Setting up a security key for two-step login with Duo


A security key is an external device that when tapped or when the button is pressed sends a signed response back to Duo to validate your login. Duo uses the WebAuthn authentication standard to interact with your security keys. You may also see WebAuthn referred to as "FIDO2".

To use a security key with Duo, make sure you have the following:

  1. On your computer, go to the Two-factor authentication set-up and management page. Enter your NetID username and password to login
  2. Click the Other options link on the authentication page to view your list of available authentication methods.

         prompt for duo push with other options button on bottom

  3. Select the Manage devices choice at the end of the list to enter the device management portal.

         available duo authentication options with Manage Devices option at the bottom

  4. Choose an authentication method and complete two-factor authentication to begin adding your new device.
  5. After approving a Duo authentication request, you can see all your registered devices in the device management portal. Click Add a device to begin.

         duo device management portal interface

  6. Choose Security Key.
  7. Read the security key information and click Continue.
  8. Your browser prompts you to tap your security key to use it with Duo (Chrome example shown).

         Prompt you would see when doing security key request on chrome browser

  9. When you receive confirmation that you added your security key as a verification method click Continue.

         Prompt showing you successfully added the security key