecured  ปีที่แล้ว +3

      Yes! It’s a great system. Glad it was helpful!

  • @anothergoogleuser
    @anothergoogleuser ปีที่แล้ว

    Outstanding explanation. Thanks for sharing.

  • @wyattarich
    @wyattarich ปีที่แล้ว +5

    Very properly comprehensive video. Well done!

  • @benjijmason
    @benjijmason 11 หลายเดือนก่อน

    Very useful thank you. I now know which one to get. Thanks!

  • @elksalmon84
    @elksalmon84 ปีที่แล้ว +38

    NFC stands for Near Field Communication. Not Connection. It was created in 2003 by merging contactless payment systems by NXP and Sony that were used by Moscow Metro, Japan Rail East and Hong Kong MTR.

    • @phatcowboy76
      @phatcowboy76 5 หลายเดือนก่อน +3

      Thanks for that. Was about to post a comment saying the same thing. A year late.

    • @majorgear1021
      @majorgear1021 หลายเดือนก่อน +1

      I’m reading this even later. That is good info!

  • @simonc2465
    @simonc2465 ปีที่แล้ว

    Hey great video, I have a question though: I don't own a smartphone and don't have access to apps. Some websites that I have an account with are requiring MFA now and so I am looking into getting a Security key. Which one do you recommend I buy out of the one's that you have talked about?

  • @richardchiamulon9720
    @richardchiamulon9720 ปีที่แล้ว

    Very helpful! Thanks.

  • @PeterWilhelm
    @PeterWilhelm ปีที่แล้ว +7

    Thanks for your video! Can I ask. Is it possible to have a 5 series and then a Security Key as back up (to save a bit of money) linking them both to 1password?

  • @marvindarr
    @marvindarr 10 หลายเดือนก่อน

    thanks for the details.

  • @richardbrown8681
    @richardbrown8681 9 หลายเดือนก่อน

    Well done, question: will a strong password suffice?

  • @handsomeplate40
    @handsomeplate40 6 หลายเดือนก่อน

    Great video!

  • @RobbieRobski
    @RobbieRobski ปีที่แล้ว +7

    I emailed yubico asking them what the difference was between Yubikey Personalization Tool and Yubikey Manager. they said the YPT is no longer under active development, whilst the manager is. The manager looks like a dumbed down version though. With the personalization tool, you can auto program keys one after the other if you plug them in back to back.

  • @danielhenderson7050
    @danielhenderson7050 7 หลายเดือนก่อน +7

    I think you should have elaborated more on the OTP aspect. I did not get that at all. Why would you store a time sensitive code on a key? Very confusing to me! Good video though!

    • @nancym1430
      @nancym1430 หลายเดือนก่อน

      agree-- I was confused on that

  • @Oswee
    @Oswee ปีที่แล้ว

    So, i like the idea of Bio. But does the Bio works with NFC? Or it should be plugged to provide power?

  • @travelman158
    @travelman158 4 หลายเดือนก่อน

    Thank you. Great info!

  • @kemarchristie6050
    @kemarchristie6050 หลายเดือนก่อน

    Really informative vid💯. Dont think usb A will be elimated from laptops for now as most accessories use it

  • @droneforfun5384
    @droneforfun5384 ปีที่แล้ว

    Could you be using two keys at the same time, for backup purposes? If you have finger print authentication, you could have passwordless sign in without risk of giving away access if your key gets stolen?

  • @HKVC
    @HKVC 10 วันที่ผ่านมา +1

    Hi, thanks for the informative video. I have some questions about the 5 Series and the Security Series. I'm not at all tech-savvy.
    As an Apple user mainly (laptop and Iphone), if I get the Security Key NFC, I should go for the one with USB-C right? As USB-C should fit the thunderbolt port?
    Does the YubiKey 5Ci not come with NFC? Why is it the most expensive in the 5 series but with fewer functions? I assume that the lightning connector is helpful to plug into the iphone, but why would I need to plug it in when I can get the cheaper 5C NFC version? I'm kinda confused.
    Thanks!

  • @720petros
    @720petros ปีที่แล้ว +3

    Hi Josh thank you for the great videos. I have a question, should I keep all the 2FA (like 2FA app. and sms otp) options in my accounts if I have a physical security key (Yubikey) or should I delete them and only have physical security as 2FA?

    • @DgamesJ
      @DgamesJ ปีที่แล้ว +1

      I deleted the SMS/Phone yes

    • @720petros
      @720petros ปีที่แล้ว

      @@DgamesJ I delete it to but I was wondering about Authenticator App OTP, should I delete this one to from every account or not?

  • @thatdude610
    @thatdude610 ปีที่แล้ว +1

    @allthingscsecure
    Would the Yubikey 5 nfc work with an nfc reader plugged into my PC via USB? This would allow me to just tap the Yubikey on the nfc reader and not have to plug the key into my computer.

  • @HollyTroll
    @HollyTroll 2 หลายเดือนก่อน

    thank you!

  • @freddy5849
    @freddy5849 ปีที่แล้ว

    Is it possible to use the security key NFC to authenticate on Office 365 mobiles applications like Outlook, Teams, etc ?

  • @AZ-nu2co
    @AZ-nu2co 3 หลายเดือนก่อน

    Need to read all the 1 Star on Amazon before ordering.

  • @xavierloo6978
    @xavierloo6978 ปีที่แล้ว

    I saw from Reddit that people saying that the baseline security key from yubico is more than enough for most users. Is that correct? I’m looking to get couple of these but in tight budget, maybe I should just go for the baseline first?

  • @pedroblanco8311
    @pedroblanco8311 ปีที่แล้ว

    Nicely done, and thanks for publishing this with Spanish subtitles. (Like # 326)

  • @Itsme-vo4fx
    @Itsme-vo4fx ปีที่แล้ว +2

    I’m still somewhat confused. Can I use the same key on multiple devices and can I have multiple keys for all those devices? If I heard you correctly, you said that NFC Security Keys work with iPads, yet Apple says iPads don’t support NFC. My iPad has a lightning port but I may not always have a tablet with that type of charging port. So, future port compatibility is of concern to me.
    Thanks for your security information.

  • @AlexProfTech
    @AlexProfTech ปีที่แล้ว

    Thank you a lot for clear explanation, because I got lost in their variety 😂

  • @thomasshackelford3572
    @thomasshackelford3572 2 หลายเดือนก่อน

    Living in Thailand (other questions about that) and about to order direct from Yubikey and saw the SiamBC dialog box that carries Yubikey but also see the comment below that buy direct and not third party? Thoughts on SiamBC?

  • @shaun4443
    @shaun4443 9 หลายเดือนก่อน

    Thanks.

  • @darkwolf41nite53
    @darkwolf41nite53 ปีที่แล้ว +1

    Awesome!!

  • @fightthebully3331
    @fightthebully3331 ปีที่แล้ว

    Can I use both a yibikey security key USB and usb C together for all my accounts? Keep one for backup.

  • @darkwolf41nite53
    @darkwolf41nite53 ปีที่แล้ว +1

    I really have to get one

  • @HH-qk2or
    @HH-qk2or ปีที่แล้ว +5

    Wow thanks for explaining all of this. You really broke it down.
    I do have a question on 2FA if anyone could give me some insight. I watched another of Josh’s videos where he states that as backup to losing your key you could have a second key with the same info on it(obviously). I don’t know if Josh, or someone in the comments said the following: as a back up to losing your key (assuming you don’t have a 2nd key) you could have the 2FA settings to allow for a key and and the second option being sms. If you couldn’t Authenticate via key and selected the sms option wouldn’t that defeat the whole purpose of the key? Couldn’t a scammer/hacker have your passcode and then choose the sms option (assuming he had found a way to breach the sms authentication process?
    I assume I’m forgetting or not understanding a step in the 2FA process. Any info would be much appreciated, thanks in advance.

    • @fbch32
      @fbch32 ปีที่แล้ว +5

      Out of all 2FA options, sms is the worst. You don't even have to go the passcode and look at your phone. If the person has enough info on you, they can potentially go to your carrier and get a sim card with your number and get the message themselves without having your phone. I would say the 2nd option should be an authenticator app if you don't have a second key.

  • @ViproductionsUSA
    @ViproductionsUSA ปีที่แล้ว +3

    very well put together video but my question is what's the difference between the Yubikey 5C NFC and the FIPS version.
    is it true that the FIPS version can't do the things the 5 series does ?

    • @mr.bobcyndaquil4214
      @mr.bobcyndaquil4214 ปีที่แล้ว

      The federal government requires the use of the FIPS one on their devices. I imagine some contractors for the federal government will need it as well for compliance purposes. Your average joe doesn't need it.

  • @rashaadhartley
    @rashaadhartley ปีที่แล้ว

    Thanks for this, was really stuck at what to choose ... bio looked great until I heard the part of time based codes, I currently use authy and some services don't offer the key option yet.
    I do have question though. If I get 1 key, later on let's say 2-3 months from now after already setting up and using my current, how can I copy and use the 2nd new key as well? Can't seem to find much on this.

    • @severgun
      @severgun ปีที่แล้ว

      You can't extract secret from key. That is whole point.
      You can't clone keys.
      Services that support such keys should allow auth with multiple keys. So you should not clone, but add second key to your account.
      Actually that is common way to backup ability to login. Just buy multiple keys and add them as backup. Store spares in safe place.

  • @blacky4804
    @blacky4804 ปีที่แล้ว

    Great video..I don't own a pc..would still be able to use 5c with my phone only...ty

  • @musiceditor7083
    @musiceditor7083 3 หลายเดือนก่อน

    Would be interested to know where the data goes from the bio series... by the looks of this video, the bio series works through an app. Could they be harvesting that data??

  • @FromN.s
    @FromN.s ปีที่แล้ว

    After you set your security key app, you need this to unlock your phone or is it just pass code?

  • @prathamjitsingh905
    @prathamjitsingh905 ปีที่แล้ว

    Great video

  • @diuran1919
    @diuran1919 ปีที่แล้ว

    ok. I got a lot of like you said one time code on Microsoft authenticator app on phone. Almost all my accounts are there and how this works?
    Do I need still use apps to log in, give that code or only connect yubi key, how this works step by step if I have yubikey 5 series because mostI usng app .

  • @Alluringwaterfalls
    @Alluringwaterfalls หลายเดือนก่อน

    I am confused, I will be working from home and sometimes my local library. I also have a Editor (limited) for my channel. Which one do I need?

  • @canpin
    @canpin ปีที่แล้ว

    Great video. Thanks!
    We have a computer on factory floor that is shared. Can one key accomodate multiple users?

    • @AllThingsSecured
      @AllThingsSecured  ปีที่แล้ว

      If all those users have access to the same key, then yes. You can also configure multiple keys to sign into the same account/device.

  • @adeshsaxena5203
    @adeshsaxena5203 ปีที่แล้ว

    Good video

  • @nancym1430
    @nancym1430 หลายเดือนก่อน

    I'm still confused about the Security Series vs the 5 series with the OTPs. I have accounts that send a OTP. So only the 5 series will work with that? I don't use authenticator apps at this point (still learning). I'm looking to secure some financial accounts, my Google and Microsoft account, and phone (which doesn't have NFC). Will the Security Series do that?

  • @Jell0zz
    @Jell0zz ปีที่แล้ว

    Why do you recommend the Yubikey system over Google Titan Security keys?

  • @pedroleitao1937
    @pedroleitao1937 ปีที่แล้ว

    Hi. I have a Serie 5C NFC and am looking to buy a backup one but preferably less expensive. I only work on Apple ecosystem (Mac Mini, iPad Pro M1 2021, iPad Pro 2020 and iPhone 13). Which model would you recommend? I want it to work with the new Apple ID feature on iOS 16.3 (main reason why I’m buying a second one). Love your videos. Thanks!

    • @AllThingsSecured
      @AllThingsSecured  ปีที่แล้ว +1

      If you wait for a bit, they’re coming out with a new version of their cheaper Security Key series which should be exactly what you need.

    • @pedroleitao1937
      @pedroleitao1937 ปีที่แล้ว

      Cool, perfect. That explains why their Security Key, which was blue, is now black and as “coming soon” in their website. Do you know what will change? Or will it be more or less the same?

  • @gachecem_yt
    @gachecem_yt 2 หลายเดือนก่อน

    What other brands could I buy something similar, or what other cheap options do I have?

  • @robwin0072
    @robwin0072 ปีที่แล้ว

    Josh, I am missing in this video which Yubikey 5 USB-A to buy that allows the touch and one-time Authentication Code.
    2. I have two separate laptops running windows 10 with different login names; am I looking at two keys, one laptop and two keys for the 2nd laptop?
    3. Would you recommend implementing Microsoft BitLocker before setting up Yubikey?
    Thank you for addressing these inquiries.

    • @AllThingsSecured
      @AllThingsSecured  ปีที่แล้ว +1

      Here are some quick answer:
      1) A 5 series with fingerprint authentication doesn't exist. So you either choose to have fingerprint authentication with the Bio or the one-time authentication codes with the 5 Series (I'd recommend the 5).
      2) You can use the same two keys (one primary, one backup) for as many devices as you'd like. Same for online accounts. The only limitation is the number of authentication codes that a Yubikey 5 series can hold (up to 32).
      3) That's really up to you. Does your threat model require you to encrypt your drive?

    • @robwin0072
      @robwin0072 ปีที่แล้ว

      @@AllThingsSecured I cannot interstate my appreciation for your timely reply.
      I will purchase the 5 Series USB-A NFC for Windows login, password management, and one-time authentication (when necessary).
      If I decide to implement BitLocker, would it be advisable to do that before configuring my Yubikeys?

    • @azclaimjumper
      @azclaimjumper ปีที่แล้ว

      I bought 2 5NFC USB-A keys because I wanted a backup key in case I lose my Primary key.
      Both have been paired to my MAC. I subsequently set up 2FA with each YubiKey on my password manager, BitWarden, my Google Account, my Yahoo Account. I don't have a cell phone which is why I've never downloaded the Yubikey Authenticator
      Sadly, banks, brokerage & Brokerage accounts don't allow HARDWARE authenticators like Yubikeys. Shame on them.

  • @hermes8258
    @hermes8258 7 หลายเดือนก่อน

    I already use 2FA from having set up an authenticator app. I am in the process of getting important accounts set up with OTP. So, is there any point in adding another layer via Yubikey? I travel a lot and am a computer nincompoop. Please make a video on this context.

  • @CyberdyneHunterKiller
    @CyberdyneHunterKiller ปีที่แล้ว

    Thanks! Noob here - when you mention after 1:50 that proton mail uses authenticators, you mention a hardware key with an authenticator. I didn’t catch it, but does that mean you can indeed use it for Protonmail?

    • @mercazzo6285
      @mercazzo6285 ปีที่แล้ว

      It mean not every service allows you to use a physical key for 2FA

  • @theoneed2051
    @theoneed2051 ปีที่แล้ว

    Yikes! Now I'm more confused. Looks like the Security Key Series do support U2F (and NFC), which gives them the ability to issue one time passwords, right? So I still don't need the google authenticator, and it support FIDO2... 😩

  • @aabidfaiyaz
    @aabidfaiyaz ปีที่แล้ว

    I’m glad you made this video. Could you help me out, which one should I get? Since it would be for social media/ blog, and Android/ iOS devices. Is there one key that can support iOS, and Android devices? So can you kindly share with me the Amazon link.
    P.s. How different is OTP? Compare to other options it offers, since I got a bit confused, when you where trying to explain…

    • @aabidfaiyaz
      @aabidfaiyaz ปีที่แล้ว

      5:11 is this one end for IOS, and the other end for Type-C aka for Android devices, and laptop? Is this one key device for both mobile brands?

    • @aabidfaiyaz
      @aabidfaiyaz ปีที่แล้ว

      I’m not sure if this’s what you meant by OTP, as in one time you authenticate the social media handle, and other devices, and you don’t need to login every time. And if someone tries login; they would need the security key in order to login?

  • @nonshatter7
    @nonshatter7 15 วันที่ผ่านมา

    This is useful and narrows things down for me.
    You and others often recommend getting 2 of these keys. Is it ok to get the exact same spec for both?

    • @AllThingsSecured
      @AllThingsSecured  14 วันที่ผ่านมา +1

      Yes, you can get the exact same key or a different one. It doesn't matter as long as it fits most of the devices that you use.

    • @nonshatter7
      @nonshatter7 14 วันที่ผ่านมา

      @@AllThingsSecured
      Ta

  • @GraysonCarr
    @GraysonCarr 3 หลายเดือนก่อน

    One use case for the nano is a desktop computer that stays at home. You would probably plug it in to a USB hub so you could reach it easily from your desk, and that way, even if someone were to break in to your home and steal your computer, they probably would unplug all of the cables from the back and wouldn't take the key.

  • @bosa1345
    @bosa1345 3 หลายเดือนก่อน

    Should I buy the yubikey from amazon??

  • @smith2074
    @smith2074 ปีที่แล้ว

    usb to micro usb adapter for smartphone can i use this key on galaxy s20?

  • @TheHannibalTV
    @TheHannibalTV ปีที่แล้ว

    Good info

  • @kantib.anondewar8769
    @kantib.anondewar8769 7 หลายเดือนก่อน

    "can i use a 5 series on my windows 10 desktop to authenticate on a site which only accepts otp, and not hardware keys, without a phone necessary for scanning qr codes?" Security series?---which is 1/2 the price?

  • @widowmaker2911
    @widowmaker2911 ปีที่แล้ว

    I have TH-cam channel and TH-cam tv via Amazon Firestick. If I use yubikey 2FA with my google account, will I need it with TH-cam tv and Firestick? Neither Firestick or tv have usb.

  • @jjmmfi
    @jjmmfi ปีที่แล้ว +2

    NFC DOES NOT WORK ON IPADS! And the fingerprint does not make the 5 bio series anyway more secure than the 5 series because it can always be bypassed by a pin. You can also add a pin to the 5 series, making it as safe as the bio.

  • @stefanguddat4125
    @stefanguddat4125 2 หลายเดือนก่อน

    How about securing password managers like Keepass / Bitwarden, will the standard ones work or is a YubiKey 5 series necessary as well?

    • @AllThingsSecured
      @AllThingsSecured  2 หลายเดือนก่อน +1

      No, a 5 series isn’t required. You can secure any password manager with their lower cost Security Key series.

  • @viralbox5603
    @viralbox5603 ปีที่แล้ว

    still dont know. ssh keys is my usecase. guess 5 nfc, right?

  • @ITILII
    @ITILII ปีที่แล้ว +2

    At 4:05 all the places you would use Yubikey - how about that new product that's all the rage, I believe it's called....wait a minute....a Desktop ? 😏

  • @juliodelarosa1610
    @juliodelarosa1610 ปีที่แล้ว

    muy bien explicado

  • @psycedelic
    @psycedelic ปีที่แล้ว

    the Nano is meant for server halls where burglers dont have access too.. to easy type admin pw for root config etc.

  • @chuuni6924
    @chuuni6924 ปีที่แล้ว

    I was trying to find a key with support for Discoverable Credentials (for username-less authentication) recently, and it was really not obviously (to me, at least) specified either on the retailers' pages or even on Yubico's own website what keys have that support. Is that something you've been playing with?

    • @AllThingsSecured
      @AllThingsSecured  ปีที่แล้ว +1

      What’s the protocol? I’m not familiar with Discoverable Credentials, so I don’t know what protocol it’s based on.

    • @chuuni6924
      @chuuni6924 ปีที่แล้ว

      @@AllThingsSecured It's a feature in both the CTAP and WebAuthn protocols. It goes by a couple of different names, including (but probably not limited to) "discoverable credentials", "resident keys" or "username-less login". I suspect "resident keys" is the term that the key manufacturers use, since it requires a small memory bank in the key implementation.

  • @KennethHensel
    @KennethHensel ปีที่แล้ว +1

    To the creator: At 5:00 the graphic you are showing has the blue ones on the left mislabeled (A vs C).

  • @shar3sh
    @shar3sh ปีที่แล้ว

    hi sir.. i have a yubikey (USB-A/NFC), can i use a converter ( usb A to usb C) to use on my ipad pro?

    • @shar3sh
      @shar3sh 3 หลายเดือนก่อน

      @@QuiveringQuasar it has been 100 years

  • @erinludden9394
    @erinludden9394 9 หลายเดือนก่อน

    How do I stop Microsoft from demanding a "Security Key" every time I try to use my Yubikey on websites? I thought this was supposed to make security easier. Now it is a 3 step login???? Help!

  • @itsawave3127
    @itsawave3127 2 หลายเดือนก่อน

    Did they stop making the blue ones?

  • @cj37373
    @cj37373 ปีที่แล้ว +6

    You are missing something - yubikey does not have to protect against physical attacks. It can be used as a key and then it will do so, but even if you keep it permanently connected it perfectly protects you against phishing websites, which is the only danger that nothing else can protect us nearly as great as yubikey.

    • @AllThingsSecured
      @AllThingsSecured  ปีที่แล้ว +6

      If it doesn’t have to protect against physical attacks, then the Bio would have never been developed.
      We agree, however, on the fact that whether it’s permanently plugged in or kept on your keychain, it is an exceptional protection against phishing attacks.

    • @williamwchuang
      @williamwchuang ปีที่แล้ว +2

      @@AllThingsSecured The FIDO2 standard requires a login before the key is even queried, then you still need to enter a PIN to unlock the key before you tap. Leaving a regular key plugged in all day can damage the USB port because of the leverage of pushing down on the key. That's why enterprises push the mini keys where you are tapping into the port which prevents damage. In order for the stolen key to be an issue, The attacker would have to have the login for the computer, login for the specific websites in question because there is no way to pull the website straight from the key, then enter the pin for the key. And they have to do all of that before the Enterprise or user realizes that their computer got stolen and revokes the key. Realistically, The use of any key eliminates the risk of phishing and basically reduces the attack surface from the entire internet in general to a man on the ground who stole your computer and key.

    • @Zeric1
      @Zeric1 ปีที่แล้ว +1

      @@williamwchuang Many people use a short USB extension to prevent the USB port leverage problem. That also saves on USB port wear if a person's use case requires plugging/unplugging it daily or more often. That's not to say there isn't real value in the very small keys also. It's great there are several options to cover the different needs.

    • @severgun
      @severgun ปีที่แล้ว

      ​@@williamwchuang if attack planned and targeted, any keylogger should be able to collect all your pin codes before theft.
      Having key separate from device will add protection layer from that kind of attack

    • @butmunchass
      @butmunchass ปีที่แล้ว +1

      @@Zeric1 Yeah, I originally bought a Yubico key with the wrong usb interface port so I had to get a usb A to usb C conversion extension anyways but yeah I was worried that if I plug/unplug the key too much I might wear it out. I don't worry about wearing out the usb ports on my computer because my computer has like 6 ports.

  • @ArofahAkbar
    @ArofahAkbar ปีที่แล้ว

    Is Yubikey works with Paypal 2FA?

  • @Good-and-Geeky
    @Good-and-Geeky ปีที่แล้ว

    I have an NFC yubikey. when I use it it just wants to open Safari instead of authenticating Yubico Authenticator like I see on you video. Any ideas?

  • @SmokeFFM
    @SmokeFFM 10 หลายเดือนก่อน

    Windows 11 login will run with the cheapest yubikey????

  • @robloxfan4271
    @robloxfan4271 23 วันที่ผ่านมา

    some reason the blue base key is sadly not available in the uk

  • @garegaupa
    @garegaupa ปีที่แล้ว +3

    What if you have a Yubikey and you lose/break it? Do you have to reset all your 2FA logins, or can it be recovered to a new, blank key? And on a related note, can you have two Yubikeys at the same time (one that you use and one for backup purposes) that are interchangeable?

    • @neuideas
      @neuideas ปีที่แล้ว +4

      People who choose a Fido key typically have more than one, and register at least two with each service that supports them. If you lose or break one, you can use the spare instead. Log in and remove the lost/stolen/broken key from the service, and purchase a replacement.
      If you only have one Fido key, then make sure the service allows alternative ways to log in without the key. Google, Twitter, Microsoft, and others let you generate a one-time-use emergency password. Keep that on file should the worst occur, and you can still get in and remove Fido key functionality until you can get a replacement.
      In my opinion, a TOTP authenticator app is cheaper and less of a hassle. Fido keys are more secure, but they have unique drawbacks which can hamstring things even if there is no theft involved.

    • @AllThingsSecured
      @AllThingsSecured  ปีที่แล้ว +3

      Always back up your key with another key or a different kind of 2FA backup (codes, authenticator, etc). And yes, you can use the same key for as many accounts as you want.

    • @williamwchuang
      @williamwchuang ปีที่แล้ว +1

      Almost all websites will allow you to register multiple security keys. I believe that Twitter only allows you to have one. All websites will give you the option to print out one time backup codes that will get you in the door. You should keep those passwords somewhere safe either at your office in your car or at home. You should also use a backup key or set up OTP.

    • @williamwchuang
      @williamwchuang ปีที่แล้ว

      @@neuideas a security key is so much easier to use than OTP. I just have to plug in the key and just keep tapping for the rest of the day instead of having to keep pulling out my phone and entering the key codes.

    • @neuideas
      @neuideas ปีที่แล้ว

      @@williamwchuang I disagree. A Fido key can be misplaced, malfunction, physically break, or the USB port on the computer could be buggy or nonfunctional. Maybe you simply left the key somewhere else, and you can't get to it right now. This can make things very inconvenient.
      TOTP codes, on the other hand, can be generated in a variety of ways, and don't necessarily require you to have a tablet or phone handy. They are cheaper to back-up, and they are more ubiquitous than Fido key functionality.
      If you require the level of security a Fido key provides, then have at it. Just be aware of its shortcomings, and be prepared for the worst.

  • @danohanlon8316
    @danohanlon8316 9 หลายเดือนก่อน

    I use a pc and an iPad on pretty much a 50/50 basis. The way Yubico configures its range means that, practicably speaking, I need two Yubikeys (AND two backups!). At £80 pounds each, that’s waaaaaaaayyyyyyyyy too much money. Will need to stick, for now (actually, for quite a while, I think) to the ol’ email code confirmation method of 2FA.

    • @timrosede
      @timrosede 6 หลายเดือนก่อน

      Why do you need Four keys? Two Should be enough than?

  • @MikeHawke410
    @MikeHawke410 3 หลายเดือนก่อน

    Ok I have a serious question my mother and I are bad with remembering passwords and I don't want to write the passwords down. I also have a Google 2FA app do I need to get the Yubikey and an Onlykey which from what I heard stores passwords for accounts you have and it has a PIN you enter when plugged in.

    • @AllThingsSecured
      @AllThingsSecured  3 หลายเดือนก่อน

      I would start with a solid password manager and then deal with 2FA. Storing passwords on Onlykey is way overkill and should only be used for your most important accounts. It's not meant to replace a password manager.

  • @koushikraj9815
    @koushikraj9815 ปีที่แล้ว

    If that have add pad manager built in it was super but it is too much priced though

  • @jamesdavis3528
    @jamesdavis3528 ปีที่แล้ว

    do you have to leave the key plugged in during your whole session? or is it only necessary to log in, and then remove it immediately ?

    • @AllThingsSecured
      @AllThingsSecured  ปีที่แล้ว

      Just for login. Then you can remove it.

    • @jamesdavis3528
      @jamesdavis3528 ปีที่แล้ว

      @@AllThingsSecured so then its like a plug in version of that little one time code generator the bank gives you?

  • @deldarel
    @deldarel ปีที่แล้ว +3

    I can see a use for those nanos. If you have a very low crime rate where you live, and you only really have 2FA to protect your accounts from getting hacked from other sources, then that seems ideal to me. This isn't me, but I know people who this would apply to. People who are annoyed that they need to use their auth app while not having any high risk accounts.

    • @AllThingsSecured
      @AllThingsSecured  ปีที่แล้ว

      I keep my key on me at all times and I don’t get asked to plug it in but once a month, so it’s not too inconvenient to me.

  • @chinarut
    @chinarut ปีที่แล้ว

    @4:40 NFC keys will *not* work on an iPad. there is an NFC chip to store secure data but there is no NFC antenna.
    bummer as I love my iPadPro!

  • @anapaulacasseta8332
    @anapaulacasseta8332 ปีที่แล้ว

    What if I use one 5 series (with me) and one security key (home)? Is that a good strategy? What are the possible downsides?

    • @williamwchuang
      @williamwchuang ปีที่แล้ว

      That's a good strategy. The only risk is that if you do lose your key while traveling, then you're locked out of your laptop or your phone. Or if there's like some catastrophic loss like a fire then you would lose both your keys. I keep the backup codes for all the websites in my office so it would have to be a really catastrophic event that affected both my office and my home and my person.

  • @andypejman
    @andypejman ปีที่แล้ว

    Where did you get your matrix-themed skin?

  • @johnspitta6725
    @johnspitta6725 ปีที่แล้ว +1

    My wife and I have 2 iPhones. Each phone has its own Apple ID. Can we use the same hardware keys? 2 total. Or do we need to buy 2 for Each phone? 4 total? Thanks

    • @AllThingsSecured
      @AllThingsSecured  ปีที่แล้ว

      You can use two. I would set it up where you keep one and your wife keeps one, each having a backup for each other.

  • @LinusEpicLiO
    @LinusEpicLiO ปีที่แล้ว

    I can't see anywhere in the video that the 5 series can only store 32 2FA keys which I only knew when it stopped adding any other 2FA because it's full