BookStackApp / BookStack

A platform to create documentation/wiki content built with PHP & Laravel
https://www.bookstackapp.com/
MIT License
15k stars 1.88k forks source link

Support for WebAuthn (FIDO2) #3912

Open Android1338 opened 1 year ago

Android1338 commented 1 year ago

Describe the feature you'd like

I'd like to have the option to use my FIDO2 security token as 2FA.

Describe the benefits this would bring to existing BookStack users

Expand user account security

Can the goal of this request already be achieved via other means?

Actually only via TOTP, which is working great. So, this is just additional.

Have you searched for an existing open/closed issue?

How long have you been using BookStack?

1-5 years

Additional context

No response

rodude123 commented 1 year ago

This is something that I'd like to use

TheRazvy commented 1 year ago

that would help me too. +1

chrisweeksnz commented 11 months ago

Being able to upgrade to physical tokens from TOTP would be an excellent forward step!

ssddanbrown commented 11 months ago

I'd quite like to add this, even just as a way to learn the WebAuthn standard. I have though been holding off due to passkeys becoming a bigger deal. There's a lot of overlap with WebauthN.

If anyone has experience/knowledge of both passkeys and webauthn, and how these fit together both now and in the future, both from a technical and UX point of view, I'd appreciate feedback. Just don't want to to cause trouble for myself in the future.

kekonn commented 6 months ago

I would like this as well. I have trouble setting up TOTP in Bitwarden, so Passkey support would mean I can choose to use either my Yubikey or Bitwarden.