Passwords continue to be one of the biggest drivers behind identity theft and security breaches. To reduce this risk, organizations are shifting towards passwordless authentication. FIDO2 security keys provide phishing-resistant, passwordless authentication to protect access to sensitive applications, systems, and Windows endpoints.

But deploying FIDO2 at scale comes with operational challenges. Enterprises need:

  • Visibility into device deployment and usage

  • Lifecycle management and revocation

  • Recovery options when users are locked out

  • Configuration control such as PIN policies and RP restrictions

  • Self-service tools that are secure and compliant

Most FIDO2 solutions don’t deliver these enterprise-grade capabilities.


Introducing Versasec FIDO2 Enterprise

Versasec has extended its vSEC:CMS and vSEC:CLOUD credential management platforms with Versasec FIDO2 Enterprise — enabling organizations to use FIDO2 devices with centralized management, compliance enforcement, and seamless user experience.


Watch the Demo

In our demo, an admin issues a FIDO2 device, provisions it to Microsoft Entra ID, performs workstation login, and demonstrates the new enterprise features:

  • Disable FIDO2 reset

  • Control allowed RPs using an Allow List

  • Remotely unblock PIN

YouTube link: https://youtu.be/6LuhbbwCN3I

 


Enterprise Management — Built for Scale

Configuration & Policy Controls:

  • Management Key – Enterprise management and provisioning controlled via vSEC:CMS for simplicity and security.

  • Allow List – Define which relying parties (RP/sites) the device can be used with — stored securely on the device.

  • Disable Device Reset – Prevent unauthorized device resets that could be used as a denial-of-service attack vector.

  • Minimum PIN Length Enforcement – Standardize PIN policies across all credentials.

  • Force PIN Change – Require a PIN update on first use.

  • Enforce User Verification – Require PIN or biometric for strong assurance — no “tap only” authentication.

Day-to-Day Ops & Self-Service:

  • PIN Unblock – Restore access instantly without wiping existing credentials.

  • Retrieve RP ID List – See which services the device is registered with.

  • View Credentials per RP – Audit passkeys associated with each relying party.

  • Update or Delete Credentials – Manage individual credentials without resetting the entire device.

 


Versasec FIDO2 Enterprise delivers what organizations have been missing: strong phishing-resistant authentication with full enterprise lifecycle management.

Large-scale FIDO2 deployments no longer need to sacrifice control, security, or user experience.


 

About DT Asia

DT Asia began in 2007 with a clear mission to build the market entry for various pioneering IT security solutions from the US, Europe and Israel.

Today, DT Asia is a regional, value-added distributor of cybersecurity solutions providing cutting-edge technologies to key government organisations and top private sector clients including global banks and Fortune 500 companies. We have offices and partners around the Asia Pacific to better understand the markets and deliver localised solutions.

 

How we help

If you need to know more about Versasec FIDO2 Enterprise, you’re in the right place, we’re here to help! DTA is Versasec’s distributor, especially in Singapore and Asia, our technicians have deep experience on the product and relevant technologies you can always trust, we provide this product’s turnkey solutions, including consultation, deployment, and maintenance service.

Click here and here and here to know more: https://dtasiagroup.com/versasec/