Smart Card - Yubikey
The access revolution
About YubiKey and Smart Card features
UbiKey 4, YubiKey 4 Nano, YubiKey 4C, YubiKey 4C Nano and YubiKey NEO provide smart card functionality based on the PIV (Personal Identity Verification) interface specified in NIST SP 800-73, "Cryptographic algorithms and key sizes for PIV".
GENERAL INFORMATION
Supports twelve key slots on YubiKey 4 (maximum per certificate size 3,052 bytes)
Supports four key slots on the NEO YubiKey (maximum per certificate size 2,024 bytes)
Each slot is capable of holding an X.509 certificate and its accompanying private key.
Support for key sizes of RSA 2048 or ECC p-256, or ECC p-384.
All functions are available on contact and contactless interfaces (NEO only).
YubiKey smart card minidriver
YubiKey provides basic authentication functionality as a ready-to-use PIV-compatible smart card on Microsoft Windows Server 2008 R2 and later servers, as well as on Microsoft Windows 7 and later clients.
products
Smart Card (PIV Compatible)
iNTELLIGENT
The YubiKey Smart Card Minidriver offers additional intelligent features: management of certificates and PINs via the native Windows user interface, support for ECC key algorithms, definition of touch strategy for use of private keys.
CARE
Request a certificate from a Windows CA, generate a self-signed certificate or import an existing certificate into YubiKey.
Generate a certificate based on the server CA template stored in the secure element on the device.
Supports all Windows smart card behaviors, including lock on removal.
Identifies as a Microsoft USB CCID smart card reader and NIST SP 800-73 PIV smart card using the basic Microsoft driver.
Identifies as a YubiKey smart card using the YubiKey mini smart card driver.
OS X code signing
Generate a certificate on YubiKey, submit the certificate request to Apple and use it to sign OS X code. The certificates will also be loaded into the Apple Keychain. Use the certificates as usual with the codesign, pkgbuild, productbuild and productsign commands.
SSH with PIV and PKCS11
YubiKey with PIV can be used for public key authentication with OpenSSH via PKCS11. Mainly on Mac OS X or Linux systems with OpenSC software installed. Uses a self-signed certificate loaded in slot 9a of the PIV applet for SSH authentication via OpenSC.
YubiKey with smart card / PIV
EgoSecure Data Protection FDE uses YubiKey NEO for two-factor authentication Data encryption and decryption are completely transparent to authorized authenticated users For enterprise installations, can be deployed and managed centrally using the EgoSecure management console
Get the YubiKey Smart Card Minidriver
A Minidriver for the Windows operating system that enables smart card management in the native Windows interface and adds support for ECC key algorithms.
Download the YubiKey Smart Card Minidriver from the publisher's website via the Downloads page.