Activating a Passkey

Instructions

Supported Passkey Types

You can activate and store your passkeys on cloud-enabled mobile devices (Apple iPhone, Android) or on dedicated physical security keys (FIDO2-certified, like YubiKey, Google Titan, Token2, etc.) or through Windows Hello.

Cloud-enabled Mobile Devices:

  • Apple iPhone (via iOS Passwords)

  • Android smartphone (via Google Password Manager, Samsung Pass, etc.)

Physical Security Keys - FIDO2 compatible (non-exhaustive, suggestion list):

  • YubiKey

  • Google Titan

  • Token2

  • Other FIDO2-certified hardware keys

Cloud-synced Password Managers with Passkey Support (non-exhaustive, suggestion list):

  • 1Password

  • Bitwarden

  • NordPass

  • Proton Pass

Windows Hello

  • Windows machine supporting Windows Hello.

Notes:

  • You can activate up to 5 Passkeys for the same user.

  • For detailed requirements, please see the System Requirements page.

  • Unlike the other passkey types, Windows Hello passkeys are only stored locally on the machine and cannot be used to log in from other devices (e.g., a different computer, phone, or tablet). For this reason, along with the Windows Hello passkey, we strongly recommend you to activate one or more passkey of a different type (e.g: cloud-enabled mobile passkey, physical security key, cloud-synced password manager passkey) to ensure you can still access your account from other devices.

  • For the activation of all non-physical Passkeys, the Bluetooth must be enabled on both the device where you perform the activation (e.g. laptop/desktop PC) and the device where your passkey will reside (e.g. your mobile phone).

  • For the Bluetooth activation, please refer to the instructions below, according to the operating systems of your devices.

 

How to Activate a Passkey

You can register a passkey using either one of the following methods:

  • Login Task: during your login, IBKR may prompt you to complete a passkey activation task.

  • Client Portal Settings: at any time, you can manually register a passkey through the Secure Login System (SLS) page in your account Settings.

 

Best Practices

 

FAQs

 

Additional Resources