This page describes the PIN behavior of the WebAuthn application and the configuration options added in firmware version 3.1.1.
By default, CanoKey does not set a PIN. Some websites and certain features (such as Discoverable Credentials management) require you to set a PIN. Please set it when prompted.
Firmware version 2.0.0 and later support PIN Protocol 2.
Firmware version 3.1.1 adds configuration options for the WebAuthn application, including:
alwaysUvminPinLength)These options are configured through the management software (such as the CanoKey Console).
On firmware version 3.1.1 and later, alwaysUv must be disabled to use U2F.