I am currently unable to create any passkeys for my Bitwarden account when using Firefox. Just to be clear: I am not talking about the PRF/encryption feature, but just the standard passkey registration itself (although Firefox even supports the PRF extension).
Whenever I try to register a new passkey via Firefox, the process simply fails and I cannot complete the setup:
I donât see this problem on Firefox 140.8 ESR. It seems that somehow Bitwarden and Firefox canât trigger the Windows Hello prompt that should follow the screen after you enter the OTP.
Yes, I was able to, but I had to delete the old one to create another on the same FIDO2 key.
Interestingly, my Passkey 2FA stored on Windows Hello didnât show up in the last web login (but it worked fine when I last posted). I had to delete the old one and create a new one to get it working again. I didnât try that on other clients (desktop, browser extensions), though.
Thanks so much for checking! Just to clarify, for that specific question I was actually wondering about Windows Hello itself (rather than a physical FIDO2 key). There are some signs that Windows Hello might now support PRF.
With the latest Windows patch, I tried adding login passkeys for my Bitwarden account using Windows Hello. Both Edge and Firefox (ESR) added the passkey but said encryption wasnât supported. So from my POV, Windows Hello passkeys donât support PRF yet.
Thanks for testing this out! Would be interesting to know if this demo page is working for you using Firefox ESR. If not, it seems Firefox has indeed recently changed something regarding passkeys (which could also be the reason why you donât have the problems with passkey creation on Bitwarden).
It would make sense if something had changed in Firefox 141+. Atleast with Edge, you should still be able to successfully authenticate with PRF value even if the registration failed. But thatâs more of a topic for the other thread.