FEITIAN FIDO2 against azure AD, not working in Edge/Chrome

Martin Gustafsson 26 Reputation points
2022-11-03T14:47:06.567+00:00

Hi,

Trying to set up a Feitian K9 security ley as a login method for my microsoft 365 account. At first I could register the key vs Azure and name it i Mozilla FIrefox but not in Edge/Chrome. I could test the authentication vs different sites set up for FIDO2-keyes in all browsers, but not vs azure. Suddenly I cannot even use Firefox anymore and now I get a new error-message: fidoprovisioningerror=invalidcanary.

Been trying to read up on it but I cannot get anywhere.

Anyone got any tips?

BR/

Martin

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} votes

Accepted answer
  1. Givary-MSFT 35,626 Reputation points Microsoft Employee Moderator
    2022-11-08T07:38:24.683+00:00

    @Martin Gustafsson Thank you for reaching out to us. As I understand you are using Feitian K9 security key for login to O365, same is not working in Edge/Chrome.

    Certain FIDO2 keys have bugs in the firmware/software used by the key itself. Nitrokey and Feitian keys have been known to fail due to bugs in the key. The bugs may not manifest in all FIDO2 capable/supported browsers.

    Some of these keys allow firmware updates to resolve bugs, you can review edge/chrome device-log if you suspect the key has a bug.
    How to view device logs - chrome://device-log/ or edge://device-log/

    Please make sure, where applicable update firmware/software, would request you to check the relevant vendor's support to get details on updated firmware availability or replacement keys.

    Reference: https://learn.microsoft.com/en-us/graph/api/fido2authenticationmethod-list?view=graph-rest-beta&tabs=http

    Let me know if you have any further questions, please feel free to post back.

    Please remember to "Accept Answer" if answer helped, so that others in the community facing similar issues can easily find the solution.


0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.