nitrokey-documentation icon indicating copy to clipboard operation
nitrokey-documentation copied to clipboard

Nitrokey Passkey Welcome Page

Open daringer opened this issue 1 year ago • 0 comments

The NK Passkey documentation is bad! This is the entry product into the world of hardware tokens - we should restructure the page to be welcoming and guiding a (potentially inexperienced and/or to-be) customer on how to increase their personal security using a NK Passkey aka FIDO2 device.

I'd suggest roughly the following structure of this page - there are a lot of topics, key will be to handle much w/o too much complexity and giving proper and many links for more details.

Introduction

  • What is the Nitrokey Passkey?
  • Why you should care about hardware security keys
  • Basic benefits (security, convenience, privacy)

Getting Started

  • What's in the box (image with labeled led + touch "button")
  • introduce the "user presence" concept in 1-2 lines
  • First-time plug in (what to expect tabbed win/linux/mac) - not much happens, but something does...
  • Basic device management through native tooling (windows: settings, linux/mac: browser)
    • combine with: "set pin for your nitrokey passkey"

How It Makes Your Life More Secure (keep it simple, avoid being too technical)

  • Simple explanation of FIDO2/WebAuthn (further reading (our fido2 article)) otherwise skip u2f/passkey/fido2 details)
  • Example use-cases: website login, desktop login, ssh (linked)

Using Your Passkey

  • hands on! Increase your personal security now!
  • example registration & login for some website(s)
    • maybe for some very common (2-3?) services (ms, google, ...) explicit guides:
      • with links (assuming the user is already logged in)
      • and step by step instructions

Lost Device / Backup / Recovery

  • explain possible scenario: device unavailable/lost etc
  • basic recommended backup: 2nd/multiple device(s), all must be registered, too
  • explain some other typical recovery methods: recovery codes, other 2fa methods (otp, sms, email)

daringer avatar Dec 14 '24 01:12 daringer