Feitian AllinPass FIDO2 Security Key Manual

June 8, 2024
Feitian

User Manual

Feitian AllinPass FIDO2 Security Key Image

Feitian AllinPass FIDO2 Security Key

Overview

FEITIAN AllinPass FIDO2 K33 is a security key built on FIDO2.0 Specification which promoted by FIDO alliance to replace traditional password using biometric or add a second factor to reduce the complexity of traditional password scheme.

The AllinPass K33 security key provides users with a strong, user-friendly, passwordless logon experience. The Bluetooth® Certified BLE module embedded in the AllinPass FIDO2 Security Key ensures seamless communication with most mainstream mobile devices and PCs. The NFC communication is fully compliant with the ISO 14443 standard and will work with all compliant smart card readers.

The FEITIAN AllinPass is a FIDO2 certified authenticator which effectively protects users against phishing attacks, MITM attacks, and server credential breaches. The CC EAL 6+ Secure Element embedded in the AllinPass FIDO2 Security Key will also provide strong chip level protection and runs mature algorithms ensuring data security.

FEITIAN AllinPass FIDO2 is recommend by Microsoft as the security key for windows hello. For now, we can support the Azure enterprise deployment to provide security and usability. Since FIDO2.0 is submitted to W3C for standardization, most platforms will support FIDO2.0 authentication.

The embedded high-performance FPC fingerprint sensor will ensure fluent user experience with low FRR and FAR. Once enrolled, fingerprint information will only be processed inside the key and protected by security chip embedded, which significantly reduces the risk of fingerprint leaking.

Core Features

  • Driver free. Recognize as a HID device, no driver needed for Feitian AllinPass FIDO2 to work for Windows Hello.
  • Capacitive fingerprint sensor. Fingerprint protected by secure elements.
  • Multiple interfaces are supported by AllinPass K33, including USB-A or USB-C (Required a BSU cable), NFC which is fully compliant with the ISO 14443 standard, and BLE that enables users to use it on a mobile application.

Feitian AllinPass FIDO2 Security Key Image

AllinPass FIDO2 (K33)

Warning:
For security concern, the key will be blocked if user fail to verify fingerprint 15 times (3 times per retry × 5 retry counts) in a row. User can only unlock via reset device (All stored data will be lost).

LED Indicators

The AllinPass K33 security key has a red LED, a blue LED and a green LED. The red one indicates fail. The green LED means success. And the blue LED is Bluetooth indicator. Besides those, there is an extra light showing the status of battery. The green LED blinks at different frequencies to signal a request for user presence or user verification. The behavior of green LED is controlled by the options of command sent from client. For example, if client sends a command with uv=true, the green LED will blink rapidly.

FIG 1 LED Indicators

Fingerprint enrollment

Before using the AllinPass K33 security key, fingerprint is always required to be enrolled via a USB cable.

Users can now set up a security key straight from Settings page if the platform is Windows 10 Insider Preview Build 18298 (19H1) or above. In sign-in settings/Security key, users are able to manage fingerprint, PIN or reset a security key.

FIG 2 Fingerprint enrollment

Otherwise, Users can manage fingerprint, PIN or reset a security key by using FEITIAN’s BioPass FIDO2 manager if platform is lower than Build 18298 (19H1). It can be downloaded from Microsoft Store or via https://www.ftsafe.com/download/webdownload/BioPass%20FIDO2%20Manager.exe.

For the first time using Feitian AllinPass FIDO2, users are required to initialize and Enroll the first fingerprint using AllinPass FIDO2 Manager.

Enroll your first fingerprint

  1. Launch the BioPass FIDO2 Manager and plug in the FEITIAN AllinPass K33, you will see the following windows:

FIG 3 Enroll your first fingerprint

2. Click this window will pop up, you can choose to use fingerprint only or to set both pin and fingerprint. (Once you choose one option, you cannot change to another without reset the device).

FIG 4 Verification Mode Options

3. Set Pin and then click OK. Numbers, letters and special symbols are supported. The PIN has a limitation of 4 to 63 characters.

FIG 5 Set PIN

4. Add fingerprint following the instructions.

FIG 6 Add Fingerprint

5. After the fingerprint successfully enrolled, there should be a fingerprint listed in the text box.

FIG 7 BioPass FIDO2 Manager

6. Then, users can test their fingerprint, remove the enrolled fingerprints and change pin via the BioPass FIDO2 Manager to enjoy secure authentication experience.

Test Fingerprint

This function is for users to test the fingerprint verification.

NOTE: This testing function will trigger the block device procedure mentioned above.

Remove fingerprint

  1. Make sure to choose the right fingerprint to delete. (“Fingerprint 2” as shown in example)

FIG 8 BioPass FIDO2 Manager

2. Make sure to choose the right fingerprint to delete. (“Fingerprint 2” as shown in example) If there is a Pin, users need to choose a verification option.

FIG 9 Verification Options

3. After verification, the fingerprint will be removed.

Change PIN

Just fill in all the text boxes for changing Pins.

FIG 10 Change PIN

Reset Device

NOTE when you reset your device, all data stored will be deleted including your credentials. And the RESET operation requires to be done within 10 minutes after it is powered up.

Bluetooth pairing

Before using the Bluetooth of AllinPass K33 to do authenticate, the security should be paired with your local host.

Windows 10 host machine:

  1. Go to ‘ devices ’ in Windows settings page and click ‘Add Bluetooth or other device’.

FIG 11 Add Bluetooth or other device

2. Go to ‘ devices’ in Windows settings page and click ‘ Add Bluetooth or other device’. On the popped up window, choose ‘ Bluetooth ’.

FIG 12 Bluetooth

3. Long press the button on the side of AllinPass security key for at least 5 seconds until blue LED blinks rapidly, and choose the device name showed on the popped up window. Then the token is paired to the host machine.

FIG 13 Add device

Product Specification

FIG 14 Product Specification

Fingerprint Module

FIG 15 Fingerprint Module

Feitian Logo

©2018 FEITIAN Technologies Co., Ltd.
www.ftsafe.com

Read More About This Manual & Download PDF:

Feitian AllinPass FIDO2 Security Key Manual – Download [optimized]
Feitian AllinPass FIDO2 Security Key Manual – Download

Questions about your Manual? Post in the comments!

Read User Manual Online (PDF format)

Read User Manual Online (PDF format)  >>

Download This Manual (PDF format)

Download this manual  >>

Related Manuals