Apple has introduced security keys as an additional step to help users protect their Apple ID accounts. Keep reading to learn why the alternative authentication method is the most secure method available and what you need to do to set it up.

ios 16 3 security keys info

What Are Security Keys?

With the release of iOS 16.3, iPadOS 16.3, and macOS Ventura 13.2, Apple introduced support for security keys, or physical devices that can verify your ‌Apple ID‌ instead of a passcode.

Apple designed the feature for people who require additional protection from targeted attacks, such as phishing or social engineering scams.

The extra protection that security keys provide means that if someone had your ‌Apple ID‌ and your password, they still would not be able to access your account without your physical security key, which replaces the traditional verification code provided by two-factor authentication.

How Do Security Keys Work?

With a security key enabled, signing into an ‌Apple ID‌ requires entering your account's password and then using a security key to complete the two-factor authentication process, instead of the traditional six-digit verification code that is sent to another Apple device signed into the same account.

Why It's Worth Using Security Keys

It's worth noting from the outset that using physical security keys puts the onus on you to be careful not to lose them, otherwise you could permanently lose access to your Apple account. This is why Apple requires users to set up at least two security keys, and supports up to six in total.

security keys
Having two physical security keys set up means you can keep them in more than one safe place. For example, you could keep one at home and one in your workplace, or you could keep one with you when traveling while the other one remains safe at home.

Once you have security keys set up, you can use them to sign in with your ‌Apple ID‌ on a new device or on the web, reset your ‌Apple ID‌ password, and add additional security keys or remove them from your account.

What You Can't Do With Security Keys

There are a few things worth noting that you can't do with security keys.

  • You can't use them to sign in to iCloud for Windows.
  • You can't sign in to older devices that can't be updated to a software version that supports security keys.
  • Security keys don't support child accounts and Managed Apple IDs.
  • Apple Watches that are paired with a family member's iPhone aren't supported.

Security Keys Worth Considering

Most security keys look similar to a typical USB thumb drive, with some options available with NFC for wireless use and others equipped with Lightning, USB-C, and/or USB-A ports for direct connectivity with iPhones, iPads, and Macs.

There are many options on the market when buying security keys, but the main things to consider when choosing one are that it is FIDO Certified and that it has a connector that works with your Apple devices. Some options recommended by Apple include:

Visit the FIDO Showcase website for a complete list of keys certified by the FIDO Alliance.

How to Enable Security Keys on iPhone and iPad

  1. Launch the Settings app on your iOS device.
  2. Tap your name in the ‌Apple ID‌ banner.
  3. Tap Password & Security.
  4. Tap Security Keys.
  5. Tap the blue Add Security Keys button and follow the on-screen instructions.

settings

You can remove security keys at any time by repeating the steps outlined above and tapping or clicking on Remove All Security Keys. Doing so causes your ‌Apple ID‌ to revert to using a traditional six-digit verification code for two-factor authentication.

How to Enable Security Keys on Mac

  1. Click the Apple symbol () in your Mac's menu bar and choose System Settings….
  2. Click your name at the top of the sidebar.
    settings

  3. Click Password & Security.
  4. In the "Security Keys" menu section, click Add…, then follow the onscreen instructions.
    settings

After following the above steps you will be given the opportunity to review the devices linked to your ‌Apple ID‌, with options to stay signed in to or log out of any associated Apple devices.

You can stop using security keys on your Mac by going to System Settings -> [your name] -> Password & Security. Click Security Keys, then click Remove All Security Keys. Doing so causes your ‌Apple ID‌ to revert to using a traditional six-digit verification code for two-factor authentication.

Top Rated Comments

F23 Avatar
16 months ago
Introducing the Apple Security Key for $199, we think you're going to love it.
Score: 17 Votes (Like | Disagree)
TheYayAreaLiving ?️ Avatar
16 months ago

Introducing the Apple Security Key for $199, we think you're going to love it.
I'm afraid it will be subscription-based :(. Apple's main focus is to generate money through Services nowadays :(
Score: 15 Votes (Like | Disagree)
antiprotest Avatar
16 months ago
Everything looks good until we find out Apple lets thieves use "shake to undo" to reset and switch to their own key.

And then everybody will have to use a screen time code to plug that hole too.
Score: 11 Votes (Like | Disagree)
Apple_Robert Avatar
16 months ago
The security keys don't fully protect your Apple ID account. The keys are useless in protecting your Apple ID account if someone knows your phone passcode and takes control of your phone.
Score: 9 Votes (Like | Disagree)
centauratlas Avatar
16 months ago

I cannot tell you how many flash drives I have misplaced over the years, so I fear losing my security key and then I'm really screwed without anyone having to steal my device.

Am I missing something with this approach? How do the thieves bypass my second screen time pin without trying to crack the 4-digit pin? Is there a back door? I realize that it could take time to methodically run through the 10,000 combinations. Not the most secure I agree, but if it slows them down long enough for me to take action, then it's better than no security key and no password.

I'm just asking because I want to learn and know what I am up against.
Someone already answered this, but Apple needs additional steps to protect the AppleID. Some possibilities. Some/all could be optional:

1. 72 hour delay period before you are locked out - so you could back out of it from a different Apple Device, e.g. iPad.
2. Require FaceID/TouchID in addition to the password to reset it. And/or require the old password be entered to reset it.
3. Require confirmation on a different logged in Apple device, so it can't be done from the stolen device.
4. Sign phone out of iCloud for the paired iPhone from the Watch.
5. Or allow you to lock the paired phone from the Watch so that it needs a password AND confirmation from a different Apple device before they can do anything.

:-)
Score: 9 Votes (Like | Disagree)
Mr. Dee Avatar
16 months ago
Sorry, I’ll take my chances and just avoid using my passcode in public places.
Score: 9 Votes (Like | Disagree)

Popular Stories

iPhone SE 4 Vertical Camera Feature

iPhone SE 4 Rumored to Use Same Rear Chassis as iPhone 16

Friday July 19, 2024 7:16 am PDT by
Apple will adopt the same rear chassis manufacturing process for the iPhone SE 4 that it is using for the upcoming standard iPhone 16, claims a new rumor coming out of China. According to the Weibo-based leaker "Fixed Focus Digital," the backplate manufacturing process for the iPhone SE 4 is "exactly the same" as the standard model in Apple's upcoming iPhone 16 lineup, which is expected to...
iPhone 16 Pro Sizes Feature

iPhone 16 Series Is Just Two Months Away: Everything We Know

Monday July 15, 2024 4:44 am PDT by
Apple typically releases its new iPhone series around mid-September, which means we are about two months out from the launch of the iPhone 16. Like the iPhone 15 series, this year's lineup is expected to stick with four models – iPhone 16, iPhone 16 Plus, iPhone 16 Pro, and iPhone 16 Pro Max – although there are plenty of design differences and new features to take into account. To bring ...
iphone 14 lineup

Cellebrite Unable to Unlock iPhones on iOS 17.4 or Later, Leak Reveals

Thursday July 18, 2024 4:18 am PDT by
Israel-based mobile forensics company Cellebrite is unable to unlock iPhones running iOS 17.4 or later, according to leaked documents verified by 404 Media. The documents provide a rare glimpse into the capabilities of the company's mobile forensics tools and highlight the ongoing security improvements in Apple's latest devices. The leaked "Cellebrite iOS Support Matrix" obtained by 404 Media...
tinypod apple watch

TinyPod Turns Your Apple Watch Into an iPod

Wednesday July 17, 2024 3:18 pm PDT by
If you have an old Apple Watch and you're not sure what to do with it, a new product called TinyPod might be the answer. Priced at $79, the TinyPod is a silicone case with a built-in scroll wheel that houses the Apple Watch chassis. When an Apple Watch is placed inside the TinyPod, the click wheel on the case is able to be used to scroll through the Apple Watch interface. The feature works...
bsod

Crowdstrike Says Global IT Outage Impacting Windows PCs, But Mac and Linux Hosts Not Affected

Friday July 19, 2024 3:12 am PDT by
A widespread system failure is currently affecting numerous Windows devices globally, causing critical boot failures across various industries, including banks, rail networks, airlines, retailers, broadcasters, healthcare, and many more sectors. The issue, manifesting as a Blue Screen of Death (BSOD), is preventing computers from starting up properly and forcing them into continuous recovery...
New MacBook Pros Launching Tomorrow With These 4 New Features 2

M5 MacBook Models to Use New Compact Camera Module in 2025

Wednesday July 17, 2024 2:58 am PDT by
Apple in 2025 will take on a new compact camera module (CCM) supplier for future MacBook models powered by its next-generation M5 chip, according to Apple analyst Ming-Chi Kuo. Writing in his latest investor note on unny-opticals-2025-business-momentum-to-benefit-509819818c2a">Medium, Kuo said Apple will turn to Sunny Optical for the CCM in its M5 MacBooks. The Chinese optical lens company...