Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Support hmac-secret capable hardware tokens #4013

Closed
imp1sh opened this issue Dec 13, 2019 · 3 comments
Closed

Support hmac-secret capable hardware tokens #4013

imp1sh opened this issue Dec 13, 2019 · 3 comments

Comments

@imp1sh
Copy link

imp1sh commented Dec 13, 2019

Summary

It would be nice if any FIDO2 key would work with keepassxc to unlock the vault.

Desired Behavior

Unlock keepassxc datatbase with FIDO2 key.

Possible Solution

Challenge Response seems legit. More details here:
solokeys/solo1#348

Context

I just switched from a yubikey which gave me a static key which Solo key doesn't. Still would like to have a working and secure method to unlock my fault with not only a static password.

@droidmonkey
Copy link
Member

droidmonkey commented Dec 13, 2019

FIDO2 has nothing to do with HMAC-SHA1 challenge response. As stated in the response to the issue over at solo key, the key must support the hmac-secret protocol.

@droidmonkey droidmonkey changed the title Let KeepassXC work with Fido2 Support hmac-secret capable hardware tokens Dec 13, 2019
@Iolaum
Copy link

Iolaum commented Mar 28, 2020

This looks like a duplicate of #3560
There's a POC commit posted there, d63e737 if anyone is able to work on it.

@droidmonkey
Copy link
Member

That is correct, this is a duplicate

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

3 participants