Live data from Hacker News

Introducing 1Password for Teams

blog.agilebits.com

31–40 of 151 posts

Re: Introducing 1Password for Teams

#31
And yet another app that would rather become an OS on its own rather than stick to one thing but 'do it well'. 1Password.app has already been taking ages to load since the shiny/pointless redesign a year ago, and now we're getting even more features…

Re: Introducing 1Password for Teams

#32
post #24

Earlier quoted context omitted.

The 1Password For Teams web app runs in Chrome, Firefox, and Opera.

Read only and no browser integration. :/ at least they publish a python module to speak to the agilekeychain

Need one for Opvault now...

Re: Introducing 1Password for Teams

#33
post #25

Interesting - lack of active directory integration, and lack of on-prem solution is disappointing though. Edit: since someone is apparently upset over my comment - those two features are absolutely mandatory in almost all corporate environments. If you have a comment to the contrary, feel free to share it. Don't just downvote my comment because you don't personally need the features.

Business customers of LastPass Enterprise and TeamPassword probably disagree.

Re: Introducing 1Password for Teams

#34

With the sale of Lastpass to LogMeIn, more excited than ever for 1Password to add team features

Why is it an issue that LastPass was sold to LogMeIn? Does that company have a bad reputation, or...? This is a serious question. I am not familiar with LogMeIn.

Re: Introducing 1Password for Teams

#35

At last full NSA support, I've been waiting for this for ages. Really getting tired of having to open my firewall and give them an SSH login.

You're getting down voted and unfortunately that's a bit disappointing. That said I am happy to discuss with you how Teams is setup so that you can fully understand how it works and realize that we (AgileBits) can provide zero access to your data to anyone, including yourself, without the proper credentials (Email, Account Key, and Master Password).

You would probably find our white paper on security and privacy very informative. If you'd like to give it a read you can find it here:

https://teams.1password.com/white-paper/1Password%20for%20Te...

If you have questions I'd be more than happy to make sure you get those answers. But this was a very important topic for us and that's why the white paper exists and I believe it should answer all of your concerns about security and privacy, if it does not then we will get those answered for you.

Kyle

AgileBits

Edit: I changed wording to "credentials (Email, Account Key, and Master Password)" from generic "data" which was sort of redundant and not clear.

Re: Introducing 1Password for Teams

#36
post #14
post #6

Earlier quoted context omitted.

1Password for Teams does have auditing for changes. We will be adjusting and expanding how that is exposed in the admin console over time.

Auditing who accesses credentials is just as important as auditing changes for us.

Auditing who accesses credentials is pointless, IMO. So you know that Tom, Jane and John have all accessed the domain admin credentials since they were changed last week, what good does that do you? They all have reason to do it, and any one of them could have written them down so it's not like you can audit who pulled them up 15 minutes before some huge security incident and know who was responsible.

Re: Introducing 1Password for Teams

#38
post #20
post #17

1) Finally 2) Awesome! Thank you for doing this. Super into analyzing this for security. 1Password is my preferred single-client solution, but not having a good Team solution has been a serious drawback.

You'll definitely want to start by reading the white paper: https://teams.1password.com/white-paper/1Password%20for%20Te... Let us know if you have any questions after giving that a read. Kyle AgileBits

Is there a reason why you're using RSA over Curve25519? RSA is old and rusty at this point and there's no good reason that I know of to be using it in new cryptosystems. To a much lesser extent I also have the same question about using AES-GCM over Poly1305/ChaCha20.

Re: Introducing 1Password for Teams

#39
post #18

Earlier quoted context omitted.

There is absolutely no "lock in" if you try out the beta. Our sign-on process uses a modified form of SRP. (See the draft white paper). It is not a traditional "authentication" process and so can't use other SSOs.

I won't recommend this to my company since I run 4 Linux boxes and there is no native Linux support (Means DEB, RPM and a TAR)

Not really a threat -- if they don't provide Linux support, then they know and accept already that people running Linux won't buy or recommend it.

Re: Introducing 1Password for Teams

#40
post #30
post #28

I had hoped AgileBits would step up their Windows offerings. I've recently bought the "real Windows application", since the Universal App doesn't allow to enter new logins (really?), only view existing ones. Unfortunately, KeePass was much more useful with its Alt-A shortcut. In 1Password I need to manually copy login data from the application, since I'm using Edge and there's obviously no plugin, yet (Edge's fault).…

Hi there! We are working on adding Teams to 1Password for Windows. Hopefully we'll have more to show for that in the not too distant future. I also hear you on the Edge front, we're excited to see what we'll be able to do with Edge once a plugin framework is available. As for syncing, the Windows application does support Wifi sync to iOS and Android applications, in addition to Dropbox. Between computers, you could u…

[deleted]
Post reply on HN