Open colemickens opened 4 years ago
Some precedent for this in block_puk
:
It sounds like a good feature, although I'd prefer a deterministic counter-based method like the one used in block_puk
to one based on an RNG.
Oh yeah, I had added that when I was making a different mistake and thought the PIN needed to change for it to count against retries, but that's obviously not the case. I can send a simpler version like you describe.
Per Yubico docs on the RESET command: https://developers.yubico.com/PIV/Introduction/Yubico_extensions.html
Do you want to have a
force_reset_device
that does something like this?