- New
FEITIAN ePass FIDO-NFC is a hardware security key designed for strong user authentication, online account protection, and multi-factor and passwordless login. It combines FIDO2 and FIDO U2F support with two communication methods: a classic USB interface and wireless NFC (Near Field Communication) technology. This allows a single key to be used with both computers and compatible mobile devices equipped with NFC.
FEITIAN ePass FIDO-NFC – FIDO2 Hardware Security Key with NFC
FEITIAN ePass FIDO-NFC is a hardware security key designed for strong user authentication, online account protection, and multi-factor and passwordless login. It combines FIDO2 and FIDO U2F support with two communication methods: a classic USB interface and wireless NFC (Near Field Communication) technology. This allows a single key to be used with both computers and compatible mobile devices equipped with NFC.
Unlike the standard FIDO ePass, the NFC variant allows authentication without the need to physically connect the key to a phone or tablet. On a mobile device, simply touch the key to an NFC reader. FEITIAN emphasizes NFC as a method for user registration and authentication on mobile devices.
The key utilizes a hardware Secure Element and a JavaCard system. The cryptographic material used during authentication remains protected on the device. The user's physical presence is confirmed using a touch button. The solution is designed to protect against account takeovers, phishing, and other attacks that exploit stolen passwords.
The current versions of the K9B and K40 are classified by FEITIAN as CTAP 2.1 devices. The manufacturer provides the current FIDO 9151 implementation and a common AAGUID of 234cd403-35a2-4cc2-8015-77ea280c77f5. Older K9/K40 models also featured the CTAP 2.0 implementation, so please note the firmware version when describing older models.
Key Features
Hardware Security Key
FIDO2 Support
FIDO U2F Support
CTAP 2.1 – Current K9B/K40
Can be used with services using FIDO2/WebAuthn
Multi-Factor Authentication (MFA)
Two-Factor Authentication (2FA)
Can be used for passwordless login
USB-A or USB-C interface depending on the model
NFC Communication
Support for computers and mobile devices
OATH HOTP
OATH TOTP
Static Password – supported by current versions/firmware
Challenge Response – supported by current versions/firmware
Two OTP slots in supporting firmware versions
Ability to assign functions to short and long presses
Hardware Secure Element
JavaCard System
USB HID Communication
NFC Communication compliant with ISO 14443
No Bluetooth/BLE
No reader Biometric
Physical confirmation of operations with a touch button
Activity signaling via LED
No need to install a driver for standard FIDO operation via USB
Ability to use a single key across multiple compatible services and applications.
Models and Variants
FEITIAN ePass FIDO-NFC K9B
The current entry-level model with a classic USB-A connector and NFC. FEITIAN lists the K9B in its current CTAP 2.1 portfolio and in the manufacturer's current online store.
Model: K9B
Connector: USB-A
NFC: Yes
FIDO2: Yes
FIDO U2F: Yes
CTAP 2.1: Yes – current firmware
HOTP: Yes
TOTP: Yes
Static Password: Yes
Challenge Response: Yes
PIV: No
OpenPGP: No
Bluetooth: No
Biometrics: No
Secure Element: Yes
USB and NFC support
Touch button
LED: Yes
K9 protection rating: IP67
K9 dimensions: 43.9 × 20.8 × 3.1 mm.
FEITIAN ePass FIDO-NFC K40
USB-C variant designed primarily for modern notebooks, computers, tablets, and other USB-C devices.
Model: K40
Connector: USB-C
NFC: Yes
FIDO2: Yes
FIDO U2F: Yes
CTAP 2.1: Yes – current firmware
HOTP: Yes
TOTP: Yes
Static Password: Yes
Challenge Response: Yes
PIV: No – standard K40
OpenPGP: No – standard K40
Bluetooth: No
Biometrics: No
Secure Element: Yes
USB-C and NFC supported.
FEITIAN ePass FIDO-NFC Plus K9D
Extended variant with USB-A connector. Not the same product as the standard K9B. USB-A
NFC
FIDO2
FIDO U2F
HOTP
TOTP
Static Password/Challenge-Response
PIV
OpenPGP
Secure Element
JavaCard.
FEITIAN ePass FIDO-NFC Plus K40+
Extended version of USB-C.
USB-C
NFC
FIDO2
FIDO U2F
HOTP
TOTP
Static Password/Challenge-Response
PIV
OpenPGP
Secure Element
JavaCard.
Supported Operating Systems
FEITIAN documentation for ePass FIDO-NFC lists:
Windows
macOS
Linux
ChromeOS
Android
iOS.
Use depends on the device and service: computers can use USB, while compatible mobile devices can communicate via NFC.
Software Required for Operation
Standard FIDO2 / FIDO U2F
For standard use of FIDO2 and FIDO U2F via USB, a dedicated FEITIAN driver is not required.
FEITIAN defines ePass FIDO-NFC as a standard Human Interface Device (HID). The manufacturer explicitly states that a driver is not required via USB in Windows, macOS, and Linux.
In practice, standard login requires:
a compatible operating system, a browser or application that supports FIDO2/U2F, and a configured service that supports hardware security keys. You do not need to install FEITIAN to log in with the key every time.
FEITIAN SK Manager
The manufacturer provides FEITIAN SK Manager for device configuration and management.
The program supports ePass FIDO NFC and allows you to manage, among other things:
FIDO2
FIDO U2F
FIDO2 PIN
Saved credentials
FIDO reset
HOTP
OTP
Other device functions dependent on firmware.
FEITIAN SK Manager is a configuration tool – it does not need to run in the background during normal FIDO login.
FT Authenticator
The manufacturer also provides FT Authenticator for the OTP function.
It can be used to configure:
HOTP
TOTP
Static Password
Challenge Response.
FEITIAN recommends FT Authenticator versions for:
Windows
Android
iOS
Manufacturer: FEITIAN Technologies Co., Ltd., China
Brand: FEITIAN
Technical Specifications
Manufacturer: FEITIAN Technologies Co., Ltd.
Series: ePass FIDO-NFC
Device Type: Hardware Security Key/Authentication Token
Authentication Standard: FIDO2
FIDO U2F: Yes
CTAP: CTAP 2.1 for current K9B/K40
Wired Interface: USB
Wireless Interface: NFC
Connector: USB-A or USB-C depending on the model
NFC: Yes
Bluetooth / BLE: No
Biometrics: No
USB Communication: HID
NFC Communication: ISO 14443
Secure Element: Yes
Chip System: JavaCard
MFA: Yes
2FA: Yes
Passwordless: Yes
FIDO U2F: Yes
OATH HOTP: Yes
OATH TOTP: yes for the current K9B/K40 offering
Static Password: supported
Challenge Response: supported
PIV: not in the standard ePass FIDO-NFC
OpenPGP: not in the standard ePass FIDO-NFC
PIV and OpenPGP: available in the ePass FIDO-NFC Plus variant
Manufacturer-specified security algorithms: ECDSA, SHA-256, AES, HMAC, ECDH
FIDO U2F: ECDSA P-256 / SHA-256
HOTP: OATH HOTP / SHA-1
Button: touch
Indicator: green LED
Power: via USB; NFC works by communicating with a compatible NFC reader.
USB operating voltage: 5.0 V
Operating current for the K9: 22 mA
Power consumption for the K9: approximately 0.11 W
Operating temperature for the K9: -10°C to +50°C
Storage temperature for the K9: -20°C to +70°C
Data storage life: at least 10 years
Number of programming cycles: 100,000
FEITIAN housing material: ABS and calcium carbonate
K9 protection class: IP67
Dimensions of the K9: 43.9 × 20.8 × 3.1 mm.