u/Here4TekSupport

Pre-Provisioning YubiKeys (Is it possible to fully automate the process?)

Hi all,

I am in charge of deploying Yubi Keys company wide for around 1200 users. I found YubiEnroll, and it works great for pre-provisioning keys before giving them to the user. The issue is even with a short script to speed up the process, it still requires a lot of manual effort such as tapping the key several times, unplugging it and plugging it back up, etc.

Has anyone dealt with this and figured out a way to fully automate the provisioning? My ideal goal would be to have a CSV file with every user, then a script just goes one by one, provisions the key, and then waits for a new key to be plugged in before continuing. I have reached out to YubiKey support but was told this request was "out of scope" of their support. I read the YubiEnroll documentation, but did not see an answer or way to script this.

I am open to 3rd party solutions if required. Thanks in advance!

reddit.com
u/Here4TekSupport — 6 days ago

Hi all,

I am in charge of deploying Yubi Keys company wide for around 1200 users. I found YubiEnroll, and it works great for pre-provisioning keys before giving them to the user. The issue is even with a short script to speed up the process, it still requires a lot of manual effort such as tapping the key several times, unplugging it and plugging it back up, etc.

Has anyone dealt with this and figured out a way to fully automate the provisioning? My ideal goal would be to have a CSV file with every user, then a script just goes one by one, provisions the key, and then waits for a new key to be plugged in before continuing. I have reached out to YubiKey support but was told this request was "out of scope" of their support. I read the YubiEnroll documentation, but did not see an answer or way to script this.

reddit.com
u/Here4TekSupport — 6 days ago