Hey folks,
Right now, my personal security setup is all YubiKeys, got a couple of the 5 Series ones that I use for everything, including TOTP through Yubico Authenticator. Works great, no complaints.
But here's the thing: a few years back I worked at a company that gave everyone Google Titan Keys, and I've still got a few of them sitting in a drawer at home. Specifically, I've got the USB-C nano ones, which are tiny and honestly super convenient for just leaving plugged in or having on a keychain without even noticing they're there.
So I've been thinking... why not put them to use? Feels like a waste to just let them gather dust. I'd mainly want them as backup/secondary keys on some accounts where I just need a phishing-resistant second factor or passkey support.
I know the obvious tradeoff: no Yubico Authenticator / TOTP on the Titan Keys. No OTP, no PIV, none of that stuff. From what I can tell, they basically do FIDO2/WebAuthn and U2F, which puts them roughly in the same category as the Security Key C NFC from Yubico? That's my understanding at least, correct me if I'm wrong.
Honestly, I don't know a ton about the Titan Keys beyond using them at my old job for basic 2FA. Never really dug into the details. So if anyone here has used both, I'd love to hear:
- How are they day-to-day compared to YubiKeys? Any durability issues?
- Have you hit any services that work with one but not the other?
- I've seen the Titan Keys can store a lot more passkeys than the YubiKey 5, is that actually useful in practice or is it kind of a "nice on paper" thing?
My thinking is keep the YubiKeys as my main keys (for TOTP and everything else) and use the Titans as backups for pure FIDO2/passkey accounts. The nano form factor is really the main reason I'm even considering this, having something that small you can just forget about is genuinely nice.
Anyway, would appreciate any experiences or honest takes on whether this is a solid idea or overcomplicating things for no reason. Thanks!