There should be a somewhat robust way to keep "used" challenges around at least for a while in case they are rotated frequently, so challenges could be read from a folder like /etc/yubikey-fde and the one with the latest modification date is sent (or based on filenames? Need to think about it)
There should be a somewhat robust way to keep "used" challenges around at least for a while in case they are rotated frequently, so challenges could be read from a folder like
/etc/yubikey-fde
and the one with the latest modification date is sent (or based on filenames? Need to think about it)