We throw an OTP (One time Password) into the mix using Yubikeys:


Yep, I've been meaning to get one of these. I really dislike being unable to enforce a password on your private keys.

I've also been using Duo Security as my new 2FA solution and I like it a lot (it also has support for using Yubikeys to provide your OTP.)

You require both key-based AND password auth with OTP? Or is the OTP at a higher layer, e.g. VPN.

Thanks for the link. :)

