this post was submitted on 20 Dec 2024
92 points (100.0% liked)
Cybersecurity
23 readers
7 users here now
An umbrella community for all things cybersecurity / infosec. News, research, questions, are all welcome!
Rules
Community Rules
- Be kind
- Limit promotional activities
- Non-cybersecurity posts should be redirected to other communities within infosec.pub.
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
I understand SSH keys with passwords, but I don't understand passkeys yet because most of what I've read has been layman explanations of them.
Since you made the comparison, could you explain what passkeys actually are, or point me to a decent source that'll explain it not like I'm 5? Lol
SSH keys are a public and private keys that you can use to sign and verify messages back and forth. passkeys are literally the same thing. the only difference is passkeys are unique per site and you store them in an encrypted file that you only need a single password to access vs an ssh key the passwords are per key pair.
essentially the passkey is used to sign a bit of metadata and then the service verifies that metadata matches the user via the public key on file in their system. but otherwise they're functionally the same thing as ssh keys.