Overview#

The Nitrokey 3 is a very versatile platform which allows us to constantly improve and add functionalities. This overview represents the current state and furthermore adds various technical details on how the different features are realized.

Feature

Description

Transport(s)

Secure element support

FIDO2

Increase (Web-)security using 2FA and passwordless logins; ssh logins

USB, NFC

no

U2F

Predecessor of FIDO2 mainly used for Two-Factor Authentication

USB, NFC

no

OpenPGP Card

Asymmetric cryptography; keep your private key(s) secure; email encryption

USB

yes

SMIME

Asymmetric cryptography; keep your private key(s) secure; email encryption

USB

yes

Password Safe

(One-Time-)Passwords securely stored on your Nitrokey 3

USB

no

Admin App

Administration functions used by pynitrokey and NitrokeyApp2

USB

no

Note

Secure element support for OpenPGP Card is available since stable firmware v1.7.0. Any new devices will have this automatically activated. For devices already in use, the user has to manually switch as described in the FAQ.

On top of the stable firmware for the Nitrokey 3, we also provide a Test Firmware, which comes with additional functionalities, which are not (yet) included into the stable firmware.

Using the Test Firmware is not recommended for production environments, there might be incompatibilities between test and stable firmware upgrades - please use with caution. Especially data migrations from test to stable firmwares will not be implemented.

Feature

Description

Transport(s)

Secure element support

PIV

Asymmetric cryptography; more business focussed smartcard realization

USB

no

WebSmartCard

Provides smartcard-functionalities through the web & FIDO2

USB

no