Clone
3
YubiKey PIV Card
Hatter Jiang edited this page 2022-04-04 18:20:42 +08:00

Slot 9a: PIV Authentication

Authenticates the smart card and the cardholder (e.g. OS logins, ssh, WiFi, OpenVPN, curl, Android code, Mac code, automatic screen locking). By default, PIN is required once and may be re-used for subsequent operations.

Slot 9c: Digital Signature

Signs objects (Android codesign, Mac codesign, storing intermediate CA private key). By default, PIN is required for each signing operation.

Slot 9d: Key Management

Encrypts object for the purpose of confidentiality. By default, PIN is required once and may be re-used for subsequent operations.

Slot 9e: Card Authentication

Authenticates against physical access applications (e.g. door locks). By default, PIN is not required.

Slot f9: Attestation

Attests other slot keys were generated on the device.

https://ruimarinho.gitbooks.io/yubikey-handbook/content/piv/use-cases.html