On Sat, Feb 14, 2026 at 09:52:28PM +0100, Andreas Sturmlechner wrote: > 3 different USE flags are currently contesting for the same library: > > - fido2 > sys-apps/systemd: Enable FIDO2 support > > - passkey > sys-auth/sssd: Add support for FIDO2 passkeys" [sic] > > - security-key > net-misc/openssh: Include builtin U2F/FIDO support > > > Surely we can do better - so which one should it be? > > Regards
I think "passkey" is the worst as that's just one of the use cases for hardware tokens. "fido2" denotes the current most popular standard in use, though most keys also support U2F, OTP, PGP, or even smart card functionality. Which one of these is used by the software in question can vary. What is most popular now might change in the future, and also could be a bit too technical for some users. I think probably security-key is the best of these three. It conveys the purpose for everyone and clearly denotes 2nd factor or some other hardware token feature. The description of the USE flag can add further clarification, like the one used for the openssh package. Zoltan
signature.asc
Description: PGP signature
