Live data from Hacker News

Bitwarden: Free, open-source password manager

bitwarden.com

141–150 of 242 posts

Re: Bitwarden: Free, open-source password manager

#141
post #37

> The most trusted open source password manager for business I expected a blog article with actual feedbacks from companies and data, but ended up on bitwarden.com main page. Baseless claims can be quite common when it comes to marketing, but I'm genuinely curious: which password manager is used in your workplace, if any? I've personally never seen in my (for now short) career anything else than Keepass.

We use Lastpass; I've never been a big fan of the sharing features. I use Bitwarden for personal use.

I moved to Bitwarden from Lastpass last year. Ironically I remember needing some premium feature, and having issues subscribing to premium. Support was 0/10, and made me move to Bitwarden, but I was really happy with Lastpass. Feature I miss today is security checkup.

Re: Bitwarden: Free, open-source password manager

#142

I frankly thing password managers are the most stupid thing. We fake users inputing text to input boxes and spend crazy time figuring out how to do that and how to get around various sites trying to block that, so the site can still pretend it’s actual user inputting the password. Plus the manager needs to work around arbitrary password rules. Plus they usually don’t work at OS level; so you still need to remember th…

No post body was provided.

Re: Bitwarden: Free, open-source password manager

#143

Earlier quoted context omitted.

Workplace uses 1Password. I've been using it personally for years and I love it. Completely worth the subscription cost though it has its quirks I like Bitwarden and the work they do and I'm sure they're trustworthy seeing as they've been audited and such but the android app and some of the UI is clunky to say the least. I tried switching from LastPass (which is awful) and ended up going to 1Password

I use BW at home and 1PW at work - both via browser extension. I cringe and/or swear at 1PW far more often than BW.

I've not found much reason to swear or cringe at 1Password... maybe ever. I was a bit frustrated once when it gave the wrong popup when filling out my addresses. What is your use case if you don't mind me asking?

Re: Bitwarden: Free, open-source password manager

#144
post #37

> The most trusted open source password manager for business I expected a blog article with actual feedbacks from companies and data, but ended up on bitwarden.com main page. Baseless claims can be quite common when it comes to marketing, but I'm genuinely curious: which password manager is used in your workplace, if any? I've personally never seen in my (for now short) career anything else than Keepass.

Any experience with Secret server from thycotic?

We have it, and I don't like it. Slow, bad UI, and not very reliable.

Re: Bitwarden: Free, open-source password manager

#145

I frankly thing password managers are the most stupid thing. We fake users inputing text to input boxes and spend crazy time figuring out how to do that and how to get around various sites trying to block that, so the site can still pretend it’s actual user inputting the password. Plus the manager needs to work around arbitrary password rules. Plus they usually don’t work at OS level; so you still need to remember th…

There are a few auth schemes that cut out of the middleman of the password while providing the same level of security. SQRL and Microsoft Passwordless Login both come to mind.

Re: Bitwarden: Free, open-source password manager

#146

I use Biwarden extensively, in self-hosted mode (vaultwarden), for a few years now. It is truly excellent, especially the fact that you can "move" an entry to an organization, where everyone has the same ownership and rights (and not merely "share" it). Plus a ton of wonderful things. There are two minor points I am missing: - the ability to control someone's passwords. Typical usage: the 24/7/365 support for my pare…

Couldn't you revoke the permission for the android app to draw on your screen? But maybe I misinterpret your comment.

Re: Bitwarden: Free, open-source password manager

#147

I frankly thing password managers are the most stupid thing. We fake users inputing text to input boxes and spend crazy time figuring out how to do that and how to get around various sites trying to block that, so the site can still pretend it’s actual user inputting the password. Plus the manager needs to work around arbitrary password rules. Plus they usually don’t work at OS level; so you still need to remember th…

I agree partially. Passwords are posing an indirect security issue. But in my opinion this is more due to the handling of those by humans. So many different places where you can login, you need 20+ passwords. These should all be very long so that they are deemed secure enough.

Remembering this is a chore leading to one of two things - the user tends to create short passwords or mneonics that only change a few letters/numbers per password - the user will use a password manager, completely giving up control in case of a disastrous failure (e.g. data deletion) and having potentially finicky setups.

There should be better options for the broad usership than passwords, but password managers are imho a good solution for today.

Re: Bitwarden: Free, open-source password manager

#148

I use Biwarden extensively, in self-hosted mode (vaultwarden), for a few years now. It is truly excellent, especially the fact that you can "move" an entry to an organization, where everyone has the same ownership and rights (and not merely "share" it). Plus a ton of wonderful things. There are two minor points I am missing: - the ability to control someone's passwords. Typical usage: the 24/7/365 support for my pare…

You can set an organisation policy to disable personal ownership, which forces every password to be saved into an org, unless the user is an org owner or administrator.

Re: Bitwarden: Free, open-source password manager

#149
post #106

Offtopic/Ask HN: I tried to use Vaultwarden implementation with one caveat: I don't need to use any plug-ins - my everyday passwords are at my fingertips anyway, for anything else I'm fine with logging in and copy-pasting the login and password. And here comes the thing which makes VW (and a couple of other password managers I tried in the last couple of years) usage abysmal: the web-interface just sucks. First of al…

Afaik the Web-Interface of Vaultwarden is exactly the same as the normal bitwarden web client. The only thing they added was their admin interface, which you wouldn't normally see anyways. > It just loads ALL your accounts and filters them in the UI Server-side search would only work if you decrypt the data on the server, which is explicitly not wanted.

> Server-side search would only work if you decrypt the data on the server

Or do not store it encrypted (aside from passwords) in the first place, or have a separate server-side encryption for non secrets, so it would be still encrypted at rest.

It is all understandable, yet I don't have an option (except using almost a decade old RatticDB).

Re: Bitwarden: Free, open-source password manager

#150

Earlier quoted context omitted.

Of course it's all relative. $4 is infinitely more than $0. On the other hand, $4 for keeping my most important secrets safe is cheap.

$4 is $4 more than $0

I find the attitude of many folks on HN, arguably a forum full of logicians, baffling at times. I don't use 0 dollars to contextualize the cost of 1Password (or any productivity software). I value the time that I save with it. It saves me so much time, I don't mind paying $4, let alone $10.

Not paying for something because it's not free is being penny wise, pound foolish.

Post reply on HN