On Sat, Feb 14, 2026 at 09:52:28PM +0100, Andreas Sturmlechner wrote:
> 3 different USE flags are currently contesting for the same library:
> 
> - fido2
>     sys-apps/systemd: Enable FIDO2 support
> 
> - passkey
>     sys-auth/sssd: Add support for FIDO2 passkeys" [sic]
> 
> - security-key
>     net-misc/openssh: Include builtin U2F/FIDO support
> 
> 
> Surely we can do better - so which one should it be?
> 
> Regards

I think "passkey" is the worst as that's just one of the use cases for hardware
tokens.

"fido2" denotes the current most popular standard in use, though most keys also
support U2F, OTP, PGP, or even smart card functionality. Which one of these is
used by the software in question can vary. What is most popular now might change
in the future, and also could be a bit too technical for some users.

I think probably security-key is the best of these three. It conveys the purpose
for everyone and clearly denotes 2nd factor or some other hardware token
feature. The description of the USE flag can add further clarification, like
the one used for the openssh package.

Zoltan

Attachment: signature.asc
Description: PGP signature

Reply via email to