Sign in using passkey

Sign in using passkey

What is a passkey

Passkey is based on the FIDO multi-device credentials technology and essentially aims to replace traditional passwords altogether. At Zoho, we've also implemented this technology and offer you the option to secure your account using a passkey.

A passkey is a WebAuthn credential that is an alternative for password. It uses biometric (such as fingerprint) or device-based authentication (such as PIN, password) to sign in to your account. 
Your devices that support FIDO2 will generate a unique passkey, store it securely on your device, and use it to sign in to your account.

Since the passkey uses biometric or device-based authentication to verify your identity, you don't have to remember anything or worry about phishing scams or stolen passwords and avoiding the reuse of passwords.

Hence, one must physically have the device (where the passkey is stored), and know the device's screen lock to unlock the passkey to sign in. This eliminates the requirement for 2FA or MFA as passkey itself acts as both.
Info
Both Passkey and Zoho OneAuth passwordless sign- acts as 2FA or MFA, eliminating the need for them and allowing seamless sign-in experience.

How passkey works

To use a passkey to sign in to Zoho, you will need to first generate a passkey for your Zoho account from Zoho OneAuth or from accounts.zoho.com. The generated passkey will be stored and synced on your device.
On Apple devices, it will be stored & synced using the Apple ID's iCloud Keychain . On Android devices, it will be stored in Google Password Manager .
Info
Info: If you're using multiple Apple devices, the generated passkey will be synced with all your Apple devices (MacOS, iOS. & iPadOS) using your Apple ID, allowing you to sign in using passkey on all devices. For example, consider you've an iPhone and a MacBook signed-in with the same AppleID. If you generate passkey from your iPhone, it will be synced with your MacBooks as well and vice versa.

Similarly, for android devices, the passkey will be synced across your android devices which uses the same Google account.

Passkey Works On

Passkeys should be supported on both the device/OS and browsers. You can find the list of OS and browsers, along with versions that support passkeys below.

Supported OS

OS
Could Sync
(Use same Passkey across devices)
Local browser only
(Passkey is specific to the device's browser)
External device
(Separate Mobile devices will be used for Passkey)
MacOS (14 or later)
iOS & iPadOS (16 or later)

(using iCloud)
Chrome OS
Android
(9 or later)

(using Google Password Manager)
Windows

Applies On:
  1. Apple devices with iOS, iPadOS 16 or later, & MacOs 14 or later.
  2. Android devices with Android version 9 or later.
  3. Windows devices with Windows 10 1809 onwards or Windows 11 23H2 onwards.

Supported Browsers

Browsers
(Desktop)
Versions
 Google Chrome
108 and above
 Safari
16.1 and above
 Microsoft Edge
108 and above
 FireFox
122 and above
 Opera
97 and above

By default, you'll be prompted with the iCloud sync option in Apple devices; in cases like the opera browser, you will be given the option to use either the local browser or external mobile device as it doesn't support iCloud sync.

How to set up passkey

Set up from Web (accounts.zoho.com)

Requirements:
  1. Bluetooth and Internet must be turned ON in both devices.
  2. Screen lock must be enabled on your mobile device.
  3. On Apple devices, Apple ID Keychain must be enabled. Step to enable
  4. Android or iOS device is required to set up on Windows.
Steps to set up passkey:
Apple devices






Windows devices













If you encounter any issues while setting up the Passkey, please make sure your OS and browsers are up to date and try again or use different method.

Set up from Zoho OneAuth

Supported devices:
  1. Apple devices with iOS 16 or later, iPadOS 16 or later, macOS Ventura.
Requirements:
  1. The internet must be turned ON.
  2. Screen lock must be enabled.
  3. Apple ID Keychain must be enabled. Step to enable
Steps to set up passkey using OneAuth:
iOS devices








Android devices










 How to sign in using passkey

NotesNote: If you're unable to sign in using passkey (or) don't have access to a passkey-synced device, you can use your other sign-in options.

Sign in on a device where passkey is synced

  1. Go to the Zoho sign-in page.
  2. Enter your username, then click Next.
  3. When prompted, verify using your device's screen lock. Once verified, you will be signed in.

Sign in on device where passkey is not synced

  1. Make sure Bluetooth is enabled both on the mobile device where the passkey is synced, and on the device where you're signing in.
  2. Go to the Zoho sign-in page.
  3. Enter your username, then click Next.
  4. A prompt will appear how you want to authenticate. Select the option Passkey from nearby device/A different device.
  5. Scan the QR code using your mobile device's camera.
  6. When prompted, verify using your device's screen lock. Once verified, you will be signed in.
    • Related Articles

    • Sign-in modes

      Zoho offers various modes to sign in to your Zoho account, from the conventional method of signing in using only a password to the more secure method of signing in without using a password at all (passwordless sign-in). You can choose your preferred ...
    • Configure SAML in Zoho Accounts

      Note: If you want to configure SAML for Zoho One/ Zoho Directory, you can refer to their respective help documents: Zoho One | Zoho Directory To create a SAML connection between Zoho and your identity provider (IdP), you will need to provide some ...
    • Sign in using SAML

      SAML is a protocol that allows you to configure single sign-on (SSO) for Zoho with your identity provider (IdP). Once SAML-based SSO is configured for an organization, all the organization users can directly sign in to Zoho using their IdP ...
    • Sign in using OTP instead of password

      Instead of entering a password, you can enter an OTP to sign in to your Zoho account. You can choose to send the OTP to either your primary email address or your primary mobile number. To sign in using OTP: Go to the Zoho Accounts sign-in page. Enter ...
    • Federated Sign-in

      Federated Sign-in allows you to access your Zoho account using third-party services. You can create your Zoho account using your third-party account credentials, and also use them to sign in. The following services are supported by Zoho for signing ...