Yubico Forum

...visit our web-store at store.yubico.com
It is currently Tue Jan 30, 2018 9:37 pm

All times are UTC + 1 hour




Post new topic Reply to topic  [ 3 posts ] 
Author Message
PostPosted: Tue Apr 28, 2015 1:22 pm 
Offline

Joined: Tue Apr 28, 2015 1:08 am
Posts: 2
So here is what I've done so far in regards to my YubiKey. I configured it for Google and it worked at first. Then I created an HMAC key in Slot 2 and configured it for Windows Local Login. Then I enable the smart card mode and installed PGP certs. Then I installed StartSSL certs using the PIV tool.

So far...

Google Login no longer worked with YubiKey
Windows Login still worked (Thankfully)
The SmartSSL certs are in consistent. I have to keep pressing the button in hopes that it works. Sometimes it works sometimes it doesn't.

I think I've provided as much information as possible. Please let me know if there is any other question that can help you help me. But ultimately I'd like the Google Login to work again with my YubiKey and I'd like it if everytime I plugged in the YubiKey Windows would recognize it as a card reader.


Last edited by dvel2574 on Thu May 07, 2015 1:19 pm, edited 1 time in total.

Top
 Profile  
Reply with quote  

Share On:

Share on Facebook FacebookShare on Twitter TwitterShare on Tumblr TumblrShare on Google+ Google+

PostPosted: Thu May 07, 2015 1:17 pm 
Offline

Joined: Tue Apr 28, 2015 1:08 am
Posts: 2
I appreciate all the help. Who would have known that after a week the answer was so simple that someone who knows about the product could have answered it in less than a week. Yubikey Neo has modes. Something that is not mentioned in the PGP article that tells me to put it into -m82 but doesn't explain that it would disable U2F function. Maybe if an article is going to be written up asking to make changes like -m82 it would be nice to point out what -m82 does and what other options are out there instead of assuming the reader knows what -m82 means. Granted I love this product but the support and the documentation suck!

The solution: is to set the mode to U2F/OTP/CCID with the Eject Flag set using -m86 with ykpersonalize.

Reference after stumbling upon them by accident:
https://www.yubico.com/2012/12/yubikey-neo-openpgp/
https://developers.yubico.com/libu2f-ho ... y_NEO.html
https://www.yubico.com/2012/12/yubikey- ... te-device/


Top
 Profile  
Reply with quote  
PostPosted: Sat May 16, 2015 8:30 pm 
Offline

Joined: Tue Nov 18, 2014 9:14 pm
Posts: 95
Location: San Jose, CA
Does the eject flag really do anything on more recent versions of the Yubikey NEO firmware?


Top
 Profile  
Reply with quote  
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 3 posts ] 

All times are UTC + 1 hour


Who is online

Users browsing this forum: Google [Bot], Heise IT-Markt [Crawler] and 11 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
Powered by phpBB® Forum Software © phpBB Group