Yubico Forum
https://forum.yubico.com/

[SOLVED]Does the Yubikey 4 store the private-keys encrypted?
https://forum.yubico.com/viewtopic.php?f=26&t=2144
Page 2 of 2

Author:  codebase [ Wed Jan 13, 2016 2:47 pm ]
Post subject:  Re: [Q?] Does the Yubikey 4 store the private-keys encrypted

I think the YubiHSM (symmetric only) provides storing keys encrypted on the hardware. see FAQ: https://www.yubico.com/products/yubihsm/#toggle-id-3
Quote:
Yes, YubiHSM uses a secure element. In addition, the key store can be stored encrypted with AES-256 (passphrase needed on startup).



In the FAQ of YubiHSM it says: Are keys deleted on intrusion events? Answer: Yes.
Does this also apply for the Yubikey 4?

Author:  dain [ Thu Jan 14, 2016 1:44 pm ]
Post subject:  Re: [Q?] Does the Yubikey 4 store the private-keys encrypted

codebase wrote:
In the FAQ of YubiHSM it says: Are keys deleted on intrusion events? Answer: Yes.
Does this also apply for the Yubikey 4?


The full answer on that page is "Yes, the YubiHSM uses a secure element that is designed to destroy data in the case of an intrusion". I don't know the details on how this particular secure element deals with this, but the YubiKey 4 uses the same secure element as the YubiHSM, so I would assume so.

Page 2 of 2 All times are UTC + 1 hour
Powered by phpBB® Forum Software © phpBB Group
https://www.phpbb.com/