246
submitted 4 months ago by [email protected] to c/[email protected]

Bitwarden Authenticator is a standalone app that is available for everyone, even non-Bitwarden customers.

In its current release, Bitwarden Authenticator generates time-based one-time passwords (TOTP) for users who want to add an extra layer of 2FA security to their logins.

There is a comprehensive roadmap planned with additional functionality.

Available for iOS and Android

you are viewing a single comment's thread
view the rest of the comments
[-] [email protected] 49 points 4 months ago

No, they're both ostensibly open source and standalone. I'm an avid Bitwarden Free user, but Aegis has been my go-to for a long time.

If it's a standalone completely offline app, like Aegis, I'm at a loss to what they could offer that is any different than what Aegis already offers.

[-] [email protected] 17 points 4 months ago

If you look at the roadmap they have in the blogpost, they are apparently planning tighter integration with the existing bitwarden suite

[-] [email protected] 16 points 4 months ago

...but wouldn't that undermine the fact that it's standalone and offline?

[-] [email protected] 10 points 4 months ago

The idea is that it can then work both says, like https://ente.io/auth does

[-] [email protected] 7 points 4 months ago

Sand the fact that it's a 2fa. A thicker integration with bitwarden would make it like a 1.5fa

[-] [email protected] 3 points 4 months ago

I don't see why it would if it's optional

[-] [email protected] 1 points 4 months ago

How so? They already have TOTP built-in to the app if you pay for premium, so this is just a free competitor to their own offering.

I'm guessing they're trying to make it a "gateway" to getting people on Bitwarden. Start with the TOTP app, then use the password manager, then pay for premium. Or something like that.

[-] [email protected] 5 points 4 months ago

2FA push is on the roadmap. Does aegis have that? Or am I just too dense to realise it does?

[-] [email protected] 1 points 4 months ago

I mean, Aegis is 2FA? That's literally all it is? It generates One Time Pad codes for various sites and apps that support authentication apps.

So, I'm not sure what you mean?

[-] [email protected] 9 points 4 months ago

I'm not positive but I'm assuming they're referring to a kind of MFA where the authenticating service pushes to the client you possess rather than relying on a temporal cryptographic key. I've got a few services which work that way

[-] [email protected] 4 points 4 months ago

That's indeed what I meant. Similar to how OKTA, battle.net, or the Microsoft authenticator works( in corporate environments).

You receive a push notification which asks if you're trying to log in and approve it, followed by a fingerprint or a pin code to confirm, rather than having to type in the code generated by your app

this post was submitted on 01 May 2024
246 points (94.9% liked)

Technology

58150 readers
4463 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS