Skip to main content

Published on 25 June 2025

Security keys

Security keys are cryptographically protected credentials. AGOV only permits those with non-extractable hardware binding. They are stored either on an external device (e.g. a FIDO2 USB stick) or as so-called hardware-bound passkeys on the secure chip of the end device. Such security keys can be used via the WebAuthn standard for secure authentication in web applications.

Security keys that can be used in AGOV

You need a security key that supports FIDO2/WebAuthn. Below is a list of FIDO2 security keys that have been successfully tested with AGOV so far.

Token2 T2F2-NFC-Slim

Product Image Token2 T2F2-NFC-Slim
PRODUCT DESCRIPTION:Token2 T2F2-PIN+ NFC-Slim
PROTECTION: Integrated touch button with PIN
CONNECTION POSSIBILITIES: NFC, USB-A / USB Typ-C 
PRICE: CHF approx. 21.00
SUPPORT: FIDO2/WebAuthn, U2F and TOTP/HOTP
To find sources of supply, enter the following in the internet search engine of your choice: 
«Token2 T2F2-NFC-Slim»

Token2 T2F2-Bio2

Product Image Token2 T2F2-Bio2
PRODUCT DESCRIPTION:Token2 T2F2-Bio2
PROTECTION: Fingerprint reader with PIN
CONNECTION POSSIBILITIES: USB-A / USB-C 
PRICE: CHF approx. 36.00
SUPPORT: FIDO2/WebAuthn, U2F and TOTP (with companion app)
To find sources of supply, enter the following in the internet search engine of your choice: 
«Token2 T2F2-Bio2»

Identiv uTrust FIDO2 NFC

PRODUCT DESCRIPTION: Identiv uTrust FIDO2 NFC
PROTECTION: Integrated touch button with PIN
CONNECTION POSSIBILITIES: NFC / USB-A / USB-C 
PRICE: CHF approx. 36.00
SUPPORT: FIDO2/WebAuthn, U2F and TOTP/HOTP 
To find sources of supply, enter the following in the internet search engine of your choice: 
«Identiv uTrust FIDO2 NFC»

Swissbit iShield Key (FIDO2 / Pro)

PRODUCT DESCRIPTION: Swissbit iShield Key (FIDO2 / Pro)
PROTECTION: Integrated touch button with PIN
CONNECTION POSSIBILITIES: NFC / USB-A / USB-C 
PRICE: CHF approx. 52.00 - 85.00
SUPPORT: FIDO2/WebAuthn, U2F, TOTP/HOTP and PIV (version Pro)
To find sources of supply, enter the following in the internet search engine of your choice: 
«Swissbit iShield Key»

YubiKey Security Key Series

Product Image YubiKey Security Key Series
PRODUCT DESCRIPTION: YubiKey Security Key Series
PROTECTION: Integrated touch button with PIN
CONNECTION POSSIBILITIES: NFC / USB-A / USB-C
PRICE: CHF 35.00 - 65.00
SUPPORT: FIDO2/WebAuthn and U2F
To find sources of supply, enter the following in the internet search engine of your choice: 
«YubiKey Security Key Series»

YubiKey Bio Serie

Product Image YubiKey Bio Serie
PRODUCT DESCRIPTION: YubiKey Bio Serie
PROTECTION: Fingerprint reader with PIN
CONNECTION POSSIBILITIES: USB-A / USB-C
PRICE: CHF 100.00 - 120.00
SUPPORT: FIDO2/WebAuthn and U2F
To find sources of supply, enter the following in the internet search engine of your choice:
«YubiKey Bio Serie»

FIDO2 Smart Card

Figure of the FIDO2 smart card from Cryptnox
PRODUCT DESCRIPTION: Cryptnox FIDO2 Card  
PROTECTION: PIN
CONNECTION POSSIBILITIES: Smart Card-Reader and NFC 
PRICE: CHF approx. 40.00
SUPPORT: FIDO2/WebAuthn, U2F and RFID Mifare Desfire EV2 4K
To find sources of supply, enter the following in the internet search engine of your choice: 
«Cryptnox FIDO2 Card». Cryptnox offers a FIDO2 Card mangaer app for the iPhone.

Important:

If you no longer have a login factor for your AGOV login, e.g. due to loss or defect, you will lose all access via AGOV and will have to complete the complex recovery process in AGOV. Avoid this by also registering one or more additional mobile device(s) in your AGOV account with the AGOV access app or an additional security key (FIDO2).