Tom2 wrote:
A short explanation:
There is no serial number or marking by design on the Security Key by Yubico.
If you'd lose that device none would be able to associate it to you (assuming a corporate environment)
Usually you second (backup keys should be stored somewhere safe in case you'd lose/break your main device)
That makes sense: the design eschews a distinct ID visible to all. Each negotiated-with website can cryptographically validate that key against a previous negotiation with that particular website (usually associated with a particular user account), but cannot validate the key for other sites.
Still, I'd like to see the configuration tool recognize that there's a U2F-only key inserted, even if there's no particular key-specific identifiable data available.
Though...my understanding is that there is supposedly a manufacturer/batch group identifier (which is not unique to the key, but is shared by n keys in a batch of n keys). Perhaps that could also be presented, if it's outwardly readable?
Thanks.
Brendan