No yubikey inserted. 1 and the entry level Yubikey. No yubikey inserted

 
1 and the entry level YubikeyNo yubikey inserted This article provides tips on where to place your YubiKey when using it with a mobile phone

Touch the button on your YubiKey to. Start the Yubikey personalization tool. 0; Steps to reproduce. The OATH and PIV applications are fully supported, with partial support for Yubico OTP. As this is an open bug and not a user configuration issue I will flag this post as solved. Due to the firmware update, FIPS recertification was also necessary. You will be instructed to insert your YubiKey. I've been trying to make Yubikey Personalization GUI to work with my 2 Yubikeys (Neo and 4 Nano). Insert the YubiKey into your computer USB port, make sure the YubiKey pop up window is the active window on your machine, and then tap the YubiKey. 1 Yubikey Client API features The Yubikey Client API implements the following Yubikey 2. Instead of passwords, FIDO authentication uses registered devices / security keys to. 5. Both of these readers also work well with other manufacturer’s keys like the YubiKey 5 NFC to read the x. 0. # 6. $ sudo dnf install -y yubikey-manager yubikey-manager-qt. So my plan is to use two devices on a daily basis. Open yubioath-desktop, either from the command line or through the application launcher. Then it said Remove the Yubikey and insert the next one. "Click within the YubiKey #1 field. 1 How to check my permissions?However, when I just tried to login to my desktop, it still displayed the PIN login and I inserted it and it logged me in. This is why non-discoverable credentials take no storage on the YubiKey and are unlimited. Actually I was trying to find a device that supports U2F (or something that would allow users to do an 'insert' action as a 2nd factor after they input the username & password). To verify this, you can use the Registry Editor. usually, the disk will light up on inserting into the usb port, telling you that your computer has recognised the device. Press Finish to program the YubiKey. my YubiKey with USB-C is not being recognized. If you haven’t already open the Yukikey Manager and insert your Security Key NFC to your computer. 1 and a Yubikey 4. PS: This Yubikey initially. Step 2: The User Account Control dialog appears. If you receive the error, Yubikey core error: no yubikey present - make sure the YubiKey is inserted correctly. For general NFC troubleshooting steps, please see our article Troubleshooting NFC with YubiKeys and Security Keys. Start with having your YubiKey (s) handy. Start the Personalization Tool: Insert the YubiKey and choose the Challenge/Response tab at the top of the Personalization Tool: Click the HMAC-SHA1 button which takes you to the HMAC-SHA1 programming/setup page: From the HMAC-SHA1 programming/setup page: Click to select “Configuration Slot 2. Seems to still work via NFC so I'm ordering a replacement that I can rebind my LastPass to ASAP. Meaning, the Yubico OTP uses HID protocol (same as a USB keyboard) to enter the OTP codes. A nice workaround is to allow Veracrypt auto-mounting with a blank password and a few keyfiles. If your device is running iOS/iPadOS 15 or higher, and you would like to keep your Focus modes on while using the Smart Card on iOS feature, you may instead add Yubico Authenticator as an Allowed Notification. I get the same when running as regular user or root. Despite this, the Yubikey is apparently popular (in 2016, they were. 0 with apt install on ubuntu 21. Disabling it will not erase the credential. Also, notice the YubiKey is identifying itself with all its functions enabled as “YubiKey OTP+FIDO+CCID”: 15. [If you have configured the "Require user input (button press)" option of your YubiKey, it starts blicking. Yubikeys use U2F, which is based on public-key cryptography. In the password prompt, enter the password for the user account listed in the User Name field and click Pair. You will be connected if everything is successfully. So we're starting to trial our first Yubikey, and we're having no luck getting it to show up in the Personalization tool. fc18. Open YubiKey Manager. My Yubikey can be seen with the Yubikey Personalization Tool running on Windows. Re-enter password and select open. Setting up a New Key What to do with your first Yubikey. All current TOTP codes should be displayed. Very different concept that benefits your organization as the PIN is unlocking the smart card rather than dealing with the issues of password based auth. Select Add. Read the certificate template and manually create a local key for your yubikey 4. Having this driver installed the behaviour changes to the following. Select the the configuration slot you would like the YubiKey to use over NFC. First, you’ll need to ensure that your system is fully up-to-date: kali@kali:~$ pcsc_scan Scanning present readers. Click the dropdown arrow below Select USB drive. After installing the YubiKey smartcard mini driver it works for me. [pam-u2f. That will disable password and PIN login and force Yubico to work. My reaction was “Motherf…”. We have exciting news for our Apple users: just yesterday, as part of iOS 16. As long as your key is present, all instances of Yubico Authenticator are interchangeable. First, use the menu "Tools -> Keyfile generator" to create a random keyfile and store it on disk (ideally it should be stored in a mounted VeraCrypt volume to avoid leaking keyfile content). Go to this demo website and make a username password (it can be something silly, accounts used here get deleted every 24 hours and you don't need an email or anything to register, this is. Related Topics YubiKey Security token Peripheral Computer hardware Computer Information & communications technology Technology comments sorted by Best Top. Then store the keys on a flash drive and you've essentially created 2FA for yourself (login in to your computer, plus have the flash drive inserted to mount the container). The usage attributes on the certificate do not allow for smart card logon. This key will not work with LastPass; upgrade to any YubiKey 5 for LastPass. Tags. Step 21: dismount VeraCrypt encrypted volume . Solution: When deploying the Minidriver to remote servers where the YubiKey cannot be physically inserted (such as an RDP connection), a legacy node must be created to load the minidriver. When prompted where to store the key, select 1. In a default Fedora 29 setup, /etc/pam. Killing the app and restarting it (no help). No branches or pull requests. If I insert the key after the manager loads then, it seems, the first attempt to authenticate always fails (even if one waits some twenty seconds before making the attempt); only with a second attempt will the system unlock. Note: Mac - If Apple’s Keyboard Setup Assistant launches on your macOS machine, close the window. 2) fails to recognize the key. On the desktop, which used to work just fine, it now says "no accounts'. They plug into your computer, and some also. After inserting the YubiKey into a USB Port select Continue. I further note that this test one when I imported the private key it asks me for the passphrase rather than inserting the Yubikey. I just got a yubikey4 and while it produces a one time password with a touch, I was wondering what other capabilities it had so I installed yubikey-personalization-gui on my Mint 17 box. Actually, every YubiKey has a unique serial number, and that is what is shown by the YubiKey Manager. Not to mention that running PasswordSafe (or any other program that doesn't need admin rights) as administrator is simply a bad idea. Reddit, My friend gave me a Yubikey as a gift (unopened). Inserted her original spare and made sure under the Challenge/Response to leave it on Use existing secret if configured - generate if not configured. Then you have to chroot to your system. Any instruction I find moves the key do yubikey making it imposible to sign/encrypt without youbikey inserted into PC. a hardware interface). Level 3: NFC. When you click the OK button, YubiPlugin start's its work. How to setup a Yubikey# For apps like Facebook and Google it is extremely straightforward, just go to the security page on your account and look for 2FA or MFA and follow the instructions. Insert the above auth line into the file above the auth include system-auth line. It should say scfilter, I have confirmed the scfilter driver is started on the remote machine when the yubikey is inserted so there is some detection. As you may can imagine, you should NOT loose the Yubikey, as there is no possibility to Backup/Restore a lost Device. Yubikeys are a type of security key made by Yubico that makes two-factor authentication easier. Click OK. YubiKey YubiKey 5C Nano SKU: 5060408461518 Computer: MacBook Pro. With these you can disable or reconfigure features, set PINs, PUKs, and other management passphrases. Re-inserting the Yubikey makes it work after 1-3 attempts, but it's really. Using your YubiKey with Duo Security. A one-time passcode (OTP) is automatically generated and inserted into the YubiKey Setup window and Verify is selected automatically. You will have done this if you used the Windows Logon Tool or Mac Logon Tool. I do so but it gets to a point where it just times out. Setup a Yubikey for GPG#Click on Manage users icon. As an example, Google's instructions for using YubiKeys with Android can be found here. 6. If Windows Security asks you to create a PIN, enter one and click OK. Once you've done that and you've source d your rc file you should be able to generate your key. Second, when logging on, the user makes sure the appropriate YubiKey is inserted. ] YubiPlugin shows a small window with a option to. 8p1, OpenSSL 1. If you are using a YubiKey with. YubiKey Manager (ykman) version: 2. Please note if the lights on the YubiKey appear when you insert the YubiKey into your device. If no lights appear at all, this could be an indication that something is wrong with your key. 11. To do this, open a fresh terminal window, insert your YubiKey and run “sudo echo test”, you should have to enter your password and then touch the YubiKey’s metal button and it will work. Login to Windows with a YubiKey 5. d/sudo file: auth required pam_yubico. The YubiKey is a form of 2 Factor Authentication (2FA) which works as an extra layer of security to your online accounts. There's a workaround, but it's a bit annoying. MicroUSB On-the-Go cable to an A port to plug the key into. Share On: Facebook: Twitter: Tumblr:I purchased two Yubikey 4. InstallResponse. Use an up-to-date Chrome browser to open the YubiKey Bio Series setup website. Click on the "I want to use a different authenticator app" link. YubiKey PIV Manager version 1. 3 Configuring the YubiKey. You will be presented with a form to fill in the information into the application. Note: This section can be skipped if you already have a challenge-response credential stored in slot 2 on your YubiKey. c:parse_cfg(39)] called. On Linux: Start the YubiKey Personalization Tool. My personal PC's all just work fine with the Yubikey connected even the whole. Insert the Yubikey into a USB port. Question: Is it possible to provide YubiKey input on GRUB Stage 1 to automatically decrypt the system if the YubiKey is inserted - so that no passphrase is needed. Changing the PINs for GPG are a bit different. Press the Windows+R keys in combination on your keyboard to bring up the Run prompt. Type regedit and press OK. See if your device is detecting the key when it is inserted. Heads-up: one should set different PIN for user vs admin and never use admin PIN on macOS (or any other computer that isn’t air-gapped and hardened). Reproduce issue Launch KeePassXC Create a new database At ‘Data Master Key’ select ‘Add additional protection’ and click on 'Add YubiKey Challenger-Response > No YubiKey inserted. Get popup about entering challenge-response, not the key driver app. 2 features:Key is recognized as a USB device in System Report, but YubiKey Manager is stuck on the "Insert your YubiKey" screen upon launch. If 1Password asks you to save a passkey, click the button. Unplug your Yubikey, wait 5 seconds, and plug back in. I purchased two Yubikey 4. Instead of using the default value of "Yubikey", which matches Yubikeys with CCID enabled, it uses an empty string "", which matches any CCID card reader. YubiKey OATH-HOTP:. Note the YubiKey 4/5 and YubiKey NEO have different hardware IDs. 1. As a final step, make sure that apps can talk to your YubiKey. FWIW, my NEO also works fine with the Android app, this is the first time I've tried the desktop (python) client. To find your device's full name, plug in your YubiKey and open PowerShell to run the following command: PS C:WINDOWSsystem32> Get-PnpDevice -Class SoftwareDevice | Where-Object {$_. 2, Yubico offers support for the latest FIDO2/WebAuthn functionality, offering advancements in FIDO credentials management and protection. If this doesn't work for you, Yubico in the post Using a YubiKey with USB-C Adapters acknowledges that some adapters are just incompatible with its hardware. Select Add from the Security Key PIN area, type and confirm your new security. Wait for the Personalization Tool to recognize the YubiKey. Click the Next button. jpg [ 109. Download personalization tool for yubico at: YubiKey 5C NFC that I used in this review is priced at $55, and it can be purchased from the Yubico website. The best security key of 2023 in full: (Image credit: Yubico) 1. View Black Friday Deal at Amazon. The default action should be "failed" BR Manuel. To fix it what I did is go to each computer and clicked on the Yubico Login app. For all of the keys yubico makes. macOS comes with a command line tool for testing smart cards (PC/SC), which I used to get the machine name of my smart card. 1 How to check my permissions? However, when I just tried to login to my desktop, it still displayed the PIN login and I inserted it and it logged me in. FIDO U2F tokens : Insert the FIDO U2F token in a USB port, leave the OTP field blank, and after entering the password, press the Enter key on your keyboard or click the login arrow on the screen. Insert your security key into the USB port on your computer. Prerequisites. We have to first import them. Copy your new U2F SSH public key to your server. The Yubico PIV tool is used for interacting with the Privilege and Identification Card (PIV) application on a YubiKey, which you'll need to do to determine if your YubiKey is locked. If you have a YubiKey, right-click on the YubiKey device, and select Remove device. Right click VM. @maximbaz Alright, I got it working with a few caveats. Inserted her original spare and made sure under the Challenge/Response to leave it on Use existing secret if configured - generate if not configured. Select Quick. Navigate to Applications > FIDO2. From what I understand, if these are trusted websites, you do not have to insert your Yubikey to log in. You can also use the tool to check the type and firmware of a YubiKey, or to perform. Run `gpg2 --card-status` (if set up as a hardware token for GPG keys) Actual results: "systemctl status" journal logs: Jul 02 08:42:30 sgallaghp50. The YubiKey was enrolled outside Windows' native enrollment tools and the computer has the YubiKey Smart Card Minidriver installed. This feature was only added in OpenSSH 8. Click the "Save Interfaces" button. So: Buy a 2nd Yubikey to work as a backup. The Yubico authenticator requires a Yubikey insertion every time. Download and install the YubiKey Personalization Tool. The Information window appears. Open the Personalization Tool. First, insert the YubiKey in USB port and then type: $ ssh-keygen -t ecdsa-sk # Older YubiKey firmware. Download the yubico-piv-tool. See full list on support. In practice, a security key is a physical security device with a totally unique identity. Copy the above public key, including the begin and end blocks, and then add it as a new key on GitHub. Run: sudo apt install libpam-yubico yubikey-manager; 2 Configuring the YubiKey. You will be told to insert the Yubikey in the laptop and press the gold disc to create a code for Google Chrome. Make sure you insert it into a working USB port securely. Done. Click Interfaces and make sure that OTP is checked for both USB and NFC interfaces. A workaround for now is to enter "Yubikey" in the settings. If you are interested in. If the goal is strong 2FA, your native options are Smart Card auth and Windows. Select the configuration slot you would like the YubiKey to use over NFC. 3. Tested on macOS Monterey and OpenSSH_8. The login panel will disappear. On the desktop (dev) computer, generate a key pair for the protocol as follows. I have inserted the FIDO2 key into the physical desktop and in the Desktop Viewer, I can see the key and just need to click on it to begin redirection into the virtual desktop session:. Done. One or more domain controller(s) are missing certificates. I've been trying to setup my computer to work with a YubiKey 5 for login. 3 + libpam; shavee_core 0. I am getting "No YubiKey inserted" using the YPT package as provided by Fedora. 4. If not already done so, please insert your YubiKey in the computer via a USB port. Second would be the directory which would already be present and would be loaded on decryption failure i. To solve your problem, you can instead disable the OTP application to prevent the YubiKey from printing an OTP when you touch it. Google defends against account takeovers and reduces IT costs. . If it asks to remove any device driver files along with the device, then say yes. Edit your PAM configuration and comment out the relevant line, like you. You may be prompted for a PIN when running pamu2fcfg. It is a standard which enables you to log into applications without using passwords on both desktop and mobile environments. 2b: Make a connection to that device through one of the YubiKey applications. The YubiKey communicates via the HID keyboard interface, sending output as a series of keystrokes. When asked for a password, the YubiKey will create a token by concatenating different fields such as the ID of the key, a counter, and a random number,. 1 participant. 0), but I get Yubikey core error: no yubikey present even with sudo . Then I inserted the key, waited a few seconds, and entered the password again. It can take up to 5 seconds for the two devices to complete the operation. Click Quick on the. ) Restart the SSH service, and immediately — before logging out — open a new terminal window and test that you can still login to the server with your Yubikey. It works very well if the screen becomes locked while the laptop is already on, but on first boot, it doesn't require me to. Click the physical button on my Yubikey NEO. What can be the problem? How can I fix it? Thanks. Note that plugging in your YubiKey requires you to also physically touch the key. For System Authentication install the yubico PAM module: $ sudo dnf install -y pam_yubico. Select Add or click on the three vertical dots in the top right corner. Don’t see your YubiKey here? Identify your YubiKey. The steps to achieve this are easy. 0. QUIT and SAVE to make GPG point it's stubs to Yubikey2. Setup client (group policy) to enable the smart card credential provider 3. All the yk* tools tell me the same: # ykinfo -v Yubikey core error: no yubikey present I tryed to compile yubikey-personalization from the git repo (using libyubikey from debian) and I see the same problem. ykman --log-level=DEBUG oath list tries a couple of times and exit with No matching device found. I have registered Yubikeys with Microsoft, Google, and Apple. e. To learn more about its additional capabilities, seeYubiKey NEO. You must always have a plan for that. config/Yubicopamu2fcfg > ~/. However, both Yubikey will not be detected, the message is "gpg: selecting card failed: No such device". Way too many steps. The difference between the Yubikey 4 and the Neo is that the 4 supports stronger crypto algorithms than the Neo (although the Neos are nowhere near broken). The computer detects it as an external USB HID keyboard 2. The tool works with any YubiKey (except the Security Key). Tap your name, then tap Password & Security. YubiKey for Education; No reaction when using WebAuthn on macOS, iOS and iPadOS; Troubleshooting the macOS Logon Tool after a system update; Troubleshooting "Failed connecting to the YubiKey. Hi -. YubiKey core error: Timeout If you selected Require User input (button press) on the Challenge-Response tab of the YubiKey Personalization Tool while you were configuring your YubiKey, the YubiKey begins blinking immediately after you. The vast majority of applications will use the "Session" classes. Use the YubiKey Personalization Tool to configure the two slots on your YubiKey on Microsoft Windows, macOS 10. Click “Scan”. I just received a new yubikey v 4. For anyone here that carries a type C YubiKey (5C, 5C Nano, 5C NFC, etc), do you also carry an USB C to A adapter with you, given that type C ports isn't exactly as common yet? Looking to see if it's rather necessary to carry an extra thing in my pocket. On Linux: Start the YubiKey Personalization Tool. When the PIN is blocked, the “change a password” screen is displayed. ET&S has no access to assist with lost YubiKey PINs. You can do this in YubiKey Manager or Yubico Authenticator, look for configuration of "applications" or "interfaces". I also tried it on a second PC (always under Window 10) with the same result. The username refers to the hard drive directory the directions specify. You may need to touch your authenticator to authorize key generation. . Open Terminal. I get the same when running as regular user or root. " Now the moment of truth: the actual inserting of the key. For each service you set up, have your spare YubiKey ready and add it right after the first one before moving to the next. You can now sign-in to your Microsoft account by using Windows Hello or a hardware security key instead of. My machine is currently running build 22621. yubioath-desktop`. You can also use the tool to check the type and firmware of a YubiKey, or to perform. Windows Hello is an inbuilt FIDO2 platform authenticator, and it's an. Unfortunately, the update. The smart card certificate uses ECC. e when no Yubikey is inserted during login. ago. To find compatible accounts and services, use the Works with YubiKey tool below. Select Register. The YubiKey inserted into my laptop is lighting up as the YubiKey PIV Manager in the VDI session is reading it. Open System Preferences. Use the YubiKey Personalization Tool to configure the two slots on your YubiKey on Windows, macOS, and Linux operating systems. 0-Beta. I am getting "No YubiKey inserted" using the YPT package as provided by Fedora. Insert the YubiKey into your computer. The FIDO2-only Security Key is perfect for Windows Hello for Business, but it cannot be managed using the YubiKey. The key lights up when I insert it into the USB-C port of my MacBook Air M2 2022, but tapping does nothing. Clicked on it, confirmed my password, clicked on Security key, clicked twice OK, next or whatever it is the popup for the key, inserted the key, touched it and VOILA, its now activated. 2a: Create an instance of one of the "Session" classes (e. Insert Yubikey2. d/sudo should now look like this: YubiKey OATH-HOTP: Insert the YubiKey in a USB port, and with the cursor in the OTP field, touch the YubiKey button. What can be the problem? How can I fix it? Thanks. service` 3. – danorton. . The current known workaround is to disable the OTP interface using our YubiKey Manager. I came up with a solution as Yubico/yubikey-personalization-gui#72 (comment)Reboot the system with Yubikey 5 NFC inserted into a USB port. kdbx) with YubiKey. Insert the YubiKey and press its button; the YubiKey then enters the master password. Use the YubiKey Personalization Tool to configure the two slots on your YubiKey on Windows, macOS, and Linux operating systems. Depending on the protocol, it might not need to be a same model. There is a nifty button to cut & paste the code into the web browser challenge field. Remove your YubiKey and plug it into the USB port. Ideally Windows update should automatically download the YubiKey smartcard driver but sometimes it may not happen. I purchased two Yubikey 4. As far as I know, macOS 11. I inserted my Yubikey and ran pcsctest, which gave me this output: MUSCLE PC/SC Lite Test Program Testing SCardEstablishContext : Command successful. Step 2: Click on “ Configure Certificates “. The default configuration for Yubikey is to support the CCID (Smart Card) interface. Physically, a USB security key (also called a U2F key) is a type of hardware security that resembles a USB drive and plugs into one of your computer's USB ports. The password was again rejected - which was expected from previous behaviour but not what should happen. 68. If you do see OpenSC near your clock, right click and select Exit / Close. Step 14 - Click Allow to allow this site to see your security key. 1. You can also use the tool to check the type and firmware of a YubiKey, or to. Open Control Panel. harrywwc • 6 mo. 2. The YubiKey supports one-time passcodes (OTP) OTP supports protocols where a single use code is entered to provide authentication. In this video I show you How To Use Yubikey To Login To Your Mac. If you do see OpenSC near your clock, right click and select Exit / Close. I have the same "Failed to connect" issue on macOS Catalina, ykman 3. Launch the YubiKey Personalization Tool. Some time ago I installed Windows Hello and set it up to use my Yubikey 5 NFC for added security when logging in to my local accounts. Go to the Security Info page of your Microsoft 365 account. Type 2 is something you have, the YubiKey is the. Most of the time there is no need for installation of softwares or drivers for the. If it doesn't have the private key locally, it will only work with the yubikey. During login, the YubiKey, browser, and authentication server will communicate and perform the steps. Then, use the menu "Tools -> Managed Security Token Keyfiles" to import the generated keyfile into the Yubikey. It should blink once when plugged in. We then need to tell Git to use GPG to sign commits, and specifically this key. I walk you through step by step process. Step 4. In the Add a New Device pop up, select YubiKey. Unfortunately, it no longer auto-opens when the yubikey is inserted. Really unfortunate it doesn't work with yubikey. 1. Run: ykpersonalize -2 -ochal-resp -ochal-hmac -ohmac-lt64 -oserial-api-visibleA YubiKey adds a significant additional level of security to your online accounts, doesn't take long to set up, and isn't a huge outlay. When setting up TOTP with a site, they give you a shared secret. 2-1. The YubiKey Personalization Tool has a couple of drawbacks: The YubiKey Personalization Tool is no longer actively maintained or improved. Choose to reboot now or after associating the YubiKey with a user. It houses a small chip with all of the security protocols and code that allows it to connect. 1. (That last line — PermitRootLogin no — ensures that logins as root via SSH are never allowed, which is a good SSH best practice unrelated to Yubikeys. The YubiKey NEO is our mobile-friendly device that is equipped with near field communication (NFC). The app recently got an update which changed the look and feel. Under Configuration Slot, select the slot you'll be using for. I downloaded the 64bit login software for extra protection for my PC. PS: This Yubikey initially was detected. The first step in troubleshooting your YubiKey is to ensure that it is correctly connected to your device. Have tried it on a few of my windows computers to no avail. Start the YubiKey Authenticator software. sudo ykinfo -a Yubikey core error: no yubikey present. The YubiKey is an extra layer of security to your online accounts. – iconoclast. With a Yubikey (under Window 10), using the tool Yubikey Personalization Tool, I get the message: No Yubikey inserted. Open the Windows Settings app, select Accounts, select Sign-in options, select Security Key, and then select Manage. 2 Answers. Microsoft has taken a major step towards its goal of eliminating passwords this week. Note: Yubico recommends holding your YubiKey near your phone for a full second or two, as opposed to briefly "swiping". exe. msi INSTALL_LEGACY_NODE=1 /quiet. Assuming your root file system is mounted at /mnt in the live session, the following commands will do this: sudo mount --bind /proc /mnt/proc sudo mount --bind /dev /mnt/dev sudo mount --bind /sys /mnt/sys. A nice workaround is to allow Veracrypt auto-mounting with a blank password and a few keyfiles. 8 How was it installed?: 4. Note that the YubiKey may press the Return key after entering the password, which causes the master key dialog to be closed with [OK]. In the tree-view on the left, navigate to HKLMSoftwarePoliciesMicrosoftCryptographyAutoEnrollment and verify the value of. 5. Before sending your key to your Yubikey, create a backup. e. Since KeeChallenge only supports use of configuration slot 2 (this slot comes empty from the factory), click Configure under the Long Touch (Slot 2). # Running any decrypt, auth or sign will now ask you to insert Yubikey2. Expected result. This is a pretty serious bug. It works quite well but I found a use case where it doesn't work. With a Yubikey (under Window 10), using the tool Yubikey Personalization Tool, I get the message: No Yubikey inserted.