I wanted to add hardware 2FA to Apple ID, and noticed this particularly strange requirement.

I get that two keys is ideal (one as daily driver and one as a backup), but who actually REGULARLY uses both keys? Seems strange.

Can anyone who has this already setup shed some light?

Cotillion
link
fedilink
English
610M

I have 3 keys. One is for regular use at home, second is with me on the go and third as a backup.

@Showroom7561@lemmy.ca
creator
link
fedilink
English
210M

Yubikeys or something else?

Cotillion
link
fedilink
English
310M

Yes, Yubikeys.

@Delogrand@lemmy.world
link
fedilink
English
110M

I ran into an issue with hardware 2FA enabled and a new phone.

One of my Ubikeys is always plugged into my desktop, the other is on my keychain for wireless authentication with my phone.

Apparently, only the most recently used hardware 2FA is allowed to authenticate wirelessly to add a new device. Since my other Ubikey wasn’t wireless the only recourse was to remove the hardware 2FA, add the phone and then re-add the hardware 2FA.

2xsaiko
link
fedilink
English
1510M

Are you talking about this?

At least two FIDO® Certified* security keys that work with the Apple devices that you use on a regular basis.

I think “the Apple devices that you use on a regular basis” is the part that belongs together.

@Showroom7561@lemmy.ca
creator
link
fedilink
English
310M

That would make more sense! Kind of.

I don’t have an Apple device that I use on a regular basis. Does this mean that hardware 2FA won’t work?

jard
link
fedilink
English
5
edit-2
10M

I think you might be overthinking things. “Apple devices you use on a regular basis” just generically means whatever you use and plan to enable hardware 2FA for.

Maybe it’s to emphasize that you’re now going to have to use your hardware keys to regularly use Apple services on your phone, in addition to things like passwords, Face ID, etc.

2xsaiko
link
fedilink
English
310M

Well, then it means you have nothing to worry about since you don’t have any devices it could be incompatible with.

ndguardian
link
fedilink
English
110M

Agreed, I think this is what is being suggested.

Create a post

In the digital age, protecting your personal information might seem like an impossible task. We’re here to help.

This is a community for sharing news about privacy, posting information about cool privacy tools and services, and getting advice about your privacy journey.


You can subscribe to this community from any Kbin or Lemmy instance:

Learn more…


Check out our website at privacyguides.org before asking your questions here. We’ve tried answering the common questions and recommendations there!

Want to get involved? The website is open-source on GitHub, and your help would be appreciated!


This community is the “official” Privacy Guides community on Lemmy, which can be verified here. Other “Privacy Guides” communities on other Lemmy servers are not moderated by this team or associated with the website.


Moderation Rules:

  1. We prefer posting about open-source software whenever possible.
  2. This is not the place for self-promotion if you are not listed on privacyguides.org. If you want to be listed, make a suggestion on our forum first.
  3. No soliciting engagement: Don’t ask for upvotes, follows, etc.
  4. Surveys, Fundraising, and Petitions must be pre-approved by the mod team.
  5. Be civil, no violence, hate speech. Assume people here are posting in good faith.
  6. Don’t repost topics which have already been covered here.
  7. News posts must be related to privacy and security, and your post title must match the article headline exactly. Do not editorialize titles, you can post your opinions in the post body or a comment.
  8. Memes/images/video posts that could be summarized as text explanations should not be posted. Infographics and conference talks from reputable sources are acceptable.
  9. No help vampires: This is not a tech support subreddit, don’t abuse our community’s willingness to help. Questions related to privacy, security or privacy/security related software and their configurations are acceptable.
  10. No misinformation: Extraordinary claims must be matched with evidence.
  11. Do not post about VPNs or cryptocurrencies which are not listed on privacyguides.org. See Rule 2 for info on adding new recommendations to the website.
  12. General guides or software lists are not permitted. Original sources and research about specific topics are allowed as long as they are high quality and factual. We are not providing a platform for poorly-vetted, out-of-date or conflicting recommendations.

Additional Resources:

  • 1 user online
  • 10 users / day
  • 42 users / week
  • 116 users / month
  • 1.08K users / 6 months
  • 1 subscriber
  • 660 Posts
  • 11.1K Comments
  • Modlog