Hello!
I tryed to update my NK3 Fido firmware.
First I checked my current version and get
nitropy fido2 version
Command line tool to interact with Nitrokey devices 0.6.0
0.64.1 locked
What means locked
?
regards
T.L.
Hello!
I tryed to update my NK3 Fido firmware.
First I checked my current version and get
nitropy fido2 version
Command line tool to interact with Nitrokey devices 0.6.0
0.64.1 locked
What means locked
?
regards
T.L.
It means the FIDO2 app is updated via the Nitrokey 3 firmware. There were earlier fido2 only devices that could be updated via nitropy fido2 update
.
Hello @nku thanks!
So I can not update this anymore via this command? Or does not make sense?
I wonder because of the low version.
nitropy fido2 update
Command line tool to interact with Nitrokey devices 0.6.0
Nitrokey FIDO2 firmware update tool
Platform: Linux-6.6.52-desktop-1.mga9-x86_64-with-glibc2.36
System: Linux, is_linux: True
Python: 3.10.11
Saving run log to: /tmp/nitropy.log.6jwmlb65
Starting update procedure for Nitrokey FIDO2...
Found latest firmware: nitrokey-fido2-firmware-2.4.0.json
(published at 2021-05-12T12:24:14Z, under tag 2.4.1.nitrokey)
Current Firmware version: 0.64.1
Downloading latest firmware: 2.4.1.nitrokey (published at 2021-05-12T12:24:14Z)
Firmware saved to /tmp/fido2_firmware.json
Downloaded firmware version: 2.4.1.nitrokey
This will update your Nitrokey FIDO2
Do you want to continue? [yes/no]: yes
Entering bootloader mode, please confirm with button on key! (long 10 second press)
Critical error:
problem switching to bootloader mode:
Exception encountered: OSError(5, 'Input/output error')
So the old version is “enough” for all FIDO2 related things?
regards
T.L.
These are sub component versions and you should care only about full firmware releases.
Also, please read the release notes whether the update is recommended (e.g. new features or security related fixes) or when it mentions an issue that you are facing.
There is no need to update every minor version.
In general: while update mechanisms usually do some checks before applying them, there is a chance to brick devices in edge cases when trying firmware updates meant for other products.
Hello
Where do I find the release note for FIDO firmware?
Thanks
T.L.
For NK3 devices the relevant changes are included in the full device firmware release notes: Releases · Nitrokey/nitrokey-3-firmware · GitHub
You will see bullets like the following for the v1.7.0 firmware release:
Hello
Thank you.
I still did not know whether my NK3 firmware for the FIDO part is updatable or not.
Regards
T.L.
There is only a single firmware package for Nitrokey 3. This includes the correct applications for FIDO2, opcard-rs, secrets, etc. They are updated as a bundle. The option you see in nitropy fido2 update is for a totally different hardware device.
Hello.
Ok so the option to update the fido2 part of the nitrokey 3 doesn’t make sense. Okay. That maybe has to be stated on the homepage to not confuse users like me.
Thanks!
T.L.