TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Designing and Producing 2FA tokens to Sell on Amazon

255 pointsby conorppover 8 years ago

25 comments

Animatsover 8 years ago
Case. Must have case. A bare board is not a consumer product. Consider just dipping the thing in Plasti-Dip, without submerging the connector. For a better feel, put the button on the solder side side, and put a thin piece of plastic U-channel sized to fit the board over the component side to give it a flat surface. Then Plasti-Dip. No custom injection molding, and the user can still push the button through the Plasti-Dip.<p>Other than that, great idea. It&#x27;s how PayPal started.
评论 #12578326 未加载
评论 #12578637 未加载
评论 #12580856 未加载
评论 #12578707 未加载
评论 #12580141 未加载
alisterover 8 years ago
&gt; <i>I am not actually concerned with financial success or growth. The nice thing about this project is I can just let it sit and I don’t need to maintain anything – leaving me time to move on to the next project.</i><p>You should pursue this product -- you have <i>huge</i> possibilities here.<p>You heard of a company called Security Dynamics? They invented the little token with ever-changing 6-digit numbers that you have to enter to login to your remote office computer. You probably know it today as the RSA SecurID[1]. They created a billion-dollar market and made the founders fabulously rich.<p>I know that there are other U2F products out there, but you can make yours unique, different in some way, or targeted to different market. Or just compete as an alternative to the larger companies making U2F keys (which are not really that large yet anyway).<p>Surely continuing this product is better than the &quot;working in government&quot; job you&#x27;re seeking.<p>[1] <a href="https:&#x2F;&#x2F;upload.wikimedia.org&#x2F;wikipedia&#x2F;commons&#x2F;3&#x2F;33&#x2F;RSA-SecurID-Tokens.jpg" rel="nofollow">https:&#x2F;&#x2F;upload.wikimedia.org&#x2F;wikipedia&#x2F;commons&#x2F;3&#x2F;33&#x2F;RSA-Secu...</a>
评论 #12578406 未加载
kbakerover 8 years ago
Looks good. Consider applying a conformal coating at the end. It will provide a lot of protection from general handling and riding around on a keychain, and preserve the &#x27;raw PCB&#x27; look.<p>Something like: <a href="http:&#x2F;&#x2F;www.mgchemicals.com&#x2F;products&#x2F;conformal-coatings&#x2F;acrylic-conformal-coating-419c" rel="nofollow">http:&#x2F;&#x2F;www.mgchemicals.com&#x2F;products&#x2F;conformal-coatings&#x2F;acryl...</a>
评论 #12578553 未加载
StavrosKover 8 years ago
This is fantastic, very useful stuff. I literally just finished writing a similar post:<p><a href="https:&#x2F;&#x2F;www.stavros.io&#x2F;posts&#x2F;making-gsm-board&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.stavros.io&#x2F;posts&#x2F;making-gsm-board&#x2F;</a><p>Conor, can you detail how the assembly is done a bit? I&#x27;ve made a few boards with KiCAD but I have no idea how to go from bare PCB to assembled PCB, especially for such low cost as yours.<p>I went to PCBcart but counting all the items on my board was a hassle, and I got a cost of $38 per board for a run of ten, which sounds too expensive. Besides that, how do you even export the BOM from KiCAD? It doesn&#x27;t come with a plugin by default.<p>A few details or a post on how to go from PCB design to assembled board would be very useful, at least to me.
评论 #12578223 未加载
Mizzaover 8 years ago
At the risk of sounding like a complete schmuck - how do I actually use this?<p>It look like it&#x27;s a dev board, the kind of thing I&#x27;d get on SparkFun or whatever, but I get the impression it&#x27;s a consumer product. Do I plug it into my computer, and it runs software? Do I press the button, then it blinks out a password via LED at me? Does it connect via bluetooth to.. something? Who writes the local software? You? Google? Me?<p>I love your write-up and I dig your hustle, but I think the final 10% &quot;polish&quot; is the missing piece here! Good luck!
评论 #12578252 未加载
评论 #12578346 未加载
评论 #12578720 未加载
VeXocideover 8 years ago
If a coating of plasti-dip is an option check whether it&#x27;s possible to add glitter to it as tamper-proofing, similar to <a href="https:&#x2F;&#x2F;www.wired.com&#x2F;2013&#x2F;12&#x2F;better-data-security-nail-polish&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.wired.com&#x2F;2013&#x2F;12&#x2F;better-data-security-nail-poli...</a>
lisperover 8 years ago
I am doing something similar but much more powerful and versatile (and more expensive):<p><a href="https:&#x2F;&#x2F;sc4.us&#x2F;hsm&#x2F;index.html" rel="nofollow">https:&#x2F;&#x2F;sc4.us&#x2F;hsm&#x2F;index.html</a><p>I actually have a new batch of prototypes and I&#x27;m just putting the finishing touches on my e-commerce code (I&#x27;m using Stripe and Easypost rather than Amazon). The plan is to finish that tonight and start taking orders again on Monday.
评论 #12580934 未加载
评论 #12579717 未加载
mmorrisover 8 years ago
<i>I&#x27;m by no means an entrepreneur but I&#x27;d like to keep trying to be one.</i><p>Your imposter syndrome is showing! Designing and building a tool like this and selling it qualifies you as an entrepreneur.<p>Get a low-cost marketing channel going (or improve your margins to make other marketing options feasible) and see how far you can run with this.<p>Thanks for the interesting read.
rattrayover 8 years ago
Looks like it&#x27;s basically this: <a href="https:&#x2F;&#x2F;www.amazon.com&#x2F;Yubico-Y-123-FIDO-U2F-Security&#x2F;dp&#x2F;B00NLKA0D8" rel="nofollow">https:&#x2F;&#x2F;www.amazon.com&#x2F;Yubico-Y-123-FIDO-U2F-Security&#x2F;dp&#x2F;B00...</a> but $8 instead of $18, open-source, and far more &quot;stylish&quot;.<p>Cool.
评论 #12578672 未加载
jamiesonbeckerover 8 years ago
I started soldering one of these one night (ordered enough parts for 9 of them) and realized that these things are really, REALLY tiny. Even with a magnifying glass, it&#x27;s hard to even tell where the pins are, but I got about half of it soldered.. looking forward to the other half. :)<p>Huge thank you to Conor for building this whole thing and open sourcing it and even providing links to pre-fab PCB&#x27;s. Incredible work. Also the PCB&#x27;s look really cool.<p>I think I&#x27;ll buy a few to go along with the one I just made.. :)
评论 #12578210 未加载
jerkstateover 8 years ago
It seems like the price is too low, if your actual margin is only 25%. As a customer I would also be concerned about how to carry it without damaging it, given that there&#x27;s no case. Do you have any recommendations?<p>You might also want to add some keywords like &quot;fido usb yubikey&quot; to your product page too.
cavisneover 8 years ago
Very cool, I love how this is an end to end FBA business with (it sounds like) very little upfront cost.<p>Is getting the 2 day shipping a function of just price of the item or something else?<p>I wonder because the most direct competitor<p><a href="https:&#x2F;&#x2F;www.amazon.com&#x2F;HyperFido-K5-FIDO-U2F-Security&#x2F;dp&#x2F;B00WIX4JMC" rel="nofollow">https:&#x2F;&#x2F;www.amazon.com&#x2F;HyperFido-K5-FIDO-U2F-Security&#x2F;dp&#x2F;B00...</a><p>gets the 2 day shipping and is only a few $&#x27;s more.<p>The difference between $8-10 is nothing really, if I was shopping for one of these and saw yours for the same price I would buy it because I <i>like</i> the exposed&#x2F;no case design (and I think a lot of the &quot;early adopter&quot; people buying these tokens for personal use would be the same). So maybe you should bump the price up a bit.
评论 #12578819 未加载
sekasiover 8 years ago
Really great writeup man, and for a good cause too. I&#x27;ve done something remarkably similar but solely for myself, and it&#x27;s great to see someone going one step further.<p>Best of luck, hope you make your money back and get a nice kicker in the end to fund a few late night college parties.
评论 #12578417 未加载
gravypodover 8 years ago
How hot does this get? If I just put this in a putty-epoxy will I &quot;cook&quot; it?<p>Edit: Can I also use this as 2FA for SSH&#x2F;Desktop login on my Arch install? I&#x27;ve never done 2FA but I&#x27;ve always wanted to.
评论 #12584536 未加载
frederikvsover 8 years ago
Could use a comparison to e.g. a yubikey [0]. At this price, I can afford to just order one and see what happens, but still it would be nice to know what features I&#x27;m sacrificing for the cheaper price.<p>[0] <a href="https:&#x2F;&#x2F;www.yubico.com&#x2F;products&#x2F;yubikey-hardware&#x2F;yubikey4&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.yubico.com&#x2F;products&#x2F;yubikey-hardware&#x2F;yubikey4&#x2F;</a>
评论 #12580793 未加载
trav4225over 8 years ago
Interesting -- I (incorrectly?) assumed this would need to be approved by several regulatory bodies in order to be legal to sell...
评论 #12578093 未加载
thoughtpaletteover 8 years ago
I love this. Great article&#x2F;read&#x2F;product.<p>One thing to note, on your site <a href="https:&#x2F;&#x2F;u2fzero.com&#x2F;" rel="nofollow">https:&#x2F;&#x2F;u2fzero.com&#x2F;</a> there&#x27;s around 50 line break tags at the bottom. Shows an entire screen of white space for me :|
fragmedeover 8 years ago
Pricing things well is a dark art, but I think you could stand to raise the price some.
mrgreenfurover 8 years ago
Love it and want to buy one, can I buy direct from you? (I have a thing against Amazon).<p>Edit: For auth on a phone &#x2F; small device, could you make a version with a miniusb plug?
danieltillettover 8 years ago
I have a question about these tokens - what happens if they break? Are you effectively locked out? Is it possible to have two identical tokens so that if one breaks you can use the other?
评论 #12579169 未加载
评论 #12582495 未加载
mrlambchopover 8 years ago
Ordered 2 of - great write up.<p>Just pondering - did you disable JTAG on these devices before distributing them?
taejoover 8 years ago
BTW, Amazon seems to think they&#x27;re storage devices, and is offering data recovery plans.
akhilcacharyaover 8 years ago
I&#x27;ve been interested in building hardware-for-crypto too, great write up!
leetbulbover 8 years ago
How cool, just ordered a few!
评论 #12580438 未加载
评论 #12578433 未加载
happy-go-luckyover 8 years ago
Isn&#x27;t mobile phone 2FA more advantageous?
评论 #12579919 未加载
评论 #12578653 未加载
评论 #12587346 未加载
评论 #12582115 未加载