Hallo Everyone
I recently decided to use OnlyKey for two-factor authentication + username and password. However, I am having problems with both: OTP and FIDO2.
BEFORE STARTING:
1)The “USB stick” Onlykey connects to sysUSB and works as a keyboard: if I have to access an account with only username and password everything is OK.
2)I installed the OnlyKey DUO desktop app. Obviously based on Fedora it gave me problems so I left it alone… . I installed the Onlykey DUO app on the “debian-12-xfce” template to be able to use it on the “sysUSB” AppVM based on Debian (even if on the OnlyKey site they wrongly tell you to install directly on “sysUSB” which is an AppVM…). Therefore Onlykey DUO works correctly and recognizes the “stick” when I connect it to “sysUSB”.
3)I installed “CTAP Proxy” following the instructions on the Qubes OS website: CTAP proxy | Qubes OS. I actually used the “work” appVM.
PROBLEM:
1)This is what happens when I try to synchronize the OnlyKey “stick” on the OnlyKey site to generate the OTP. I tried to synchronize the OnlyKey “stick” also with “sysUSB” (making the appropriate changes on the qube Manager…) and then generate the OTP on Firefox Browser of “work” appVM: the generated code was not correct and did not allow me to access one of my online accounts.
2)I tried to log in to my Protonmail account using FIDO2 authentication and this is what happens.