Since the last article, many vendors are producing FIDO2 compliant security keys, but Microsoft requires vendors to be on an approved list for Azure AD to accept the key during enrollment. That's problematic if you bought keys from the "wrong" vendor.
Tim Steiner from OnlyKey.io helped figure out how to whitelist a FIDO2 compliant key for your own tenant.
>> Adding unsupported FIDO2 keys to Azure AD
You can add specific unsupported vendor security keys to your Azure AD (or restrict to a specific list):
As organizations adopt passwordless, remember to encourage users to use their keys for both business and personal accounts. This drives adoption and awareness. And let them keep the key - don't make a fuss about tracking and returning keys. They should be considered expendable.