2

If I have an account, say with google, and only use that account from location A, using device A, and another google account only used with device B in location B, if I used the same 2fa FIDO key for both accounts, would google have any way of knowing the same key is being used for both accounts?

1 Answers1

1

A website has no way of knowing where the certificate that was used is physically located on the user's computer, meaning from which device it was read.

The answer is No.

harrymc
  • 498,455