Yubico

YubiCloud Validation Service

The YubiCloud is a free cloud based YubiKey One-Time Password (OTP) validation service, enabling quick and easy integration of strong two-factor authentication to your Web Site or Web Service.

Our robust OTP validation servers are arranged in a distributed failover configuration located at five different secure datacenters around the globe, all servers synchronized to each other making sure that there is no single point of failure and that responses are serviced in a timely manner, independent from where around the world validation request is sent. Each backend server is equipped with YubiHSM Hardware Security Module(s) in order to make sure that all secret keys are fully protected and stored encrypted at all times. Yubikeys from the Yubico store comes ready to use with the YubiCloud (no programming of the keys required).

The following document describes YubiCloud, including how the YubiHSM is used to secure YubiKey encryption keys in our production and in our authentication servers.

» YubiCloud Description

To add YubiKey two-factor authentication to your Web Site or Web Service through the YubiCloud validation service you can just use one of the Web APIs (described below) and you will be up and running in less than an hour.

» To Web APIs