How do you use security keys?

I have two Yubikeys and I use them both on every service that supports FIDO as a 2FA method. One of them is always on my keychain and comes with me everywhere I go. While the other stays in the house.

Then I also use the Yubico Authenticator app on my computers and phone and have my TOPTs stored in both Yubikeys. That way, no matter where I am. As long as I have one of my Yubikey and access to a machine with the Yubico Authenticator installed, I also have access to my TOTPs.

If you do that, make sure that you backup your TOTP seed each time you setup one for an account. Because after you setup a new TOPT on a Yubikey there is no way to export the seed after the fact. Which means that if you lose one of your Yubikeys and you don’t have a backup there is going to be no way to setup a new Yubikey with the same TOPT seeds.

3 Likes