One more step to unhitching from Google…

Right now the only option I see in F-Droid is Aegis.

I’m not sure what to actually look for side from checking for unexpected permissions and reasonably frequent updates.

Hopefully something I can sync with a GNOME app…

  • zingo@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    15
    arrow-down
    1
    ·
    19 hours ago

    Aegis.

    I like the auto backup feature (encrypted) . Then the backup is synced to computer via Syncthing.

    Set and forget setup.

    • ikidd@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      16 hours ago

      Yah, I can’t see a point to have another app/extension when Bitwarden has it built in, and it’s a great password manager.

        • ikidd@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          16 hours ago

          Right under Password in the edit screen of an item: Authenticator Key. You put in the auth key the target site provides you when you enable TOTP and it will start generating timed tokens. Usually you’ll also get a one-time pad of backup keys, I usually toss those in the Notes of the edit screen there as well in case something goes wrong.

  • Curious Canid@lemmy.ca
    link
    fedilink
    English
    arrow-up
    16
    ·
    23 hours ago

    I’ve been using Aegis for several years now without any problems. It replaced the Google Authenticator seamlessly.

  • Jayjader@jlai.lu
    link
    fedilink
    English
    arrow-up
    2
    ·
    17 hours ago

    I use pass for my passwords, and it has an otp extension that I’ve been using more and more. I used to use aegis but I have needed to switch phones one too many times without having access to the previous phone to be comfortable with phones for 2fa.

    Of course, this isn’t as secure as a truly separate OTP solution, but it’s still better than no OTP/2FA. And I can easily enough back up and restore my 2fa access over the internet, even on a new computer (albeit I need to also backup a PGP key that can decrypt the password store to truly be portable).

    • erock@lemmy.ml
      link
      fedilink
      English
      arrow-up
      1
      ·
      40 minutes ago

      This is what I do. If someone can figure out pass with my password protected gpg, plus my passwords are partials (I salt them), and otp then they can have my access

      • Jayjader@jlai.lu
        link
        fedilink
        English
        arrow-up
        1
        ·
        12 minutes ago

        plus my passwords are partials (I salt them)

        I’m curious how you make that work - do you just remember the salts, store them separately, or what? I have like 50-70 passwords in my store currently, there’s no way I’m remembering a (true random) salt for each one.

    • TedZanzibar@feddit.uk
      link
      fedilink
      English
      arrow-up
      6
      ·
      23 hours ago

      It’s niche but I like to point it out whenever I get the opportunity: if your workplace uses Bitwarden Enterprise, every licensed user gets a free family plan that can be linked to any account. I haven’t personally paid for BW for years.

    • HereIAm@lemmy.world
      link
      fedilink
      English
      arrow-up
      8
      arrow-down
      1
      ·
      1 day ago

      Same. Self hosting it sounds nice, and I self host a handful of services, but I don’t want to be stuck without passwords in another country with a dead server at home because a power cut happened at some point.

        • az04@lemmy.world
          link
          fedilink
          English
          arrow-up
          6
          ·
          1 day ago

          I had fault in my server this summer and my local bitwarden app wouldn’t work without the connection. Same in my laptop, if the connection is blocked by the firewall it doesn’t let me load the vault at all.

          • EpicStuff@lemmy.ca
            link
            fedilink
            English
            arrow-up
            1
            ·
            edit-2
            1 hour ago

            bitwarden works fine for me without connection, you just cant update/create passwords

        • HereIAm@lemmy.world
          link
          fedilink
          English
          arrow-up
          4
          ·
          edit-2
          1 day ago

          Oh, that’s actually good to know. I guess it makes sense for when you don’t have a good connection as well.

    • Lyra_Lycan@lemmy.blahaj.zone
      link
      fedilink
      English
      arrow-up
      2
      ·
      edit-2
      1 day ago

      As I’ve seen gaming server subscriptions go from £36/y to £23/m (Xbox) in a few years, and cloud CCTV storage from £40/y to £16/m (Google via acquisition of Nest) in a few months, I say we count our stars when a subscription cost remains fair.

  • John Colagioia@lemmy.sdf.org
    link
    fedilink
    English
    arrow-up
    1
    ·
    17 hours ago

    I primarily use GNOME Authenticator, but after an inopportune crash, I now also run 2FAuth on my home server as a backup, and now just hope that I remember to do the export/import dance going forward.