The Future of Hardware-Backed Keys
Jerrod Chong
Vice President, Solutions Engineering
2
The YubiKey Invention
Secure login made simple
3
Alessio and His YubiKey
No batteries or moving parts
4
One Device – Multiple Uses
• Hardware design
Durable molding, gold contacts, capacitive touch sensor
Communicates over USB
• OTP
One touch login, driverless, clientless; self-registration;
Supports multiple OTP protocols (Yubico OTP, OATH, Symantec VIP)
• Smartcard (PIV and OpenPGP)
All-in-one reader and smartcard; new touch-to-sign
• FIDO U2F
Yubico is a co-creator of FIDO U2F authentication protocol
5
YubiKey 4
OpenPGP PIV Config Set 1
Yubico OTP
OATH-HOTP
Challenge-Response
Static Credential
OATH-TOTP FIDO U2F
Config Set 2
Yubico OTP
OATH-HOTP
Challenge-Response
Static Credential
6
Where to Use a YubiKey
Where How
Docker code signing
Smart card (PIV) +
touch-to-sign
Gmail, Google for Work, GitHub,
Dropbox 2 Step Verification
U2F
LastPass 2nd factor authentication
Yubico OTP,
OATH-HOTP
SSH, email encryption, Windows
login
Smart card
(OpenPGP, PIV)
7
About Yubico
•Founded in 2007
•Team of 50 in Palo Alto, Seattle, London, Stockholm
•Millions of users in 150 countries
•Deployed by the Internet thought leaders and Fortune 100s
8
Resources
Yubico Libraries, Reference Code, Docs
Yubico PKCS#11
YubiKey for Enterprises
Yubico FIDO U2F
Yubico Demo Servers
developers.yubico.com
YKCS11
Yubico for Business
FIDO U2F
demo.yubico.com/u2f
demo.yubico.com
9

More Related Content

PPTX
Introduction to epid
PDF
Introduction ciot workshop premeetup
PDF
Zkteco ProCapture-X Bangladesh
PDF
Confusion of Things — The IoT Hardware Kerfuffle
PPS
Aaa lock smith company overview
PPTX
DockerCon SF 2015: Panel Discussion Birds of a Different Feather Soar Together
PDF
Introduction to Docker I Docker Workshop @ Twitter
PDF
Docker 1.11 @ Docker SF Meetup
Introduction to epid
Introduction ciot workshop premeetup
Zkteco ProCapture-X Bangladesh
Confusion of Things — The IoT Hardware Kerfuffle
Aaa lock smith company overview
DockerCon SF 2015: Panel Discussion Birds of a Different Feather Soar Together
Introduction to Docker I Docker Workshop @ Twitter
Docker 1.11 @ Docker SF Meetup

Viewers also liked (20)

PDF
Trust and Image Provenance by Derek McGowan
PDF
Docker Links
PDF
Docker Online Meetup #3: Docker in Production
PPTX
Dockerizing WordPress
PDF
Dockercon Swarm Updated
PDF
DockerCon SF 2015: Docker After Launching 1 Billion Containers
PDF
Monitoring Containers at New Relic by Sean Kane
PDF
Everything You Need to Know About Docker and Storage by Ryan Wallner, ClusterHQ
PPTX
Tyrion Cannister Neural Styles by Dora Korpar and Siphan Bou
PPTX
DockerCon14 Performance Characteristics of Traditional VMs vs. Docker Containers
PDF
Building a Platform with Django, Docker and Salt
PPTX
Docker at RelateIQ
PDF
Distributed, Real-time Web Apps
PPTX
Intro to Docker November 2013
PDF
DockerCon SF 2015: Beyond CI to Production Scale PaaS with Docker
PDF
DockerCon SF 2015: Maintaining the official node.js docker image
PDF
DockerCon EU 2015: Finding a Theory of the Universe with Docker and Volunteer...
PPTX
DockerCon 14 Keynote Day 2
PDF
WOT Cloud Computing Architect Summit
PDF
DockerCon Recap - Online Meetup by Ben Firshman
Trust and Image Provenance by Derek McGowan
Docker Links
Docker Online Meetup #3: Docker in Production
Dockerizing WordPress
Dockercon Swarm Updated
DockerCon SF 2015: Docker After Launching 1 Billion Containers
Monitoring Containers at New Relic by Sean Kane
Everything You Need to Know About Docker and Storage by Ryan Wallner, ClusterHQ
Tyrion Cannister Neural Styles by Dora Korpar and Siphan Bou
DockerCon14 Performance Characteristics of Traditional VMs vs. Docker Containers
Building a Platform with Django, Docker and Salt
Docker at RelateIQ
Distributed, Real-time Web Apps
Intro to Docker November 2013
DockerCon SF 2015: Beyond CI to Production Scale PaaS with Docker
DockerCon SF 2015: Maintaining the official node.js docker image
DockerCon EU 2015: Finding a Theory of the Universe with Docker and Volunteer...
DockerCon 14 Keynote Day 2
WOT Cloud Computing Architect Summit
DockerCon Recap - Online Meetup by Ben Firshman
Ad

Similar to The Future of Hardware-Backed Keys (20)

PDF
YubiKey 5 NFC
 
PDF
Go passwordless with fido2
PPTX
Digital authentication
PPTX
Security Keys Presentation.pptx
PDF
CIS14: FIDO 101 (What, Why and Wherefore of FIDO)
PPTX
[CB16] BLE authentication design challenges on smartphone controlled IoT devi...
PDF
Yubikey solution-brief-fips-r4-1
 
PPTX
Fido U2F PROTOCOL
PPTX
Fido U2F Protocol by Ather Ali
PDF
[HES2013] Hacking apple accessories to pown iDevices – Wake up Neo! Your phon...
PDF
Strong Authentication in Web Application #SCS III
PPTX
Yubikey Neo
PDF
Mozilla chirimen firefox os dwika v5
PDF
ANP catalog: the adversarial ninja playset
PDF
I/O Frog: Not another Sigfox platform?
PDF
A-Passwordless-Future--WebAuthn-for-Java-Developers.pdf
PDF
Strong Authentication State of the Art 2012 / Sarajevo CSO
PPTX
Developing a NodeBot using Intel XDK IoT Edition
PDF
OWASP – Internet of Things (IoT) – Top 10 Vulnerabilities List
PDF
ITAC 2015 - Hacking Smart Devices - 29 Sept 2015.pdf
YubiKey 5 NFC
 
Go passwordless with fido2
Digital authentication
Security Keys Presentation.pptx
CIS14: FIDO 101 (What, Why and Wherefore of FIDO)
[CB16] BLE authentication design challenges on smartphone controlled IoT devi...
Yubikey solution-brief-fips-r4-1
 
Fido U2F PROTOCOL
Fido U2F Protocol by Ather Ali
[HES2013] Hacking apple accessories to pown iDevices – Wake up Neo! Your phon...
Strong Authentication in Web Application #SCS III
Yubikey Neo
Mozilla chirimen firefox os dwika v5
ANP catalog: the adversarial ninja playset
I/O Frog: Not another Sigfox platform?
A-Passwordless-Future--WebAuthn-for-Java-Developers.pdf
Strong Authentication State of the Art 2012 / Sarajevo CSO
Developing a NodeBot using Intel XDK IoT Edition
OWASP – Internet of Things (IoT) – Top 10 Vulnerabilities List
ITAC 2015 - Hacking Smart Devices - 29 Sept 2015.pdf
Ad

More from Docker, Inc. (20)

PDF
Containerize Your Game Server for the Best Multiplayer Experience
PDF
How to Improve Your Image Builds Using Advance Docker Build
PDF
Build & Deploy Multi-Container Applications to AWS
PDF
Securing Your Containerized Applications with NGINX
PDF
How To Build and Run Node Apps with Docker and Compose
PDF
Hands-on Helm
PDF
Distributed Deep Learning with Docker at Salesforce
PDF
The First 10M Pulls: Building The Official Curl Image for Docker Hub
PDF
Monitoring in a Microservices World
PDF
COVID-19 in Italy: How Docker is Helping the Biggest Italian IT Company Conti...
PDF
Predicting Space Weather with Docker
PDF
Become a Docker Power User With Microsoft Visual Studio Code
PDF
How to Use Mirroring and Caching to Optimize your Container Registry
PDF
Monolithic to Microservices + Docker = SDLC on Steroids!
PDF
Kubernetes at Datadog Scale
PDF
Labels, Labels, Labels
PDF
Using Docker Hub at Scale to Support Micro Focus' Delivery and Deployment Model
PDF
Build & Deploy Multi-Container Applications to AWS
PDF
From Fortran on the Desktop to Kubernetes in the Cloud: A Windows Migration S...
PDF
Developing with Docker for the Arm Architecture
Containerize Your Game Server for the Best Multiplayer Experience
How to Improve Your Image Builds Using Advance Docker Build
Build & Deploy Multi-Container Applications to AWS
Securing Your Containerized Applications with NGINX
How To Build and Run Node Apps with Docker and Compose
Hands-on Helm
Distributed Deep Learning with Docker at Salesforce
The First 10M Pulls: Building The Official Curl Image for Docker Hub
Monitoring in a Microservices World
COVID-19 in Italy: How Docker is Helping the Biggest Italian IT Company Conti...
Predicting Space Weather with Docker
Become a Docker Power User With Microsoft Visual Studio Code
How to Use Mirroring and Caching to Optimize your Container Registry
Monolithic to Microservices + Docker = SDLC on Steroids!
Kubernetes at Datadog Scale
Labels, Labels, Labels
Using Docker Hub at Scale to Support Micro Focus' Delivery and Deployment Model
Build & Deploy Multi-Container Applications to AWS
From Fortran on the Desktop to Kubernetes in the Cloud: A Windows Migration S...
Developing with Docker for the Arm Architecture

Recently uploaded (20)

PDF
Zenith AI: Advanced Artificial Intelligence
PPT
Geologic Time for studying geology for geologist
PPTX
Benefits of Physical activity for teenagers.pptx
PDF
Credit Without Borders: AI and Financial Inclusion in Bangladesh
PDF
Architecture types and enterprise applications.pdf
PPT
Module 1.ppt Iot fundamentals and Architecture
PPT
Galois Field Theory of Risk: A Perspective, Protocol, and Mathematical Backgr...
PDF
Developing a website for English-speaking practice to English as a foreign la...
PDF
The influence of sentiment analysis in enhancing early warning system model f...
PDF
How ambidextrous entrepreneurial leaders react to the artificial intelligence...
PDF
Flame analysis and combustion estimation using large language and vision assi...
PDF
Five Habits of High-Impact Board Members
PDF
Consumable AI The What, Why & How for Small Teams.pdf
PDF
OpenACC and Open Hackathons Monthly Highlights July 2025
PDF
“A New Era of 3D Sensing: Transforming Industries and Creating Opportunities,...
PPT
What is a Computer? Input Devices /output devices
PDF
A proposed approach for plagiarism detection in Myanmar Unicode text
PDF
sustainability-14-14877-v2.pddhzftheheeeee
PDF
NewMind AI Weekly Chronicles – August ’25 Week III
PDF
Hybrid horned lizard optimization algorithm-aquila optimizer for DC motor
Zenith AI: Advanced Artificial Intelligence
Geologic Time for studying geology for geologist
Benefits of Physical activity for teenagers.pptx
Credit Without Borders: AI and Financial Inclusion in Bangladesh
Architecture types and enterprise applications.pdf
Module 1.ppt Iot fundamentals and Architecture
Galois Field Theory of Risk: A Perspective, Protocol, and Mathematical Backgr...
Developing a website for English-speaking practice to English as a foreign la...
The influence of sentiment analysis in enhancing early warning system model f...
How ambidextrous entrepreneurial leaders react to the artificial intelligence...
Flame analysis and combustion estimation using large language and vision assi...
Five Habits of High-Impact Board Members
Consumable AI The What, Why & How for Small Teams.pdf
OpenACC and Open Hackathons Monthly Highlights July 2025
“A New Era of 3D Sensing: Transforming Industries and Creating Opportunities,...
What is a Computer? Input Devices /output devices
A proposed approach for plagiarism detection in Myanmar Unicode text
sustainability-14-14877-v2.pddhzftheheeeee
NewMind AI Weekly Chronicles – August ’25 Week III
Hybrid horned lizard optimization algorithm-aquila optimizer for DC motor

The Future of Hardware-Backed Keys

  • 1. The Future of Hardware-Backed Keys Jerrod Chong Vice President, Solutions Engineering
  • 2. 2 The YubiKey Invention Secure login made simple
  • 3. 3 Alessio and His YubiKey No batteries or moving parts
  • 4. 4 One Device – Multiple Uses • Hardware design Durable molding, gold contacts, capacitive touch sensor Communicates over USB • OTP One touch login, driverless, clientless; self-registration; Supports multiple OTP protocols (Yubico OTP, OATH, Symantec VIP) • Smartcard (PIV and OpenPGP) All-in-one reader and smartcard; new touch-to-sign • FIDO U2F Yubico is a co-creator of FIDO U2F authentication protocol
  • 5. 5 YubiKey 4 OpenPGP PIV Config Set 1 Yubico OTP OATH-HOTP Challenge-Response Static Credential OATH-TOTP FIDO U2F Config Set 2 Yubico OTP OATH-HOTP Challenge-Response Static Credential
  • 6. 6 Where to Use a YubiKey Where How Docker code signing Smart card (PIV) + touch-to-sign Gmail, Google for Work, GitHub, Dropbox 2 Step Verification U2F LastPass 2nd factor authentication Yubico OTP, OATH-HOTP SSH, email encryption, Windows login Smart card (OpenPGP, PIV)
  • 7. 7 About Yubico •Founded in 2007 •Team of 50 in Palo Alto, Seattle, London, Stockholm •Millions of users in 150 countries •Deployed by the Internet thought leaders and Fortune 100s
  • 8. 8 Resources Yubico Libraries, Reference Code, Docs Yubico PKCS#11 YubiKey for Enterprises Yubico FIDO U2F Yubico Demo Servers developers.yubico.com YKCS11 Yubico for Business FIDO U2F demo.yubico.com/u2f demo.yubico.com
  • 9. 9