Screw them.Hopefully European Union won't object.
This is by FAR the most secure authentication method. I wouldn’t be surprised if this is the standard going forward for all our systems
Screw them.Hopefully European Union won't object.
Password manager + randomly generated passwords is very close to this. I figure FIDO is only doing this because it's more secure for the average user, who is not using random passwords.No more 1Password for me if this looks to be secure.
Wait, is there a way to use these if you don't have an Apple device? Would expect an alliance standard to work equally for other platforms.Apple has been working with members of the FIDO Alliance, including Google and Microsoft, to ensure that passkeys can also be used with non-Apple devices and across platforms. On non-Apple devices, Passkeys will work through QR codes that will authenticate using the iPhone
2FA is a bit different cause it's hard and expensive for other sites to implement, plus they can never do as good a job as Apple, Google, etc. Better for those sites to use any kind of shared secret and for the user's keystore to keep it safe with its own 2FA.Exactly. Like 2FA now, this may be implemented by 5-10% of the sites/apps/services you use. The rest of will continue to use passwords.
It will support 1Password, which already has the same kind of system implemented in 1Password 8. I'm using it currently. And both Monterey and iOS 15 already supports 1Password's ability to handle 2FA like Passkeys will.No more 1Password for me if this looks to be secure.
We use YubiKeys at work, and while it makes sense there, I could never see them catching on for regular users. Passkey is the right move.I thought I was going to be using Yubikeys for years to come. Apparently not for much longer. With Google, Microsoft, and Apple all pressing this, it will be spread much faster to way more sites than YubiKey has been able to do to convince websites to do what's right.
I agree except for the acquisition. I like something so fundamental as password management to be OS agnostic. I like to keep the basics in a place where I could bail on any device if I wanted to.1Password is as impressive as Dark Sky was, in my opinion. It should be an Apple acquisition target!
Your funeral if you hose your iCloud account.No. It's an insanely good idea. If it works as conveniently as Apple Sign In which I'm using everywhere I'm able to then I'm all in. You're welcome to waste your time micro-managing stuffs. My time is too precious for that.
I use yubikeys as well. This is the correct solution.We use YubiKeys at work, and while it makes sense there, I could never see them catching on for regular users. Passkey is the right move.
We already have this. But more secure as it’s actually your ID backed with banking security and verificationScrew them.
This is by FAR the most secure authentication method. I wouldn’t be surprised if this is the standard going forward for all our systems
No I actually know how it works. Apple doesn’t lock you out of your iPhone. Never has never will. I guarantee if you get banned from iCloud you still can access your iPhone and stored keys.
At worst, a website will be a pain and not let you migrate to a password. I acknowledge that could be a problem. You’ll have to make a new account in that case.
I’m outside of my bubble already. I will take the risk. Haven’t been banned randomly and no one I know ever has been. Using a gift card wrong in this case must mean you bought a stolen or scammed card and redeemed it. Sucks for you I guess. Don’t use bootleg sources for gift cards.
A lot of assumptions with no data backing it up. EU citizens have voted for the politicians, the parties, coalitions and heads of states supporting the Gate keeping clause used in DMA. It’s nothing to do about “open os” or standards. It’s anti competition laws.No, it's not. Then why try to create an open standard by force on people who DO NOT want such standard? For instance, an EU citizen who bought an iPhone knowingly and with intent of staying within the walled garden now has to deal with the EU arbitrary rules of "open" OS, when that specific consumer does not want it.
The EU treats companies the same. It’s almost like you seriously believe EU never sues or drags big EU firms to court or implement same standards for everyone.So yeah, the EU does it just to spite non-EU companies. However, they are content with accepting any BS reason EU companies come up with.
You are asking far too much here.Hopefully European Union won't object.
A normal passwordiCloud Keychain? No thank you. The system is to buggy to be seriously relied upon. Keychain has 5 different passwords for one of my Apple ID accounts, none of them are correct. I was locked out of my Apple ID for 2 months because AppleCare wasn't allowed to tell me which of my devices was pinging the account and aborting the recovery. It was an absolutely awful experience. There was a reason Steve Jobs fired the MobileMe leadership. Apparently Tim needs to follow that example and clean house within the iCloud team as well.
They won’t because we already have this system in use for almost 10 yearsYou are asking far too much here.
Party not nativeWe already have this. But more secure as it’s actually your ID backed with banking security and verification
View attachment 2016509
I think I'm not understanding why you wouldn't remove the invalid entries?iCloud Keychain? No thank you. The system is to buggy to be seriously relied upon. Keychain has 5 different passwords for one of my Apple ID accounts, none of them are correct. I was locked out of my Apple ID for 2 months because AppleCare wasn't allowed to tell me which of my devices was pinging the account and aborting the recovery. It was an absolutely awful experience. There was a reason Steve Jobs fired the MobileMe leadership. Apparently Tim needs to follow that example and clean house within the iCloud team as well.