Security Key as the Only 2FA Method

Security Key as the Only 2FA Method

Jan 15, 2024

Two-Factor Authentication or “2FA” provides an extra layer of security when logging into your Keeper Vault. While support for hardware security keys for 2FA is not new to Keeper, historically, users were required to have a backup method in addition to a security key.

Keeper Administrators now have the ability to enforce the use of a hardware-based security key as the only two-factor method via a role enforcement policy setting. Additionally, administrators can require a PIN to be entered in conjunction with the key, for FIDO2 user verification, further strengthening their security.

Users who are setting up a security key as the only 2FA method can login to the Keeper Web Vault and visit Settings and Security. Toggle Two-Factor Authentication “on" or Edit if there is an existing method already set. Next click Set Up next to “Security Keys” and follow the on-screen prompts to register your key. Keeper supports the use of multiple security keys, so users can add a backup key.

Existing users with a security key can also remove all other methods of 2FA like text message and TOTP.

When adding a security key to your Keeper Vault, you will be prompted for a PIN by default if one has already been set on your security key. Individual users can optionally remove the PIN requirement unless it has been enforced by their Keeper Administrator.

To modify your PIN requirement, login to the Keeper Web Vault or Desktop App and navigate to Settings, Security, Edit, and Edit again, then uncheck "Require PIN if set on security key". Please note, users who log in using Windows Hello may be unable to modify the PIN requirement.

While Keeper supports login on iOS and Android devices with a security key, setting the key as your only two-factor method must be performed on the Web Vault or Desktop App.

Release Notes: https://docs.keeper.io/release-notes/enterprise/admin-console/admin-console-16.16.0

Learn more about Keeper at:
keepersecurity.com

View our Keeper End-User Guides here:
docs.keeper.io/user-guides/

View our Keeper Enterprise Guide here:
docs.keeper.io/enterprise-guide/