we’re using 2-factor-authentication with u2f-key like the yubikey on all of our devices at boot, on our backend-websites, facebook, google, …
It would be very cool if royalts could also implement it. It would be also a good solution for user management, cause you only have to maintain a list of keys in the rtsz-file.
For understanding: It’s not about replace password authentication with the key. It’s just a seconds factor, so you need to type the password … but if you only have the password without the key, the password is useless.
And yes, it’s a well implemented, standarized, proofed solution with stable apis/librarys. It’s also direct implemented in firefox/chrome.
My apologies! I misread this post and wasn’t aware of U2F being a dedicated standard. We actually do not have U2F support. I was referring to the 2FA in Royal Server.