I rely on Bitwarden (slooowly migrating from… a spreadsheet…) and am thinking of keeping a master backup to be SyncThing-synchronized across all my devices, but I’m not sure of how to secure the SyncThing-synchronized files’ local access if any one of my Windows or Android units got stolen and somehow cracked into or something. I’m curious about how others handle theirs. Thanks in advance for sharing!

  • loiakdsf
    link
    fedilink
    161 year ago

    keepassxc database synced with syncthing across devices

    • This is the way OP. Centralised services are just too much a target for bad actors.

      You already have syncthing so most of the way there.

      Also built in TOTP / 2fa is pretty great.

  • Bitwarden already stores a local copy on all devices you have it installed. Just make sure you load up those devices from time to time… And guess what, you are probaly already doing that with your phone and laptop (which actually contains generally 2 copies, 1 on your actual client and another for the browser extension. Add a third device for good measure and… Oh, you also have a backup on bitwarden.com, this thing literally backups itself everywhere!

    • @Showroom7561@lemmy.ca
      link
      fedilink
      41 year ago

      My wife does the same, and I can’t tell you how many times a day I have to help her reset passwords, figure out if something is an “1”, “i”, “l”, or “|”, or decide what needed to be capitalized.

      Even though I have Bitwarden installed for her, she just “prefers” paper like some people prefer to stub their toes.

      • You should try to teach her how to be more careful and clear when writing passwords. It can be hard if she’s living in constant rush but it’s a very useful skill. And btw I just always underline capital letters. Always works

  • @zarenki@lemmy.ml
    link
    fedilink
    51 year ago

    For years I’ve been using KeepassXC on desktop and Keepass2Android on mobile. Rather than sync the kdbx file between my devices, I have each device access it through the network. Either via sftp, smb, or nfs, but regardless I need to connect to my home’s VPN to access it when away from home since I don’t directly expose those things to the outside world.

    I used to also keep a second copy of the website-tied passwords in Firefox Sync, but recently tried migrating that to Proton Pass because I thought the PIN feature might help, then ultimately decided to move away from that too and start using the KeepassXC-Browser plugin instead. I considered Bitwarden too but haven’t tried it out yet, was somewhat deterred by seeing people say its UI seems very outdated.

    • @Dymonika@beehaw.orgOP
      link
      fedilink
      17 months ago

      It didn’t look outdated to me, but is kind of weird and hard to get used to, though I eventually did. I don’t know how to make an export from Bitwarden to take into KeePassXC, though… I’ll need to look into this. Perhaps it can’t be done from the browser alone. Anyway, thanks for sharing.

      • @not_amm@lemmy.ml
        link
        fedilink
        21 year ago

        Syncing files that you may open in both (or more) devices at the same time is unsafe with any service, but you can manage to avoid sync conflicts with KeePass if you do not open the same file at the same time or open the Android app in read-only mode. I’ve only had like 3-4 conflict files this year and they weren’t important.

  • Jennykichu
    link
    fedilink
    41 year ago

    Bitwarden. I would like to self host it one day (and keep that backed up) once I learn more about all that junk

    • youmaynotknow
      link
      fedilink
      41 year ago

      Vaultwarden is super easy to set up anywhere (NAS, computer, Pi, etc). It’s as simple as firing a docker yaml, and you’re set.

  • @JakenVeina@lemm.ee
    link
    fedilink
    English
    41 year ago

    KeePass on my phone and desktop, with the master file sync’d automatically to the server in my basement.

  • @Imprint9816@lemmy.dbzer0.com
    link
    fedilink
    English
    3
    edit-2
    1 year ago

    Bitwarden has an import tool. You should be able to convert your spreadsheet into the format they like and import relatively easily.

    For backups, you can create encrypted backups through bitwarden. So it shouldn’t matter if synching itself is a secure process as what your syncing is already encrypted.

  • @tiny@midwest.social
    link
    fedilink
    English
    31 year ago

    Bitwarden keeps a local copy of the data that can exported if something ever happened to bitwarden. If you want to keep an encrypted backup you can export the CSV and store it on an encrypted drive as a backup but not big worry about syncing it to all devices

    • @skilltheamps@feddit.de
      cake
      link
      fedilink
      2
      edit-2
      1 year ago

      This is the correct answer, every device you use a bitwarden-client regularly on automatically becomes a backup

  • @pol5xc@lemmy.ml
    link
    fedilink
    21 year ago

    Pass on Linux with a private git repo with search extensions for gnome and Firefox, and android password store on my phone.

  • @kevincox@lemmy.mlM
    link
    fedilink
    21 year ago

    I mostly just use Firefox Sync. For critical passwords or non-web passwords and other small keys I store them in pass.

  • Joël de Bruijn
    link
    fedilink
    1
    edit-2
    1 year ago

    I prefer another tactic if I may share:

    • Database in production: let Bitwarden clients sync the native way Bitwarden offers.
    • Database in backup: let a dedicated backup service keep your database save.

    I dont know if this could be done automatic (just backup the production database) or if this has to be done by export (by hand once in a while).

    Doesnt matter from which device the backup originates because the native sync will keep them all the same usually in seconds.

  • @catloaf@lemm.ee
    link
    fedilink
    English
    11 year ago

    I have encryption enabled on my devices. If they get stolen, a casual thief isn’t going to be able to break it. At most they’ll wipe it, but they’ll probably just fence it as-is or for parts.

  • povario
    link
    fedilink
    English
    11 year ago

    I’ve set up Vaultwarden as I used Bitwarden before that and it made switching very easy. Doesn’t get easier than that, synced passwords across all your devices/browsers.