FIDO2 Security Key (Card Form)

Dual-Interface

Hardware authenticator supporting FIDO2/WebAuthn for passwordless login, available in USB, NFC, and smart card form factors.

Dual-Interface | FIDO CTAP 2.1 | С 2018

Quick Specs

Dual-Interface
Interface Dual-Interface
Chip Type Microprocessor
OS Native OS
EAL Level Not Evaluated
Lifespan 5 years
First Deployed 2018

Полные спецификации

Аппаратное обеспечение

ИнтерфейсDual-Interface
Тип чипаMicroprocessor
Операционная системаNative OS

Связь

ПротоколUSB + NFC (ISO 14443)
Расширенный APDU Нет
Логические каналы1

Безопасность

Уровень EALNot Evaluated
Защищённый элемент Да
Защита от вскрытия Да
Криптографический сопроцессор Да
Биометрическая поддержка Нет

Криптографические алгоритмы

ECC-P256 HMAC-SHA256 AES-256

Часто задаваемые вопросы

Consider four key factors: interface type (contact, contactless, or dual-interface), security requirements (EAL certification level), application domain (payment, identity, transport), and chip platform (JavaCard, MULTOS, native). For EMV payments, dual-interface cards are now standard. For government eID, EAL5+ certified cards are typically required.

Contact smart cards require physical insertion into a reader and communicate via the ISO 7816 interface (gold contact pads). Contactless cards use radio frequency (ISO 14443) and work within a few centimeters of a reader. Dual-interface cards combine both interfaces on a single chip, offering maximum flexibility.

EAL (Evaluation Assurance Level) is part of the Common Criteria framework for evaluating IT security. For smart cards, EAL4+ is common for payment cards, while EAL5+ or EAL6+ is required for government identity documents and ePassports. Higher EAL levels indicate more rigorous security testing and formal verification methods.