• krolden
    link
    fedilink
    English
    arrow-up
    5
    ·
    16 hours ago

    Vaultwarden or keepass synced to some cloud storage.

    • TankieTanuki [he/him]@hexbear.netOP
      link
      fedilink
      English
      arrow-up
      1
      ·
      16 hours ago

      Google tells me those are both password managers. Pardon my ignorance, but I thought authenticator apps were something separate and discrete. How does that work? Is it good to have your password and authenticator stored in the same place?

      I use Bitwarden currently.

      • krolden
        link
        fedilink
        English
        arrow-up
        2
        ·
        7 hours ago

        Bitwarden has an option to use it as an authenticator as well. Yeah its not best to keep them both in the same place especially if its on servers you dont control. It makes more sense forr me personally just to keep them in the same vault without worrying about finding my phone.

      • git [he/him, comrade/them]@hexbear.net
        link
        fedilink
        English
        arrow-up
        2
        ·
        15 hours ago

        VaultWarden is a reimplementation of BitWarden’s server. The clients are compatible.

        Anyway, you can add your TOTP codes to a Bitwarden item. Either scan the code or enter the key manually.

        It’s up to you if you want to risk storing the TOTP alongside the password, as it means you lose the second factor if your vault is compromised. For a random site? Sure why not. For financial/important stuff? Maybe not.