Re: OT: Passkey usage
Patrick O'Callaghan <[email protected]>
| Newsgroups | gmane.linux.redhat.fedora.general |
|---|---|
| Message-ID | <[email protected]> |
On Thu, 2026-08-13 at 16:51 -0400, Robert McBroom via users wrote: > Lots of sites are promoting the use of a generated passkey vs a > password. Some mention of using a passkey generated for site A on > site B. Seems to be tied to the device. How is this better than a > password? It's better than a password because (in theory) it never leaves the device, and hence is not vulnerable to an eavesdropper. Think of it as one half of an asymmetric key pair. In practice, passkeys are often stored on cloud services to make them more useful across multiple devices (otherwise you would have to register each device independently), so there are potential vulnerabilities if the cloud storage is weak. However they are still more secure than passwords for most people in most situations. poc -- _______________________________________________ users mailing list -- [email protected] To unsubscribe send an email to [email protected] Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/[email protected] Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new