I just moved from (paid) 1p to bitwarden at the weekend due to lack of proper Linux support. I was just testing bitwarden and found I couldn't easily get a good export of my passwords from 1p on Linux, because only their desktop apps support that. It won't run under wine and I ended up installing a Windows VM specifically to do the export. Was so frustrated at this it pushed me to move to bitwarden. Good for them for…
1Password for Linux development preview
71–80 of 352 posts
Re: 1Password for Linux development preview
#72At work we use 1PW. Compared to BW I find 1PW awkward and often counterintuitive. I suppose it has to do with habits. But I had few awkward moments with going from LP to BW.
I'm not knocking 1PW. Only suggesting that if you're in the market for a PW manager, check Bitwarden
Re: 1Password for Linux development preview
#73Earlier quoted context omitted.
If you can't trust them to host an encrypted blob, you can't trust them to run code on your local machine. I agree with you that the resistance isn't rational.
That isn’t logical at all. The two are completely different threat models. I used to be a happy 1Password customer until they decided that they did not want people like me as customers. I trust the code, I don’t trust them to store my data, encrypted or not.
Re: 1Password for Linux development preview
#74Re: 1Password for Linux development preview
#75Re: 1Password for Linux development preview
#76Earlier quoted context omitted.
> I really don't want to store my passwords on your "servers", and I'm sure there are few others like me - not a majority. Businesswise, it makes sense as a first push: get a solid UX working for existing 1pass users who sync via the cloud better access on Linux. Then move on to the less glamarous parts like local vaults. > I just don't want anything to do with my entire vault being hosted elsewhere, potentially irra…
If you can't trust them to host an encrypted blob, you can't trust them to run code on your local machine. I agree with you that the resistance isn't rational.
Hosting only an executable I download and execute means the adversarial extraction of data must be contained within the executable and bypass all security from within my system. There is a window of opportunity for sending out a signal indicating the executable can not be trusted.
I do trust the team of 1Password to be competent and not evil, but there are many things that can go wrong anyway.
I remain disappointed that there is no way to set up nor configure a 1Password.com account without the web client.
Re: 1Password for Linux development preview
#77Why would I want to trust some company with all my passwords?
Re: 1Password for Linux development preview
#78Unfortunately this only works with hosted 1Password (as far as I can tell), there doesn't seem to be any support for self hosted vaults. Can Roustem or anyone else from 1Password team clarify this? This was the precise reason I switched to BitWarden 6 months ago, needed a solution where my passwords didn't leave my network.
I'm no Roustem but I'm close. :) You're right, 1Password for Linux integrates tightly with the 1password.com service and as such does not support local vaults.
It seems that this is signalling your commitment to stop supporting users like me, and that's very disappointing.
Re: 1Password for Linux development preview
#79Earlier quoted context omitted.
...why? Of all possible target audiences it would seem Linux users would be the least receptive to this kind of thing. Forgive my bluntness, but to me this looks like you're just testing forced adoption of 1password.com hosted SaaS on a platform you don't really care about before rolling out the same to Mac & Windows. Which would be unfortunate.
I can't speak for them, but it's my impression from using 1Password for a good few years (both the local-vault product, and then the "account" subscription service) that local vaults are basically deprecated, even though they work fine. They're just not a good way for AgileBits to make money. So they'll keep them working in the software for existing customers who paid for them and expected them to work; but they won'…