
In the end I could only get CCID only mode to work.

I then edited /bootbank/boot.cfg and changed the kernelopt line to kernelopt=autoPartition=FALSE CONFIG./USB/quirks=0x1050:0x0407::0xffff:UQ_KBD_IGNOREĪnd I repeated for 0x0406 and 0x0405, and none of them worked. I wasn't sure if that needed a reboot, so I rebooted ESXi, no dice In addition to all the other setting mentioned, I also edited /etc/vmware/config 0 = "0x1050:0x0407 allow" However, I never got it to show up in "esxcli hardware usb passthrough device list", and was also unable to add it as a USB Device. So I tried following directions from here: This would not be enough, as it was never listed in "esxcli hardware usb passthrough device list", so even if the VM allowed it, its not there to be allowed. Only 404 (CCID only) worked.Īccording to my notes, we were able to get this to work in VMware Fusion (Not ESXi): = "TRUE" So even without otp, the u2f was an HID class.Īs long as it was an HID device, I was not able to get it to show up in the esxcli hardware usb passthrough device listĪnd I was not able to add it as a usb device in ESXi. I personally tried 404 to 407, and 405-407 all had the the HID interface descriptor. So it can't even attempt to connect to VM, therefore VMX settings are sort of useless.Ĭonnecting device to VM requires: = just recently went through this. If that doesn't work, then the link you provided may be of some use.Ĭonnecting device to VM requires: = for the link, but as you can see VMWARE did not even recognize the drive in passthrough device list. ] esxcli hardware usb passthrough device li404 true yes Yubikey 4 CCID I did not try every combination, but disabling these 3 fixed the issue partly at least. I found out that if OTP, U2F or FIDO2 are enabled then the key does not appear in passthrough device list. So it can't even attempt to connect to VM, therefore VMX settings are sort of useless. Why would this be for the link, but as you can see VMWARE did not even recognize the drive in passthrough device list. I restarted usbarbitrator and hostd results are same. Root Hubīus 001 Device 004: ID 1050:0407 Yubikey 4 OTP+U2F+CCIDīDeviceClass 0 (Defined at Interface level)īInterfaceSubClass 1 Boot Interface Subclassīut the esxcli does not list it: ~] esxcli hardware usb passthrough device listīus Dev VendorId ProductId Enabled Can Connect to VM Nameġ 3 bda 329 true yes Realtek Semiconductor Corp. I plugged in the key and it is available in USB devices Bus 001 Device 004: ID 1050:0407 Yubikey 4 OTP+U2F+CCIDīus 001 Device 003: ID 0bda:0329 Realtek Semiconductor Corp.īus 001 Device 002: ID 0424:2660 Standard Microsystems Corp.
