Bitwarden Authenticator is a standalone app that is available for everyone, even non-Bitwarden customers.
In its current release, Bitwarden Authenticator generates time-based one-time passwords (TOTP) for users who want to add an extra layer of 2FA security to their logins.
There is a comprehensive roadmap planned with additional functionality.
Available for iOS and Android
Thank goodness! I can finally get the hell away from Authy!
Correct me if I am wrong, but the Bitwarden client itself already does this. I store several of my TOTP’s in my self hosted Vaultwarden/Bitwarden install.
You’re right, it does. This is a head-scratcher.
I guess they already had the TOTP code written, so creating a standalone app was trivial, but what’s the point?
TOTP code is like 5 lines. The hardest part is writing the seed to disk.
TOTP in the Bitwarden Vault is a paid feature. The standalone app is free, and doesn’t even require a Bitwarden account.
This allows free tier users a way to use TOTP without upgrading, and without needing to trust Google Authenticator or something else.
Because you can enable totp on your Bitwarden account and it would be dumb to store the password and totp for your biwarden vault in your vault?
Also it can act as a stepping stone for non Bitwarden customers, before getting their own vault.
Glad these were answered:
Isn’t this the same as storing TOTP authentication codes in Bitwarden Password Manager?
Integrated TOTP authentication is a premium feature in Bitwarden Password Manager. Bitwarden Authenticator is a standalone mobile app that generates TOTP codes for any online service that supports them. Bitwarden Authenticator can be used without a Bitwarden account.
Should I use both? When should I use the integrated authentication feature? When should I use Bitwarden Authenticator?
Integrated authentication in Bitwarden Password Manager offers a convenient way for users to add 2FA to their online accounts. This popular feature will remain available across paid plans.
Bitwarden Authenticator can be used to store your verification codes to access your Bitwarden account, as well as other online applications you use.
They can be used together, or separately, depending on your security preferences.
Does this save to my cloud account with them or is it only local? I got screwed over by Aegis (my fault) when I got a new phone and forgot to back up Aegis and lost a lot of my logins. Some of them I can’t get unless I call the company and verify it’s me 🤦🏽♂️
Aegis does automatic backups. I guess you didn’t turn it on?
Guess I didn’t. I hate me even more now
The penguin is dead 😂
😂 I guess it is. Damit
I spelled your username wrong. I thought the q was a g. 😂
I don’t care. It’s meant to be a penguin with a q.
Yubikey and yubico authenticator is king. Just need multiple keys. Stick it in a PC or tap it on your phones nfc… bam totp code pulls up.
Just like in the password manager, they ignored HOTP. Oh well.
Could you tell me more ?
Nice! I currently have a couple of services on MS Authenticator that I can migrate over.
Good. They make great stuff.
Any reason to switch from Aegis?
Thats what i want to know, i use Authy, and want to know if its worth switching for.
Is there anything about Aegis that makes it better than Authy? Just looking at the page for Aegis, I’m not seeing a lot of difference. And it being Android only limits it.
It’s open source. Authy isn’t.
Ah, gotcha. Makes sense.
KeePassXC can do this as well. I had no idea until I saw a post on here where someone mentioned it. Here’s the documentation.
Nice. But as a BitWarden user, it’s useless to me. I’ve never put all my eggs in one account basket.
Passwords on one service, MFA on another, email on yet another, etc.
I assume its still absolutely impossible to migrate from one authenticator app to another without having to set it all up again?
You can use Authenticator Pro (android, opensesource) and Proton Pass, both let you copy the TOTP generation code to paste into another without problem. Both generate exact code
In fact that’s how I am using them right now, with Authenticator Pro is my on-device, offline, encrypted backup offline backup TOTP for Pass.
I guess it is not as straight forward as export import as you hope, but it’s not as bad as other options used to be.
“Import” does appear on the roadmap for this month, we probably can’t know what’s the scope fr that but you’llhave your answer soon :p
Authy killed their Windows app so its been on my mind. Im trying to use Roboform integrated mfa more, but i probably have 50 accounts in authy.
I personally have no use for this since I use Aegis and sync it with my synology drive
Jesus fuck. How many more authentication apps do we need that all do the same thing?
At work I need at least 4-5 different authentication apps because every customer has something different.
We don’t need another.
You only need one app, as long as the totp is implemented in a standardized way.
Microsoft products would like a chat…
They did. DUO was born.
deleted by creator
Random number generator 2fa?
Why not just use Strongbox? All of that’s built in and don’t have to store your vault on their cloud.
Currently use Raivo on iOS. If this is offline only and has a way to export I may change.