YubiKey Bio Series - FIDO Edition (2024)

The gold standard in biometric authentication

YubiKey Bio Series - FIDO Edition (1)

Hardware-based biometric authentication with a new user experience

YubiKey Bio Series - FIDO Edition (2)
Passwordless multi-factor authentication

Secure and convenient passwordless MFA login with the YubiKey Bio authenticator and biometric information using a fingerprint, with a PIN as a fallback.

YubiKey Bio Series - FIDO Edition (3)
Strong second factor authentication

Add a layer of protection on top of a password with the authenticator and the fingerprint verifying user identity.

YubiKey Bio Series - FIDO Edition (4)
Strong biometric security

Whenever a finger is presented to the YubiKey, a template is created and templates never leave the YubiKey.

YubiKey Bio Series - FIDO Edition (5)
YubiKey Bio Series – FIDO Edition

The YubiKey Bio Series is where Yubico’s hallmark hardware security meets a new user experience with fingerprint on device authentication. The YubiKey Bio Series, built primarily for desktops, offers secure passwordless and second factor logins, and is designed to offer strong biometric authentication options.

  • Meets the most stringent hardware security requirements with fingerprint templates stored in the secure element on the key
  • Works out-of-the-box with operating systems and browsers including Windows, macOS, Chrome OS, Linux, Chrome, and Edge
  • Supports FIDO2/WebAuthn, U2F
  • Available in both USB-A and USB-C form factors with biometric support
  • IP68 rated, crush resistant, no batteries required, no moving parts

Read the YubiKey Bio Series product brief >

For businesses with 500 users or more

For SMBs or for individuals

Is the YubiKey Bio Series right for you?
Are you looking for a security key with USB and biometric capabilities?Yes
Do you want to authenticate, using passwordless MFA or strong 2FA, only on your desktop?Yes
Are you interested in using only FIDO2/WebAuthn or FIDO U2F authentication protocols?Yes
Are you operating in a cloud-first environment?Yes
Are you interested in securing shared workstations and mobile-restricted environments?Yes
Looking for more form factors, protocols, and NFC support?
You may prefer the YubiKey 5 Series. Still not sure? Use our handy compare chart or take thequiz.

YubiKey Bio Series - FIDO Edition (6)

“Authenticating with the combined solution of the Duo platform and the YubiKey has always been remarkably easy and fast. Biometrics play an important role in any company’s strategy to go passwordless, and we’ve tested the YubiKey Bio extensively with Duo’s upcoming solution, with great results. We’re excited to provide customers a simpler, faster and more convenient way to protect against phishing and other access threats.”

YubiKey Bio Series - FIDO Edition (7)

“More and more of our customers prefer biometric methods, because they provide strong security protection and are easier and faster to sign in than a password. Yubico carefully considered customer needs in designing the biometric key to make it secure and simple enough for anyone to use. A FIDO2 YubiKey with a biometric sensor is a cause for celebration.”

YubiKey Bio Series - FIDO Edition (8)

“Ping Identity is proud to partner with Yubico to offer a stronger and more flexible approach to authentication. The release of YubiKey Bio joins the best of something you have and something you are in a single offering by delivering a convenient and secure passwordless login experience customers need to thrive in today’s remote workforce.”

YubiKey Bio Series - FIDO Edition (9)

“We’re excited to see biometric authentication added to the YubiKey with the launch of the YubiKey Bio Series. It adds a new dimension to strong authentication security while improving user experience.”

Get started with your YubiKey Bio

Enroll fingerprints on your YubiKey Bio
and add compatible services

It’s easy to get started with your YubiKey Bio!
Yubico Authenticator for Desktop 5.1 and later enables you to enroll and manage fingerprints on all supported operating systems. Use the Yubico Authenticator for Desktop on your Windows, Mac, or Linux computers. Note that on Windows 10, the Yubico Authenticator must be run in Administrator mode.

Watch enrollment video:

YubiKey Bio Series - FIDO Edition (10)

The YubiKey Bio Series – FIDO Edition works with your favorite online applications

The safest way to secure your online accounts

YubiEnterprise Subscription: peace of mind and flexibility for less than a cup of coffee per user/month

YubiEnterprise Subscription simplifies purchase and support while also providing financial benefits. Estimate your potential savings as compared to one-time perpetual purchasing model

Get started

YubiKey Bio Series - FIDO Edition (11)
Find the right YubiKey

Take the quick Product Finder Quiz to find the right key for you or your business.

YubiKey Bio Series - FIDO Edition (12)
Get protected today

Browse our online store today and buy the right YubiKey for you.

YubiKey Bio Series - FIDO Edition (2024)

FAQs

Does YubiKey support FIDO? ›

The YubiKey 5 Series is a hardware based authentication solution that offers strong two-factor, multi-factor and passwordless authentication with support for multiple protocols including FIDO2, U2F, PIV, Yubico OTP, and OATH TOTP.

What is a FIDO compliant security key? ›

The FIDO U2F Security Key by Yubico is an affordable YubiKey (USB authentication key) that works with any service that supports FIDO U2F. To authenticate with a FIDO U2F Security Key, the user simply plugs it in, and touches the gold button. Manufactured in the USA and Sweden, with best practice security processes.

How do FIDO keys work? ›

The FIDO protocols use standard public key cryptography techniques to provide stronger authentication. During registration with an online service, the user's client device creates a new key pair. It retains the private key and registers the public key with the online service.

What is difference between FIDO and FIDO2? ›

FIDO is an overarching term that typically refers to the FIDO Alliance or all FIDO standards. FIDO2 is the most recent FIDO Alliance standard, which allows for passwordless authentication for both mobile and desktop applications through mobile devices.

What does FIDO mean in authentication? ›

FIDO (Fast ID Online) is a set of technology-agnostic security specifications for strong authentication. FIDO is developed by the FIDO Alliance, a non-profit organization that seeks to standardize authentication at the client and protocol layers.

What happens if you lose Fido key? ›

What happens if I lose my FIDO key? It is important to have a back-up means of authentication in case a key is lost. A second FIDO key can usually be registered with services, and kept as a back-up.

What are the advantages of FIDO? ›

The FIDO authentication process makes secure, multi-factor authentication possible in a single gesture. The range of devices and methods available, such as a user's smartphone, security keys and platform authenticators, create a flexible system that can meet the needs of both individual users and the organization.

What devices are FIDO enabled on? ›

FIDO is currently supported in Google Chrome, Mozilla Firefox, Microsoft Edge and Apple Safari (MacOS), iOS web browsers, as well as Windows 10 and Android platforms.

How do I setup my FIDO security key? ›

User registration and management of FIDO2 security keys
  1. Sign in if not already.
  2. Click Security Info. ...
  3. Add a FIDO2 Security key by clicking Add method and choosing Security key.
  4. Choose USB device or NFC device.
  5. Have your key ready and choose Next.

What can I use FIDO2 key for? ›

FIDO2 security keys can be used to sign in to their Azure AD or hybrid Azure AD joined Windows 10 devices and get single-sign on to their cloud and on-premises resources. Users can also sign in to supported browsers.

How do I install a FIDO key? ›

With the FIDO Security Key method, you'll need a specialized USB device.
...
Sign in using FIDO Security Key
  1. Sign in to your ID.me account.
  2. Select FIDO Security Key for MFA.
  3. Insert the key into a USB port during the sign-in process and follow the prompts.

Can I leave my YubiKey plugged in all the time? ›

Do I need to keep my yubikey plugged in all the time? A. No, you only need to insert your yubikey when you are prompted to do so during login. Leaving it plugged in could result in the yubikey being lost or damaged.

Do any banks use YubiKey? ›

Many Bank of America online banking users that have a YubiKey, can now register their security key for account sign-in two-factor authentication (2FA) as well as setting up the Secured Transfer feature to add an extra layer of physical security to their online account.

Does YubiKey work without Internet? ›

Unlike SMS codes and mobile push authentication, YubiKeys do not require a cellular connection to operate. In fact, they don't even require batteries or have any other external dependency. Simply plug the key into a USB port on your device and touch to authenticate.

Which YubiKey should I choose? ›

Buying Options. The best security key for most people is the Yubico Security Key, which comes in two forms: the Yubico Security Key NFC (USB-A) and the Yubico Security Key C NFC (USB-C). These security keys work with most devices, including phones and laptops.

Is FIDO phishing resistant? ›

FIDO2 authentication is regarded as phishing-resistant authentication because it: Removes passwords or shared secrets from the login workflow. Attackers cannot intercept passwords or use stolen credentials available on the dark web.

Is FIDO a 2fa? ›

One of the most secure authentication methods is Fast Identity Online (FIDO) Universal Second Factor (U2F), an emerging universal standard for tokens with native support in platforms and browsers.

What are the different types of FIDO authentication? ›

The FIDO Alliance has published three sets of specifications for simpler, stronger user authentication: FIDO Universal Second Factor (FIDO U2F), FIDO Universal Authentication Framework (FIDO UAF) and the Client to Authenticator Protocols (CTAP).

Who supports FIDO2 passwordless? ›

Azure Active Directory allows FIDO2 security keys to be used as a passwordless device. The availability of FIDO2 authentication for Microsoft accounts was announced in 2018, and it became generally available in March 2021.

Does FIDO2 require a PIN? ›

With FIDO2, there is no need to replace passwords, as there are no passwords required. For those combining a hardware authenticator with a PIN, it's important to note that PINs do not demand the same security requirement as a password.

What if someone steals my YubiKey? ›

If you lose your Yubikey, you can still use your phone authenticator app, but you cannot create a backup Yubikey. However, Yubikey also provides methods to recover your account, so you can get a replacement. An advantage to Yubikey is that it comes on a USB that cannot be identified.

How long does a YubiKey last? ›

How long does a YubiKey last? The internals of the YubiKey's security algorithms currently limits each key to 30+ years of usage. The Yubikey is powered by the USB port and therefore requires no battery and there is no display on it that can break. The key itself will survive years of daily use.

Can I use a YubiKey instead of a password? ›

Delivering strong authentication and passwordless at scale

Thousands of companies and millions of end-users use YubiKey to simplify and secure logins to computers, internet services, and mobile apps.

Does FIDO have good connection? ›

Network Coverage, Reliability, and Customer Service

Fido runs on the Rogers wireless network with coverage for 97% of Canadians, Fido Mobile can offer high-speed LTE almost everywhere in Canada.

Who started FIDO? ›

Montreal-based Microcell Telecommunications Inc. was one of four companies to win a wireless licence from the federal government and launched the Fido brand in 1996. It was the first provider to offer customers a GSM cellphone network in Canada, which at the time was dominated by the CDMA standard.

Does Fido work in the US? ›

Fido RoamTM is a service that lets you use your data, talk and text from your existing Fido postpaid mobile plan (not available with Data and Text only and prepaid plans) in the U.S for $12 a calendar day or internationally in tons of destinations for $15 a calendar day.

Are Fido devices unlocked? ›

Any new device comes unlocked when bought directly from Fido. For assistance determining if your device is unlocked or if you need help unlocking it, please contact our Mobile Billing & Payment team.

How do I use my Fido security key on my iPhone? ›

On iPhone or iPad
  1. Open the Settings app.
  2. Tap your name, then tap Password & Security.
  3. Tap Add Security Keys, then follow the onscreen instructions to add your keys.
  4. Review the devices associated with your Apple ID, then choose to: Stay signed in to all active devices.
Jan 24, 2023

Does Amazon support FIDO? ›

AWS CLI and AWS API

AWS currently supports using FIDO certified security keys only in the AWS Management Console. Using FIDO Certified security keys for MFA is not currently supported in the AWS CLI and AWS API , or for access to MFA-protected API operations.

What is the point of a YubiKey? ›

The YubiKey is an easy to use extra layer of security for your online accounts. A single YubiKey has multiple functions for securing your login to email, online services, apps, computers, and even physical spaces. key to trust. Login with your login credentials and the YubiKey to prevent account takeovers virtually.

What is the difference between YubiKey and security key? ›

But the security protocol for the Security Key and the Yubikey 5 NFC are the same, so it's not that the other keys are “less secure”, it just means that they don't offer that additional layer of security. It's really the difference between 2FA and MFA.

How many keys can a YubiKey hold? ›

FIDO2 - the YubiKey 5 can hold up to 25 resident keys in its FIDO2 application. OATH (Yubico Authenticator) - the YubiKey 5's OATH application can hold up to 32 OATH-TOTP credentials (AKA authenticator app codes).

What ID do you need for FIDO? ›

Driver's license. Canadian passport. Provincial ID (or Age of Majority Card)

How do I check my Fido key? ›

  1. User enrollment. Register a credential. (choose one) No. Yes. ...
  2. Test user login. Enter a credential. activate the FIDO2 key: touch the NFC area, press the button or scan fingerprint. Congratulations! You have successfully tested the FIDO2 security key enrollment and subsequent login processes.

What is FIDO2 pin on YubiKey? ›

The FIDO2 standard was aimed at supporting passwordless login. So the PIN was added to protect against someone stealing your YubiKey. It is optional for websites to ask for the PIN. Most websites are using FIDO2 as two factor authentication, in addition to a password. So they don't ask for the PIN.

Can 2 people use the same YubiKey? ›

You can use the single Yubikey for multiple accounts if it's configured using WebAuthn/FIDO2. Let me know if this helps!

Can a magnet damage a YubiKey? ›

Hi! Sorry for late reply. Static magnetic fields from permanent magnets does not affect the Yubikey.

Can YubiKey get malware? ›

Yubico's YubiKey is built on a foundation of strong authentication. This robust resistance to phishing offers malware protection because it hinges on the ability to detect these attacks before they take place.

Can YubiKey be phished? ›

A registered YubiKey “talks” to your device. When you click on a phishing link and enter your details, you are then prompted to authenticate using your YubiKey. However, the YubiKey and device can see that even a phishing link or site with a valid SSL security certificate is bogus and will refuse to authenticate.

Can you use a YubiKey with a cell phone? ›

Direct Connect (USB-C or Lightning) - Using a YubiKey 5C or YubiKey 5Ci plugged in directly to a mobile device to authenticate. Using a direct connection, the YubiKey can be used in the same manners as with a desktop or laptop, including support for a user touch to verify an authentication event.

Can a YubiKey be hacked? ›

> A Yubikey can be hacked to send arbitrary keystrokes - but that's of limited usefulness.

Can YubiKey be tracked? ›

YubiKeys can be easily numbered, tracked, and managed as a state asset. If a user leaves the organization, the YubiKey can be quickly and securely reassigned to another user.

Can YubiKey get damaged? ›

Our product's quality is top of mind for us and if your YubiKey is damaged we ask that you submit a support ticket with the following information. The order number or copy of invoice from when you purchased the YubiKey. A valid shipping address in the event we send a replacement YubiKey to you.

Is YubiKey really secure? ›

YubiKeys are trusted by the world's largest companies and users have experienced 0 account takeovers.

What services are compatible with YubiKey? ›

Using a Microsoft account with a YubiKey gives you quick and easy access to services such as Outlook.com, Office, Skype, OneDrive, Xbox Live, Bing and more. Just tap your YubiKey and you're in.

Does YubiKey support WebAuthn and FIDO2? ›

The Security Key by Yubico supports both the WebAuthn API and FIDO's CTAP. FIDO2 provides strong authentication as a single factor, eliminating the need for passwords.

Who supports FIDO U2F? ›

FIDO U2F was created by Google and Yubico, and support from NXP, with the vision to take strong public key crypto to the mass market. Today, the technical specifications are hosted by the open-authentication industry consortium known as the FIDO Alliance.

Is it OK to leave YubiKey plugged in? ›

Do I need to keep my yubikey plugged in all the time? A. No, you only need to insert your yubikey when you are prompted to do so during login. Leaving it plugged in could result in the yubikey being lost or damaged.

Do banks allow YubiKey? ›

Many Bank of America online banking users that have a YubiKey, can now register their security key for account sign-in two-factor authentication (2FA) as well as setting up the Secured Transfer feature to add an extra layer of physical security to their online account.

Can YubiKey be stolen? ›

If a token has been lost or stolen, please report this to the ITS Service Desk by submitting an IT request so that the token can be recorded as lost. This ensures it can no longer be used to access your UQ account or resources.

Is YubiKey authorized for DoD network? ›

The Yubikey is one of only three DoD CIO government approved alternate authenticators that meet DoD's rigorous cybersecurity requirements.

Can I use the same YubiKey for multiple devices? ›

Can I use one YubiKey with multiple devices? Yes! Just plug your YubiKey into any computer and log in the way you normally would. That's really it—you'll be able to log in to all of your accounts, same as before.

Can U2F be hacked? ›

Can U2F Be Hacked? No authentication mechanism is categorically impervious to hacking. With that said, thus far, no breaches or vulnerabilities have been reported in the U2F protocol. By design, it protects against phishing attacks.

Is U2F obsolete? ›

The important aspect to note is that U2F means two things in Chrome: it is an authentication protocol as well as an API. The forthcoming update means only the U2F API is being deprecated and that authentication with the U2F protocol will continue to be supported with the WebAuthn API.

What happens if I lose my Fido key? ›

What happens if I lose my FIDO key? It is important to have a back-up means of authentication in case a key is lost. A second FIDO key can usually be registered with services, and kept as a back-up.

What happens if I lose my YubiKey? ›

If you lose your Yubikey, you can still use your phone authenticator app, but you cannot create a backup Yubikey. However, Yubikey also provides methods to recover your account, so you can get a replacement. An advantage to Yubikey is that it comes on a USB that cannot be identified.

Can I use YubiKey instead of password? ›

Delivering strong authentication and passwordless at scale

Thousands of companies and millions of end-users use YubiKey to simplify and secure logins to computers, internet services, and mobile apps.

Can passwordless authentication be hacked? ›

Passwordless authentication is harder to crack than traditional passwords, and it's less prone to most cyberattacks. But, it's not impervious to hacking. The most sophisticated attackers will always find a way.

Top Articles
Latest Posts
Article information

Author: Arline Emard IV

Last Updated:

Views: 6220

Rating: 4.1 / 5 (72 voted)

Reviews: 87% of readers found this page helpful

Author information

Name: Arline Emard IV

Birthday: 1996-07-10

Address: 8912 Hintz Shore, West Louie, AZ 69363-0747

Phone: +13454700762376

Job: Administration Technician

Hobby: Paintball, Horseback riding, Cycling, Running, Macrame, Playing musical instruments, Soapmaking

Introduction: My name is Arline Emard IV, I am a cheerful, gorgeous, colorful, joyous, excited, super, inquisitive person who loves writing and wants to share my knowledge and understanding with you.