> For the complete documentation index, see [llms.txt](https://enterprise-ipi-en.hideez.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://enterprise-ipi-en.hideez.com/quick-start-guides/quick-start-guide-for-subscriptions/hardware-key-guide.md).

# IPI Security Key

IPI Authentication Service – Hardware key pilot guide

## **IPI Hardware Key Solution Components**

[**IPI Enterprise Server**](/ipi-enterprise-server/deployment.md)

* can be deployed on both Windows and Linux server
* is deployed from source or run on Docker
* must be deployed on the Customer's side and entered into the domain

  in order to work with AD

[**IPI Client**](broken://pages/gZg9qEKxqyY9r90si0iO) **(desktop application)**

* can be installed centrally, .msi
* is designed for Windows 10-11 only
* You can register the server address on all Сlients centrally

[**IPI Keys**](/ipi-key-enterprise-edition/ipi-key-enterprise-edition.md) **(Hardware security tokens)**

* Replaceable (IPI Key 3) or rechargeable (IPI Key 4) battery
* Multifunctional button with different color modes
* Bluetooth connection

[**Other vendor's Security Keys**](/use-cases/fido-security-key/other-vendors-hardware-keys.md)

* USB, NFS, Bluetooth connection
* Universal Second Factor Authentication on IES (FIDO/2FA)
* Usernameless login on IES (FIDO/WebAuthn)
* Passwordless login on IES (FIDO/WebAuthn)

If you ordered a pilot project and successfully deployed your IPI Enterprise Server, your IPI Keys with active licenses have been added to it.

## **Use cases**

### Using the IPI Key as a Security Key

#### Step 1

Unpack the box with the IPI Key. Take out the key.

{% hint style="info" %}
At this stage, you don't need either a dongle or additional IPI Group software.
{% endhint %}

#### Step 2

Try to use the IPI Key as a U2F security key.\
[Using IPI Key as a U2F security key for your two-factor authentication](/use-cases/fido-security-key/using-ipi-key-as-u2f-security-key-for-your-two-factor-authentication.md)

#### Step 3

Try to use the IPI Key as a FIDO2 security key for Windows 10 logon.\
[Unlock PC by Security Key](/use-cases/fido-security-key/unlock-pc-by-security-key.md)

### Using the full functionality of IPI Authentication Service

#### Step 1

In a IPI Group email, you received the server address and access. Please go to the server and add one employee. At this stage, it is enough to fill in only his or her name and leave the rest of the data blank.\
[How to add an Employee?](/ipi-enterprise-server/employees/how-to-add-an-employee.md)

#### Step 2

Add the IPI Key to your Employee.\
[Assign a key to the user](/ipi-enterprise-server/hardware-vaults/assign-a-key-to-the-user.md)

#### Step 3

Install the IPI Client on your workstation.

If IPI staff didn't give you any special version, then use the latest stable version, which can be downloaded [here](/product-updates/ipi-client-updates.md).

Installation instructions are [here](/ipi-client-app/windows-deployment/set-up-ipi-client-app.md).

{% hint style="warning" %}
Note! You can install the IPI Client version to work with internal Bluetooth **or** with an external IPI Dongle.
{% endhint %}

#### Step 4

Enter the IES address in the IPI Client.\
Approve the workstation on the server.\
[How to add and approve Workstations?](/ipi-enterprise-server/workstations/how-to-add-and-approve-workstations.md)

#### Step 5 (only for working with the IPI Dongle)

Unpack the box with the IPI Key if you haven't done so previously. Take out the key and insert the dongle into the USB port.

#### Step 6

Follow the steps to configure the IPI Client for the Hardware Vault.<br>

#### Step **7**

Create your first account in the IPI Client with two-factor authentication (OTP).\
[Using IPI Key as an OTP security key for your two-factor authentication](/use-cases/ipi-key/using-ipi-key-as-otp-security-key-for-your-two-factor-authentication.md)

#### Step 8

Add an account to an existing employee to unlock the workstation on the server.\
[How to work with personal employee accounts?](/ipi-enterprise-server/accounts/how-to-work-with-personal-employee-accounts.md)

#### Step 9 (only for working with the IPI Dongle)

Unlock your computer with Bluetooth Touch.\
[Unlock PC by Bluetooth Touch (Tap-and-Go)](/use-cases/ipi-key/lock-unlock-pc-by-proximity/unlock-pc-by-bluetooth-touch-tap-and-go.md)

**Step 10**

Turn on the proximity unlock option for the Workstation added to the server and specify the IPI Key that can use this option.\
[Use proximity with Workstation](/ipi-enterprise-server/workstations/use-proximity-with-workstation.md)

#### Step 11

Try to unlock the workstation by proximity.\
[Unlock PC by proximity](/use-cases/ipi-key/lock-unlock-pc-by-proximity.md)
