Salut,
Je connaissait mais n'utilise pas.
C'est super mais aussi terrible !
Si tu perd ton ledger ou que tu update ton firmware alors tu perd ton access 2FA vu que c'est fabrique par la seed mais pas derivee de celle ci.
Copie colle du site ledger :
The FIDO U2F app on your Ledger device maintains an internal counter that changes each time you use FIDO U2F to login on a third party service. After a firmware update, all apps have to be reinstalled. Unfortunately, this means that the counter is reset and you will not be able to login using the FIDO U2F app on your device before reconfiguring the services you use it on:
Please use an alternative means of logging in onto the services you want to access (authenticator app / one time password / request a password reset link by email).
Once logged in, go into the (security) settings of the services on which you use FIDO U2F. Then, remove FIDO U2F with your Ledger device as a method of authentication.
Re-register your device as authentication method.
https://support.ledger.com/hc/en-us/articles/115005198545-FIDO-U2FJe me suis longtemps penche sur la question.
J'ai deux solutions pour toi :
Utiliser AUTHY sur 2 appareils et bloquer l'access a tout nouveau appareil sans avoir l'authorisation d'un appareil approve.
Ou alors, tu usilise google authentificator, et tu sauve les 2FA code dans un password manager (lastpass / keepass) voire meme, tu achete sur le bon coin un smartphone a 20euros ou tu sauve/duplique tout tes 2FA
Autre source (reddit) :
Be aware that if you do use it - the implementation is incomplete in that if you rely on it any serious capacity, and you happen to accidentally uninstall the U2F app, you have to match the counter to where it previously was in order for your logins to work..
This means if you've used it 200 times, you need to incorrectly login to any site 200 times for the counter to start working again.
It's easier probably to just remove the device and add it back again, but it would need to be done for all accounts and it's just mess and really inconvenient if it's the sole method of gaining access.
https://www.reddit.com/r/ledgerwallet/comments/7emdmu/how_to_use_fido_u2f_with_ledger_nano_s/