Since FIDO authentication relies on passkeys and I have a working Yubikey Passkey for this forum I will share my configuration.
Based on a minimal Debian template (my librewolf browser appVM), I just need the following:
- qubes-usb-proxy
- policykit-1
- libblockdev-crypto2
- pcscd
- libfido2-1