touch-packages team mailing list archive
-
touch-packages team
-
Mailing list archive
-
Message #30572
[Bug 1387908] [NEW] FIDO u2f security keys should be supported out of the box
Public bug reported:
FIDO u2f is an emerging standard for public-private cryptography based
2nd factor authentication, which improves on OTP by mitigating phishing,
man-in-the-middle attacks and reply attacks.
Google Chrome supports u2f devices which are now widely available from
Yubico (new premium neo Yubikeys and Security keys).
However, udev rules are required to setup permissions to allow the web-
browsers which are running as regular users to access the devices in
question.
E.g.:
KERNEL=="hidraw*", SUBSYSTEM=="hidraw", MODE="0664", GROUP="plugdev",
ATTRS{idVendor}=="1050", ATTRS{idProduct}=="0113|0114|0115|0116|0120"
Something like that should be enabled by default, however probably not
encode on the vendor/productid as other vendors will also make u2f
devices.
** Affects: systemd (Ubuntu)
Importance: Undecided
Status: New
** Affects: systemd (Ubuntu Trusty)
Importance: Undecided
Status: New
** Affects: systemd (Ubuntu Utopic)
Importance: Undecided
Status: New
** Affects: systemd (Ubuntu Vivid)
Importance: Undecided
Status: New
** Also affects: systemd (Ubuntu Vivid)
Importance: Undecided
Status: New
** Also affects: systemd (Ubuntu Utopic)
Importance: Undecided
Status: New
** Also affects: systemd (Ubuntu Trusty)
Importance: Undecided
Status: New
--
You received this bug notification because you are a member of Ubuntu
Touch seeded packages, which is subscribed to systemd in Ubuntu.
https://bugs.launchpad.net/bugs/1387908
Title:
FIDO u2f security keys should be supported out of the box
Status in “systemd” package in Ubuntu:
New
Status in “systemd” source package in Trusty:
New
Status in “systemd” source package in Utopic:
New
Status in “systemd” source package in Vivid:
New
Bug description:
FIDO u2f is an emerging standard for public-private cryptography based
2nd factor authentication, which improves on OTP by mitigating
phishing, man-in-the-middle attacks and reply attacks.
Google Chrome supports u2f devices which are now widely available from
Yubico (new premium neo Yubikeys and Security keys).
However, udev rules are required to setup permissions to allow the
web-browsers which are running as regular users to access the devices
in question.
E.g.:
KERNEL=="hidraw*", SUBSYSTEM=="hidraw", MODE="0664", GROUP="plugdev",
ATTRS{idVendor}=="1050", ATTRS{idProduct}=="0113|0114|0115|0116|0120"
Something like that should be enabled by default, however probably not
encode on the vendor/productid as other vendors will also make u2f
devices.
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/systemd/+bug/1387908/+subscriptions
Follow ups
-
[Bug 1387908] Re: [udev] FIDO u2f security keys should be supported out of the box
From: Dimitri John Ledkov, 2016-02-05
-
[Bug 1387908] Re: [udev] FIDO u2f security keys should be supported out of the box
From: Michael Kliewe, 2016-02-04
-
[Bug 1387908] Re: [udev] FIDO u2f security keys should be supported out of the box
From: Dario Bertini, 2016-01-02
-
[Bug 1387908] Re: [udev] FIDO u2f security keys should be supported out of the box
From: Brian Murray, 2015-05-06
-
[Bug 1387908] Re: [udev] FIDO u2f security keys should be supported out of the box
From: Kevin Cernekee, 2015-02-11
-
[Bug 1387908] Re: [udev] FIDO u2f security keys should be supported out of the box
From: Guilhem Lettron, 2015-01-01
-
[Bug 1387908] Re: [udev] FIDO u2f security keys should be supported out of the box
From: Botond Szász, 2014-11-14
-
[Bug 1387908] Re: [udev] FIDO u2f security keys should be supported out of the box
From: Martin Pitt, 2014-11-01
-
[Bug 1387908] Re: FIDO u2f security keys should be supported out of the box
From: Launchpad Bug Tracker, 2014-11-01
-
[Bug 1387908] Re: FIDO u2f security keys should be supported out of the box
From: Launchpad Bug Tracker, 2014-11-01
-
[Bug 1387908] Re: FIDO u2f security keys should be supported out of the box
From: Martin Pitt, 2014-10-31
-
[Bug 1387908] Re: FIDO u2f security keys should be supported out of the box
From: Martin Pitt, 2014-10-31
-
[Bug 1387908] [NEW] FIDO u2f security keys should be supported out of the box
From: Dimitri John Ledkov, 2014-10-31
References