Re: U2F and keygen

<keygen> was designed 1995, how could it possibly meet todays requirement?

As far as I can tell (reading the source...), Mozilla have introduced several
non-standard enhancements, including support for Elliptic Curves.

Anyway, <keygen> doesn't support PIN-codes which is why no bank would ever
consider using <keygen>.

Adding PINs to the spec may sound trivial but I can assure you that it is not,
it would (IMO) require a complete redesign!

Anders

Received on Tuesday, 22 July 2014 07:45:28 UTC