Contents Menu Expand Light mode Dark mode Auto light/dark, in light mode Auto light/dark, in dark mode
Nitrokey Documentation
Light Logo Dark Logo
Nitrokey Documentation
  • Nitrokeys
    • Features
      • FIDO2
        • Website Login
        • Nextcloud Login
        • Passwordless Microsoft Login (Windows only)
        • Android / NitroPhone
      • U2F
        • Desktop Login (Linux only)
        • Odoo Login
        • Two Factor Authentication
      • TOTP
        • General Instructions
        • Microsoft
        • Google
        • Nextcloud
      • OpenPGP card
        • Overview
          • OpenPGP encryption with Thunderbird
          • OpenPGP encryption with Outlook
          • OpenPGP Touch Confirmation (Nitrokey 3 only)
          • OpenVPN
            • EasyRSA
            • Viscosity
          • Claws Mail, an email client (and news reader) for Linux and Windows
          • Evolution, an email client for the Gnome Desktop on Linux systems
          • GPGTools on macOS
          • Desktop Login
            • PAM (Linux)
            • Smart Policy (Windows)
          • SSH
            • Putty
          • IPSec
          • Hard Disk Encryption
            • Full-Disk Encryption With cryptsetup/LUKS
          • Stunnel
          • Gnu Privacy Assistant (GPA)
          • EID
          • Certificate-authority
          • GnuPG with Fedora
        • Keygen with GPA
        • Keygen with Backup
        • Keygen on device
        • Windows Login and S/MIME Email Encryption with Active Directory
        • Thunderbird
        • Outlook
        • Touch Confirmation (Nitrokey 3 only)
        • OpenVPN
          • EasyRSA
          • Viscosity
        • Claws Mail, an email client (and news reader) for Linux and Windows
        • Evolution, an email client for the Gnome Desktop on Linux systems
        • GPGTools on macOS
        • Desktop Login
          • PAM (Linux)
          • Smart Policy (Windows)
        • SSH
          • Putty
        • IPSec
        • Hard Disk Encryption
          • Full-Disk Encryption With cryptsetup/LUKS
        • Stunnel
        • Gnu Privacy Assistant (GPA)
        • EID
        • Certificate-authority
        • GnuPG with Fedora
        • Change Pins
        • Additional Decryption Subkeys (ADSK) with GnuPG
      • Password Safe
      • Encrypted Mobile Storage
      • Hidden Storage
      • HSM
        • S/MIME
          • S/MIME encryption on Thunderbird
          • S/MIME encryption on Outlook
          • Evolution, an email client for the Gnome Desktop on Linux systems
        • Windows login
        • GPA
        • DNSSEC (Linux only)
        • Hard Disk Encryption
          • Full-Disk Encryption With cryptsetup/LUKS
        • Automatic Screen Lock (Linux only)
        • Import Keys Certs
        • stunnel (Linux only)
        • Certificate Authority
        • IPSec (Linux only)
        • N-of-m Schemes
        • PKCS11-URL
        • Apache 2 TLS
      • PIV (Windows only)
        • Access Control
        • Certificate Management
        • Factory Reset
        • Key Management
        • Guides
          • Client Logon with Active Directory
      • Miscellaneous
        • Automatic Screen Lock
        • Elliptic Curves (ECC) Support
    • Nitrokey 3
      • Getting Started
      • Frequently Asked Questions
      • Overview
      • Firmware Update
      • Firmware Update Qubes
      • Set Pins
      • LED and Touch Button
      • nitropy
      • Reset
      • Troubleshooting
      • USBGuard
    • Nitrokey Passkey
    • Nitrokey FIDO2
      • Getting Started
      • Frequently Asked Questions
      • Firmware update
      • Reset
    • Nitrokey U2F
    • Nitrokey HSM 2
      • Getting Started
      • Frequently Asked Questions
    • Nitrokey Pro 2
      • Getting Started
      • Frequently Asked Questions
      • Update
      • Factory Reset
    • Nitrokey Start
      • Getting Started
      • Frequently Asked Questions
      • Multiple Identities
      • Setting KDF-DO
      • Factory Reset
      • Firmware Update
    • Nitrokey Storage 2
      • Getting Started
      • Frequently Asked Questions
      • Firmware-Update
      • Manual Firmware-Update
      • Factory Reset
  • NitroPad, NitroPC
    • Ubuntu
      • Change Disk Encryption Passphrase
      • Nitrokey App Installation
    • QubesOS
      • NitroPC Pro 2 With External GPU
      • Enable Network Settings, e.g. Wifi
      • Nitrokey App Installation
      • User Password Reset
    • Heads
      • Default Boot
      • Factory Reset
      • Factory Reset Heads 2.0
      • Firmware Update
      • Firmware Update v1.4+
      • System Update
    • Frequently Asked Questions
    • Operating System Reinstallation
    • Verify Sealed Hardware
    • Change User and Admin PIN
    • Troubleshooting
  • NitroPhone, NitroTablet
    • Apps
    • Background Images
    • Frequently Asked Questions
    • Mobile Device Management
  • NextBox
    • Getting Started
    • Hardware Overview
    • Connect External Storage
    • Desktop And Mobile Synchronization
      • Android/iOS
      • Windows
      • Mac OS X
      • Linux
    • Backup and Restore
    • Managing Remote Access
      • Walkthrough
      • Method comparison
      • Backwards Proxy
      • Dynamic DNS
      • Static Domain
      • DNS Rebind
      • Port Forwarding
      • IPv6 Settings
    • Technical Documentation
      • LED Colors and Patterns
      • Factory Reset
      • Soft Reset
      • Replace Internal Hard-Drive
    • NextBox FAQ
      • Generic
      • Hardware
      • Software
      • Nextcloud
      • Remote Access
  • NetHSM
    • Getting Started
    • Administration
    • Operation
    • Integration
    • Frequently Asked Questions (FAQ)
    • PKCS#11 Setup
    • pkcs11-tool
    • OpenSSL
    • Nginx
    • Apache
    • SSH
    • System Recovery
    • OpenDNSSEC
    • EJBCA
    • Knot DNS
    • Container
      • Production Image
      • Test Image
  • NitroWall NW678, NW4J3
    • Update OpenWrt Firmware
    • Verify Sealed Hardware
    • Backup & Restore
    • Using NitroWall as combined DHCP-Client/DHCP-Server
    • How to set up a LAN Bridge
    • How to Fix NTP
    • How to set up IDS/IPS with Suricata
    • Hardware Compatibility
  • Nitrowall NW750
    • Factory Reset
    • Changing IMEI
    • Firmware Update
  • Software
    • Nitrokey App 2
      • Linux Install
      • macOS Install
      • Windows Install
      • KeePassXC
      • Passwords
      • PIN Settings for FIDO2 and OTP in the Nitrokey App 2
    • nitropy
      • All Platforms
        • Installing nitropy With pipx
        • Test Nitrokey 3
      • Windows
        • Installing nitropy on Windows
      • Linux
        • Setting up The udev Rules
    • Nitrokey Python SDK v0.3.0
      • Guides
        • Usage Guide
      • API Reference
        • nitrokey.nk3
          • nitrokey.nk3.secrets_app
          • nitrokey.nk3.updates
        • nitrokey.nkpk
        • nitrokey.trussed
          • nitrokey.trussed.admin_app
          • nitrokey.trussed.provisioner_app
        • nitrokey.updates
Back to top

PIV (Personal Identity Verification)¶

Compatible Nitrokeys

3A/C/Mini

Passkey

HSM 2

Pro 2

FIDO2

Storage 2

Start

U2F

✓

active

⨯

inactive

⨯

inactive

⨯

inactive

⨯

inactive

⨯

inactive

⨯

inactive

⨯

inactive

The Personal Identity Verfication (PIV) is based on the NIST special publication SP 800-73. It is available as of firmware version 1.8 and higher.

  • Access Control
  • Certificate Management
  • Factory Reset
  • Key Management
  • Guides
Diese Seite ist auf Deutsch verfügbar.
Cette page est disponible en français
Esta página está disponible en español.
Deze pagina is beschikbaar in het Nederlands.
Questa pagina è disponibile in italiano.
このページは日本語でご覧いただけます。
Эта страница доступна на русском языке.
本页有中文版本。
Αυτή η σελίδα είναι διαθέσιμη στα ελληνικά.
Denne side er tilgængelig på dansk.
Тази страница е достъпна на български език.
See lehekülg on saadaval eesti keeles.
Tämä sivu on saatavilla suomeksi.
Šī lapa ir pieejama latviešu valodā.
Šis puslapis pateikiamas lietuvių kalba.
Ta strona jest dostępna w języku polskim.
Esta página está disponível em português.
Această pagină este disponibilă în limba română.
Den här sidan finns på svenska.
Táto stránka je k dispozícii v slovenčine.
Ta stran je na voljo v slovenščini.
Tato stránka je k dispozici v češtině.
Ez az oldal magyar nyelven érhető el.
Auf Deutsch ansehen
Ausblenden
Passer au français
Cacher
Cambia al español.
Ocultar
Schakel over op Nederlands.
Verberg
Passa all`italiano.
Nascondi
日本語に切り替えます。
隠す
Переключитесь на русский язык.
Скрыть
换成中文。
隐藏
Αλλαγή σε ελληνικά.
Απόκρυψη
Skift til dansk.
Skjul
Преминете на български език.
Скрий
Vahetage eesti keelele.
Peida
Vaihda suomeksi.
Piilota
Pārslēgties uz latviešu valodu.
Paslēpt
Perjunkite į lietuvių kalbą.
Paslėpti
Przełącz się na język polski.
Ukryj
Mudar para português.
Esconder
Treceți la limba română.
Ascundeți
Växla till svenska.
Dölj
Prepnite na slovenčinu.
Skryť
Preklopite na slovenščino.
Skrij
Přepněte na češtinu.
Skrýt
Váltson magyarra.
Rejtsd el
Next
Access Control
Previous
TLS Setup With Apache2
Copyright © Nitrokey
Edit this Page | Request docs change