52 ms·
1Password for Linux development preview
- daffy 6y agoAn open-source alternative that just uses GPG for encryption is "pass": https://www.passwordstore.org/ https://www.passwordstore.org/
- dastx 6y agoOoh boy. This is amazing. The horrible Linux support they had was the reason I left 1Password. This might make me go back to 1Password.
- dteare 6y agoSo sorry we scared you away! Linux has been on our radar for a while but our biggest challenge was finding a way to share code between apps without writing everything in C++. Thankfully we found Rust, a systems language built around efficiency and safety. From there we were able to build the common core we've always dreamed of and were off to the races. Please give us another chance and let us know what you think. <3
- shaan7 6y ago> without writing everything in C++ That sounds interesting. Can you list the major technical reasons behind this decision? Also interesting will be if you could explain how Rust addressed those pain points (I have read about the general advantages that Rust has over C++, but interested in hearing how it plays out in the wild).
- igravious 6y agoDon't they have browser plugins? That's how use Lastpass on Ubuntu. I mean, besides Electron apps, who actually makes native Linux apps? (joking, not joking)
- bwoodruff 6y agoOur 1Password X extension works great on Linux. :) - Ben, 1Password
- dastx 6y agoYes. Though it was slow (slower than other extension based password managers), but worse, it was missing some of the features. I can't remember exactly what it was, but at one point I tried to edit something, but there was no way for me to add something. Though I've forgotten now, it felt quite a critical think to have at the time.
- e8gy3 6y agoI must be easily excitable because this makes me very excited.
- beyer 6y agoMe too! There will be a heck of a lot more excitement over the coming months now that our Rust client app team is firing on all cylinders.
- dddw 6y agoCongratulations! Is there als a CLI?
- kanobo 6y agoIs this better than just using KeepPassXC with a simple kbdx file synced to an online drive? It's an honest question, I've never used 1Password before.
- sedatk 6y agoYes as it isn’t subject to accidental overwrites of the data file It also has useful integrations like browser extensions so can autofill. Not sure if KeePass is capable of that. It’s a paid app though.
- baal80spam 6y agoI use KeePass on Windows and it is definitely capable of that and much, much more (see Plugins page). I can't imagine paying for an application when a better one is available for free.
- awinder 6y agoI’m a recent windows 10 convert from Mac and a 1password user for years, I have disagreements with my buddy who is a long time windows user along these lines _all_ the time. He thinks I’m insane for essentially paying for UI I prefer (I would disagree I think there’s some structural differences, but I’m okay with being reduced to that too). It’s like asking why someone buys anything, the products exist and sell and make some people happy while being absolutely insane to others. Such is life.
- PascLeRasc 6y agoI'm also happy to pay for better UI alone but that does seem to offend some people. It's usually the same people who if they find out you take vitamins will start telling you what the placebo effect is.
- Krasnol 6y agoThe reason usually is that there are people with a lot of money to throw around and there are others with less money who instead invest time to research where they can save it on a product. If then they not only find a way to save money on a product but also one with more features (so more for less) than the one people throw money at, they are in disbelieve why somebody would throw that money on the worse alternative. I see this as quite reasonable thinking for somebody who never had too much money. Of course it might be that in this case the much more obvious is the case: throwing your most important data into a cloud on a close source system is kinda..."optimistic".
- laactech 6y agoI switched from LastPass years ago, and 1Password is great. I use a family account, and it's been easy to get my wife to use randomly generated passwords. The only missing piece for me is a native Linux app since I use Ubuntu for all my development environments. The web browser extension works, but it's a noticeable difference moving between it and the windows desktop app. I'm super excited to give this a try.
- dteare 6y agoAwesome! I'm so happy to hear this. We'd love to hear about your experiences so please share after you give it a go.
- ceocoder 6y agoUnfortunately this only works with hosted 1Password (as far as I can tell), there doesn't seem to be any support for self hosted vaults. Can Roustem or anyone else from 1Password team clarify this? This was the precise reason I switched to BitWarden 6 months ago, needed a solution where my passwords didn't leave my network.
- dteare 6y agoI'm no Roustem but I'm close. :) You're right, 1Password for Linux integrates tightly with the 1password.com service and as such does not support local vaults.
- Xylakant 6y agoSo how can I access credentials when I’m not connected to the internet? Not at all?
- PascLeRasc 6y ago1Password always stores a local cache, you just won't get updates from other devices synced.
- bwoodruff 6y agoThis is the correct answer. Thanks! - Ben, 1Password
- the_svd_doctor 6y agoIts cached locally on desktop app and phone app.
- barnabee 6y agoI currently get by on Linux by syncing my 1Password vault and reimporting it to KeepassXC every time I need a newly added or updated entry. Annoying to have to create new entries on another devices and sync when I need an account on Linux but it works. Looks like this update provides me with nothing useful. There’s no way I’m moving to a 1Password account, but I might just switch away entirely the next time I need to pay for an update or whatever, given the apparent lack of interest in serving my needs despite the amount of money I’ve paid for updates, etc. to date and the fact that it’s clearly technically possible.
- shmerl 6y agoHow does it compare to KeePassXC?
- asdajsdh 6y agoIt's proprietary, non-free and all your passwords get send out into the wild. So it has all the things for a modern app.
- shmerl 6y agoAh, it's not even open source? I'll pass then ;)
- yjftsjthsd-h 6y agoI assume the downvotes are for tone, but this is materially correct. It is proprietary, paid, and stores your data (encrypted, but that only solves some things) on remote servers, the last point being something that's associated more with newer apps.
- nodesocket 6y ago1Password has probably been the single biggest productivity increase tool I've ever purchased. Worth every cent, and new Linux support news is fantastic.
- beyer 6y agoThank you so much for your support! This is only the beginning for our Linux client, so stay tuned for a lot more excitement!
- spondyl 6y agoAh, amazing! I wonder if it'd be possible to make an Emacs auth source using the 1Password CLI? I kinda wish the CLI was more like pass
- jinx1975 6y agoI use https://passwordlive.github.io https://passwordlive.github.io
- the_svd_doctor 6y agoHow does this work if you have to change your password for some reason ? Do you change the "What for?" field ?
- jinx1975 6y agoYes, I only change the 2nd field, for example from "protonmail" to "protonmail2"
- atarian 6y ago>Our new app is built on great open source projects like the Rust programming language for the underlying logic, and React for a responsive component-based UI. Is this using webview? On Mac I believe the app is completely native, so does this mean 1Password will be switching over to using webviews across platforms?
- xoa 6y agoNice to see progress here, though 1P continuing to move away from local control to force subscriptions is regrettable. Even so, the UI hasn't been matched yet IMO, which is important for getting the less technical to use it. We're sadly also still a ways away from passwords being eliminated entirely, so it's still very important to get everyone using one. One thing still missing I really hope to see though is the local application (on all platforms) supporting hardware tokens for unlock (with a backup master option). That'd be a nice extra security+convenience option which would work across platforms.
- ghostpepper 6y agoFor many/most types of software I am in the same camp of people who would prefer to pay more upfront for a license as long as the software continues working as is - I bought it because it worked and if I chose to pay more in the future for a better version, I will make that decision based on the new features added and not the old features being held hostage. However, for something as high-value as a password manager, I think having a subscription model makes a lot of sense. I can't think of any other class of product where timely updates from the developers are so critical to the utility of the product. You could even argue that an unpatched, out of date password manager is worse than no password manager.
- xoa 6y agoSo to preface: I don't use any web functionality in password managers at all, only the client applications. But that's the context for my regret over the forced subs too. >I can't think of any other class of product where timely updates from the developers are so critical to the utility of the product. I can think of a ton actually, although I guess it depends on what you consider important functionality there. Now, there is ongoing maintenance needed for things like keeping up with browser integration, but I'm not sure exactly what security updates should ever be needed unless they really fucked something basic up. The only things that need constant attention are their own cloud service, but that's a function of it being their own cloud service vs someone running their own server or syncing via Dropbox. >You could even argue that an unpatched, out of date password manager is worse than no password manager. I don't think you could frankly. Like, what's the threat model here when we're talking data that lives on our own systems and is E2EE? Fundamentally, password managers do not defend against the trusted end point being pwned, for that you need an HSM of some sort (or at least some weaker but still somewhat functional kinda of 2FA). All data from the end system should be fully encrypted before leaving, and since the system is trusted by definition timing attacks shouldn't be a concern (or at least are trivial here to negate entirely), so the security should depend purely upon the PM's ability to perform basic at rest crypto, use a decent key stretching as needed, etc. Which is frankly a solved problem with well vetted free libraries, that's not the hard part of security. Honestly, 1Password and the like aren't that different from the macOS Keychain Access I'd been using for many many years before hand. They've got better organization and UX flow these days, and browser integration is a genuinely big deal. But I never had any problems with Dropbox sync with pre-1P.com nor do I still have any problems with sync there. In principle, the 1P team could have made all the admittedly alright group stuff and so on available as a standalone server thing people could run along with their own cloud offering of the same, similar to the way Gitlab and many others do. Buy the server/client licenses standalone and run infra yourself, or not, your call. WiFi sync didn't have to be left as primitive as it has been either. Etc. It's a business decision for them to push subs because subs are very profitable. And I recognize yeah, it's a way to make lots more money in a reliable fashion which people like. But I still regret the sub trend and think it's usually a negative overall particularly for people trying to fill situations outside the norm. 1Password's sub thing for example doesn't scale with large families, there is a huge disconnect between a small family and an "organization" in their pricing and general structure which isn't due to cost basis, it's due to their perceived ability to pay. I'm genuinely optimistic though that things like Webauthn represent real turning points, and we're finally (10-15 years late but better late then never) moving away from the madness of service passwords and managers "have i been pwned" and all the layers that essentially recreate PKI, very badly. As far as security goes, neither I nor anyone else should need to give a single shit or change anything at all if a website is completely utterly hacked, because the only authentication that should be there should be a public cert for me. Damn it, asymmetric credentials was solved forever ago!
- comice 6y agoI just moved from (paid) 1p to bitwarden at the weekend due to lack of proper Linux support. I was just testing bitwarden and found I couldn't easily get a good export of my passwords from 1p on Linux, because only their desktop apps support that. It won't run under wine and I ended up installing a Windows VM specifically to do the export. Was so frustrated at this it pushed me to move to bitwarden. Good for them for sorting it though.
- ben0x539 6y ago... I wish I'd thought of booting into my Windows partition and installing 1password there, instead of spending an evening writing up an extremely overwrought export script on top of the commandline client.
- LockAndLol 6y agoWould you mind sharing it, so that other people don't have to go through the same pain you did? Maybe even creating an issue and dropping the code there could be helpful. Then somebody could pick it up and reuse the algorithms you wrote. That'd be pretty great.
- ben0x539 6y agohttps://gist.github.com/ben0x539/9cf66dd8347c264179a89944278a3e61 https://gist.github.com/ben0x539/9cf66dd8347c264179a89944278... Caveat that it doesn't emit a csv you can import elsewhere, it's not extremely polished, hasn't ever been run outside of my laptop, just does a bunch of unnecessarily clever things. Needs the 1password commandline utility `op` set up (ie you have to have told it your secret key already). It'll create `items/` and `documents/` dirs with one file per, well, item or document, named after the uuid. It tries to make a symlink named after the metadata for each file in the hope that you'll have an ok time tabcompleting your way to the desired secret. There's some attempt to not redownload files that you already have, mostly because I re-ran this thing a million times trying to get it to work. I wrote this to be able to zip all my secrets, `scrypt` the zip file with a strong password, and put the scrypted file on a usb drive that isn't particularly well hidden, just as another fallback/recovery option in case a meteor hits 1password HQ or my paper backups catch fire.
- emdowling 6y agoI’ve been using 1Password every day for over 11 years now. The oldest passwords I’ve got stored are for Twitter and Dropbox (yes, the passwords have been changed but the records were first created in 2009). It’s one of those apps which has been made with proper craftsmanship and care, so while I’m not a Linux user, I’d have no problem recommending based solely on Agilebit’s reputation.
- burnte 6y agoI used KeePass, then LastPAss, then tried 1Password about 8 years ago. I haven't even considered changing. I joined when they were still mostly focused on MacOS and iOS, the Windows and Android apps were secondary. Since then they really shifted to a totally cross platform experience, and I'm incredibly happy with the app. I'm glad they're branching out to Linux.
- z3ncyberpunk 6y agoWhy switch to this when keepass is way more portable, open source, and isn't some stupid SaaS program.
- numbers 6y agoUsed Dashlane for 2-3 years and then tried 1Password and I haven’t looked back. Dashlane has too many bugs to be useful all the time.
- bredren 6y agoAlso a longtime user. Did you kick over to their subscription model or have you stuck with the old installs attached to the grandfathered permanent license?
- DavideNL 6y agoI'm still using the permanent license...and syncing over iCloud, while using the latest versions of the 1Password app, on macOS & iOS. As soon as this stops working and i'm forced to get a subscription i'm moving to another password manager though. So hopefully one time purchases will remain possible.
- colordrops 6y agoI've been using Bitwarden across the browser, Linux, Mac, and android, and it works great, and is fully open source, unlike 1Password.
- dexterdog 6y agoAnd you can self-host it which I do
- sickcodebruh 6y agoI use 1PW professionally, with our whole company having shared vaults for different departments and security levels, as well as at home, so my wife and I can share some credentials. Absolutely love it. I’m spending more and more time working from Ubuntu so I’m very happy to see this, it should make things just a bit easier.
- bwoodruff 6y agoAwesome! We'd be happy to hear any feedback once you start using it. :) - Ben, 1Password
- dahfizz 6y agoSeriously, this is great to see. I've been using LastPass for a while but have been unhappy with it. If 1Password is taking Linux support seriously, I'll definitely switch.
- Proven 6y agoLastPass for Linux works without special issues.
- beyer 6y agoI assure you, we are taking Linux support seriously. When I joined the team, we had almost no one using Linux in house. This has changed in a big way and is only part of why we are now investing in making the best darn app we can for Linux.
- alexandrerond 6y agoI switched to "pass" from 1p and it is a breeze because it just works without all the bullshit and I don't have to place any trust on a company saying they do things right (they will never tell otherwise). And 1password never cared about Linux. I had to custom-script data export, they pretty much held data hostage by making it difficult to migrate from the platform, not to speak of the undocumented data formats. But at least we did not have to install some closed source propietary thing to do something as critical as password management (browser sandboxing seems slightly better). If they cared they would open up their client‘s code for everyone to peek.
- no_wizard 6y agoI have to call this out as a bit of a hyperbole. They already participate, quite openly, in security audits[0], and while yes, I'd love it if it was OSS too, but the reality of making money on these services is that (especially I believe at the time 1Password was founded), is it wouldn't have likely done them any good, really. In fact it could hurt their business. I believe 1Password was one of (but not the only!) pioneers of this being a successful consumer business. Notably, I don't think its worth detracting from a fantastic product based solely on the license of its underlying software. I'm also not aware of any 1Password data breaches. As far as exporting goes, you can simply generate a CSV file (or plain txt)[1] as well. Not sure what the issue there was, I'd be curious to know. While I like OSS too, and prefer it when able, I think its a stretch to say they're holding their users hostage if they want to migrate away, not to mention being OSS isn't really a predicate as to whether the software & user experience is actually any good. disclaimer: I don't work for 1Password, but I've used it for over a decade. [0]https://support.1password.com/security-assessments/ https://support.1password.com/security-assessments/ [1]https://support.1password.com/export/ https://support.1password.com/export/
- aborsy 6y agoHow can one be sure that the passwords are even encrypted, without having seen the program? Audits don’t mean much for various reasons, including the conflict of interest. Agencies such as NSA don’t have to say loudly that they have agreements with such and such companies through PRISM-like programs.
- chrysoprace 6y agoCan't say I'd ever personally use 1Password over something open source like Bitwarden, however the intriguing thing about this post is that they're using Rust for their Linux client backend. If only this was open source; we could peek under the covers and see what technology they're using.
- randomstring 6y agoI see support for Debian and Ubuntu (https://support.1password.com/cs/getting-started-linux/ https://support.1password.com/cs/getting-started-linux/), but I don't see anything about Raspbian or running on the Rasberry Pi. Hopefully Pi support isn't far behind.
- bwoodruff 6y agoWe don't currently support ARM but we'll keep an eye out for feedback on this. Thanks! - Ben, 1Password
- Thorentis 6y agoKeepassXC is the perfect solution in my opinion. It is open source, has a huge number of features (that don't get in the way of basic usage), and has mobile apps and desktop apps that work well on all platforms. Right now I am using it on Windows, Mac, AND Linux, as well as my Android phone. I have it syncing over Dropbox, but you can sync it however you like. The Android app automatically fetches the latest version, and supports auto-complete etc. I see no reason to pay for a password manager or use something that isn't open source.
- below43 6y agoI second this. KeePass is awesome (across all platforms)
- octorian 6y agoI'm the same way. The most important parts of the KeePass ecosystem to me are: 1. It runs on every platform I currently use, as well as any platform I might care to use, whether or not that platform is sufficiently "popular" for a company to justify caring about it. 2. It isn't dependent on the continued healthy existence of a company to remain usable, as I could simply self-maintain in a worst case scenario. These are very important things about a password manager to me, personally, which is why any of these more polished/popular options would be an extremely tough sell.
- Thorentis 6y agoYep, there is no way I am trusting a company with maintaining access to passwords on all my accounts and my clients accounts. Keep Pass uses a well documented XML file format that, if needed, I can manually decrypt and access if for some reason, every copy of KeePass is deleted.
- noisy_boy 6y agoDoing the same using Syncthing for syncing. For basic password management across devices without having to go to "cloud", I don't see a better alternative. The new polished UI for KeepassXC on Linux is a bonus.
- bamboozled 6y agoI just left 1password for Lastpass, took way too long unfortunately.
- arjie 6y agoApp looks slick. Installed on Ubuntu. Very cool. Unsubscribed from LastPass and subscribed to a Family plan here. Hoping for updates to bring all the rest of the features. <3 EDIT: Took the opportunity to eval a couple of others. BitWarden stood out because it's open-source and cheaper for the family plan (the difference between 1Password individual and BitWarden family is not a big difference). My thoughts: * 1Password had a really cool app and very good import from LastPass * Bitwarden's app is pretty good but the import breaks on Secure Notes that are a bit longer Ultimately went with Bitwarden because it's cheap and I was able to migrate my big notes in approx 10 minutes manually.
- ryanmccullagh 6y agoHow does 1Password compare to LastPass? For one, LastPass _always_ freezes Chrome on me a few times a day.
- rootusrootus 6y ago1Password is pretty stable, I have not had any problems with applications freezing. I was going to switch to LastPass since I have two younger children that I'd like to use a password manager, but LastPass has the same 17+ restriction so I'm looking for other options. But if you don't have the same issue, 1Password is a solid choice.
- no_wizard 6y agoI think you can just use 1Password for Families in this case https://1password.com/families/ https://1password.com/families/
- rootusrootus 6y agoThat's what I use. The iOS app has a 17+ rating.
- bwoodruff 6y agoWe're not thrilled about the 17+ rating on iOS either, and are evaluating our options there... Thanks! - Ben, 1Password
- deleted 6y ago[deleted]
- chiefalchemist 6y agoStarted with LastPass. Moved to Bitwarden a year+ ago based on NH recommendations. $10 a year with Yubikey support is a steal. At work we use 1PW. Compared to BW I find 1PW awkward and often counterintuitive. I suppose it has to do with habits. But I had few awkward moments with going from LP to BW. I'm not knocking 1PW. Only suggesting that if you're in the market for a PW manager, check Bitwarden
- daffy 6y agoWhy would I want to trust some company with all my passwords?
- 1123581321 6y agoGenerally because the chance they serve a compromised client is lower than that your homegrown storage will be compromised, and because the UI affordances make it easier to use more unique passwords and multi-step authentication.
- daffy 6y agoBut if my machine were compromised, my 1password password would be compromised too, wouldn't it?
- 1123581321 6y agoMaybe. It has some defenses against keyloggers. The local data is encrypted so the attacker would need your master password, which hopefully you wouldn’t have stored in plaintext on the same machine. Regardless, the idea is still that a secure password manager would put you in a better situation more often than would a plain text file, cloud notes, physical notebook/sticky, etc.
- tialaramex 6y agoBut the reasonable comparison wouldn't be "a plain text file" it would something like Jason Donenfield's pass (https://www.passwordstore.org/ https://www.passwordstore.org/) Now, there are some potential usability improvements they can offer by giving the passwords to "some company" but there's a serious price (not only financial) to pay for that. Also, because it's designed as a standard Unix tool if you're comfortable in Unix (as we may suppose more Linux users are) you'll find pass fits better than 1password or similar programs. When did you change the password for your Hacker News account? You can use 'git' to ask like you would anything else. How will you ensure the passwords survive a house fire? They're on your filesystem and will be preserved with everything else in your backups (you do have backups and use encrypted storage for them right?). And so on.
- nfm 6y agoI'm a happy 1password customer on Linux using the browser extensions. What advantages does a native client bring?
- techntoke 6y agoEnpass is a really nice password app that works on Linux, and allows you to sync with various cloud providers. I have since switched to Password Store though which is open source and uses GPG for encryption, so you can pick your own algorithms.
- princevegeta89 6y agoYup, have been using Enpass exactly for the reason that there has never been a 1Password for Linux until now. Enpass always worked seamlessly, and it was a one-time purchase for me back then. (They changed it to a subscription model a year ago)
- awill 6y agoI'm perfectly happy with enpass, and see no reason to move from a one-time purchase of enpass to a subscription for 1Password.
- pseudalopex 6y agoEnpass isn't open source and the only security audit skipped Linux.[1] [1] https://dl.enpass.io/docs/EnpassSecurityAssessmentReport.pdf https://dl.enpass.io/docs/EnpassSecurityAssessmentReport.pdf
- techntoke 6y agoDid 1Password pass an audit for Linux? I now use pass so I don't have to worry about it anymore. I trust GPG and Ed25519.
- pseudalopex 6y agoIt's a preview so probably not yet. I think the core is cross platform. I wasn't recommending 1Password for Linux though.
- neilv 6y agoIs this open source? That page makes no mention of it. When my shop standardizes on a password manager program/browserplugin for Linux development workstations, I currently don't see us picking a closed source one.
- plg 6y agoI love 1Password. Something I could do without though is all of the GUI animations & transitions. They create time delays, little waits that add together that introduce unnecessary delays. Sometimes I just want to login, and I want to login now.
- Polylactic_acid 6y agoWhat are peoples thoughts about firefox lockwise? I have been using keepass for forever but I want something that easily syncs between devices and doesn't require copy/paste in to the browser. Lockwise seems perfect but I haven't used it much yet.
- wincy 6y agoWell one difference is you just login with a password and you have access to all your passwords. Whereas with 1Password you use the long key to set up a new device, so it requires either memorizing that key, writing it down, or having a different device with that key on it.
- felbane 6y agoI've found great success with KeePass and Dropbox. I use the Kee plugin in Firefox that allows autofill in the browser, and KeePass2Android on my phone which supports pluggable autofill for browsers and apps on Android. It's not as trivial to set up as Lockwise or 1Password, but I prefer this setup because: - 100% Open Source - I own the keyring and can sync it across literally all of my machines, plus the cloud storage provider(s) of my choice seamlessly - The keyring is protected by a key that only I know, no third party is handling the unlock on my behalf
- edeion 6y agoWell, Lockwise is 100% open source, isn't it? I'm not sure there are tools for extracting the data easily, though. This may be your point and I'd agree on that. But I've been using Lockwise for years (and the previous cloud tool from Firefox, Sync, IIRC) and it mostly does the job. Sometimes I'd like to edit the entries to a finer grain or add foreign passwords (the ones that don't relate to a webpage) but that's it. Extremely easy to get running and sync.
- lorenzhs 6y agoI use Lockwise, and the thing that drove me towards it is that it works on Linux and iOS without having to run a sync service (Dropbox/...) on my laptop. The sync is excellent and just works. The iOS app could use some work, though. It doesn't support adding or editing passwords (but Firefox for iOS does, and it's planned for Lockwise according to the issue tracker), and it's REALLY slow to start (several seconds) when using it to fill a password in the browser. I don't know what's up with that, but it's annoying.
- eberkund 6y agoIs it Electron based? I noticed the blog post said they used React to build the UI.
- deleted 6y ago[deleted]
- bwoodruff 6y agoIt is a hybrid. The UI is using Electron. The guts are Rust. - Ben, 1Password
- aborsy 6y agoWhat would 1Password add to keepassxc+Dropbox for personal use? It only subtracts from the security. I get that organizations with many users don’t want to deal with database management. For personal use though, keepassxc is fine.
- pseudalopex 6y agoBetter UI.
- ngrilly 6y agoDisaster recovery is simpler with 1P (if you lose your computer and your phone). You just need your 1P credentials instead of your Dropbox credentials and KeePass secret key.
- Valkhyr 6y agoAs many others have said, I'll be interested once they provide local vault support on Linux. I dislike subscriptions - not for the financial cost as such, but because I like to evaluate whether or not I want to pay for a given version or stay on the current version. I'm happy to pay for software that provides value to me, which 1Password does (and I did pay for the existing clients). The same applies to major version updates when they add value for me - though the reality is that my usage is very basic, and I am often happy with an older version of the same software for years, so subscriptions to support continued feature development feels like an unjustified lock-in to me. I do subscribe to some services that have a significant backend/cloud-based component, but in the case of 1Password, I sync the vault via Dropbox, so a subscription instead of licence/upgrade based pricing feels completely inappropriate. Since I am trying to move more of my computing to Linux, it looks like at some point I'll have to look for other options than 1Password, which is a shame :-(
- guiambros 6y agoI was on the same boat until recently. Long time 1Password user under Linux + local sync (since v3, 10+ years ago). Always feeling neglected by AgileBits. Last year I got tired of having to fidget with WineHQ config every time I updated something, and decided to pony up for the cloud-based subscription. It was the best decision ever. Not only solves the compatibility issues (obviously), but also gave me the ability of managing different vaults, selectively share passwords within within the family, and also having some nice additional features (e.g., wiping out devices before intl travel). All things considered, more than worth the subscription price. The only two things that I miss from the native version: 1) ability to attach files to an entry 2) the flexibility of doing bulk operations (e.g., selecting multiple entries). I solved the latter running 1P under a Windows VM, but hoping this Linux native version will solve now. 1 down, 1 to go.
- Valkhyr 6y agoI understand :-) I am not even arguing that the subscription price is not worth it - it might very well be. I do however disagree with charging for this kind of software (which to me is only a local client, since I do not use or care about their backend service) via a subscription, on principle. I'm aware that from a purely financial point of view, this is not a rational argument to make. In fact, it gets more irrational because if I could pay for updates every time, I might end up accepting a scheme where I pay more in total over the lifetime of the product - depending on whether I pay for every major version, and how high each update is priced - and I would not be dissatisfied with that. But it's not purely a financial argument, it's about the choice of what to pay for, and what not. Being able to evaluate each version on its own merits. Paying for the syncing feature separately (in my case: Dropbox). Basically, this kind of subscription removes freedom of choice from the customer side, which is why I am ideologically opposed to it even when it works out cheaper in the end for me. As an aside: I find the word "subscription" to be disingenuous for these, and only use it because it has come to be used by convention. Traditionally "subscriptions" in terms of physical goods meant you retain ownership of anything you received before cancelling. Cancel a magazine, you don't need to mail back all your old copies. I tend to think of software or media "subscriptions" as "renting access", not as "subscribing", and mostly avoid them.
- slimskim 6y agoJust switched to Linux 2 days ago. So happy to see this!! :D
- owenwil 6y agoI wonder if this means they'll build for Windows ARM64 next or continue ignoring it until after they support it for macOS
- musicale 6y agoI pulled the plug on 1password because I hate subscriptions. There is also no logical reason to pay agile bits for single-purpose back-end infrastructure when we already have dropbox, etc.. An encrypted password file is tiny. Subscription apps (and subscriptions in general) are simply not scalable in their current implementation.
- nucleardog 6y agoI don’t even mind subscriptions but they’ve still lost me as a customer for bundling the subscription pricing along with an extremely hard push into storing all my most sensitive data “in the cloud”. Still rocking my 1Password 4 license on Windows and OSX from years ago with no plans on upgrading. When I’m finally forced to, I’ll simply switch to another product.
- nucleardog 6y agoHaving had it made clear to me again that AgileBits doesn't care for my particular market segment, I finally decided to stop using 1Password4 and holding out hope that one day they'd release something that provided the same functionality. I'd tried a lot of password managers before and never found any that quite fit as well as 1Password, which is why I was still using it. I'd tried Keepass and its variants every time but it was never _quite_ there. The interface was clunky and things that I expected to be core to the product (additional fields, OTP, etc) were addons. Stumbled on KeepassXC this time. Solved most of those problems. Certainly well enough to replace the old, unsupported software I'd been using for something as important as my most vital secrets and identity documents. Just got everything migrated over. Bye, AgileBits! After 5 years it's been... swell?
- c0nsumer 6y agoAfter putting it off for a while, I finally moved from LastPass to 1Password around the beginning of the year. Inertia kept me with LastPass, but I really should have fought that. There's just no comparison between the pile of slow crap that is LastPass and it. I guess I just accepted that a password filler would be clunky, but... no. 1Password is much, much better.
- jychang 6y agoWhich platform is Lastpass slow at? Just curious, since I don't have issues with Lastpass, but I mostly use the chrome extension.
- c0nsumer 6y agoIt was mostly the Chrome extension. It'd take a second or three for the dialog box to pop up on a username or password field on a page. 1Password is just... faster. And it feels like the editing, and intelligent detection of when to prompt and whatnot is just better. It's as of LastPass stagnated and 1Password left it behind.
- jagger27 6y agoWow, such convenient timing. I just gave up fiddling with the CLI interface on Linux in favour of 1Password X, which otherwise works great. Shoutout to @cohix, I'm sure you had something to do with it!
- tempestn 6y agoSpeaking of 1PW, has anyone else been having an issue for perhaps the past 1-2 months on Windows, where there's an intermittent delay before the interface opens when using the keyboard shortcut to open 1pw mini? (Likely also affects the direct fill shortcut, but I rarely use that.) Most of the time it's near instantaneous, but over the past while, maybe 5-10% of the time it takes 8 seconds to register. Started happening to both my wife and I (on separate machines) around the same time. I figure if I can find others with the same issue, maybe I could find a commonality. I spoke with support, but apparently it's not a known issue.
- dddddaviddddd 6y agoWhen one day AgileBits removes non-subscription sync from iOS and Android, I'll have to move to a new password manager. Currently I use syncthing for inter-computer syncing, Dropbox for the phones (iCloud too at one point). Frustrating how difficult it was to install the iOS version without a subscription, I even wrote an article to save others the confusion: https://www.davidschlachter.com/misc/1password-ios-standalone https://www.davidschlachter.com/misc/1password-ios-standalon...
- 29athrowaway 6y agoShower thought: An online password manager is equivalent to password reuse, because there's one password behind all your passwords.
- doctoboggan 6y agoNot really because the most common reason your password is leaked is some online service leaked it, not someone hacked your machine and found it. In that scenario they would only have your single site password and not your master key.
- radus 6y agoGood to see! However, lack of auto-type [1] into non-browser windows has prevented me from being a 1Password customer for some years now. With KeePass, I can trigger the auto-type sequence of an entry matching the current window title with Ctrl + Alt + A. The sequence (eg. {username}{tab}{password}), match modality, and keyboard shortcut are all configurable as well. I make use of this frequently enough that I don't want to migrate - and I'd very much like to since I want to set it up for my family. 1. https://discussions.agilebits.com/discussion/87292/auto-type-feature-in-new-windows-app-coming-in-a-future-update https://discussions.agilebits.com/discussion/87292/auto-type...
- yelloworangefog 6y agoI had 1Password recommended to me by a friend, but the lack of Linux support was a deal breaker. Now I've settled pretty comfortably into a different password manager. Even if the Linux port of 1P gets up to feature parity with the other versions, I don't see much of a practical reason to hassle with bothering to try it. Granted I could be wrong. The long track record of 1P is definitely a plus. And maybe they have enough nice features to make it worth it. It's definitely a harder sell for me now though than it would have been if Linux had been a first class citizen when I was first choosing a password manager.
- cycomanic 6y agoI've been using keepassxc which is open source, extremely snappy (it's one of the fastest starting gui apps on my desktop) and offers all the functionality I think I need (ssh agent integration, secret service integration...). What does 1password offer that would make me switch? Why is everyone so excited about 1password and keepassxc is hardly ever mentioned?
- benhurmarcel 6y ago> What does 1password offer that would make me switch? Mostly great sync across devices, and great apps on all devices (all mobile, all browsers, and all desktop OS except Linux for now). If you mainly use one computer and don't mind tools which are a bit less polished, it's not that compelling.
- m0zg 6y agoBitKeeper is perfectly adequate across Windows, Linux and iOS. It's also free.
- m0zg 6y agoThat is, BitWarden
- anderspitman 6y agoIf you haven't looked at keepassxc recently I highly recommend it. The latest browser extension is excellent.
- Hnrobert42 6y agoI don’t understand all the subscription hate. Don’t get me wrong. I, too, long for the days of DIY car repair and have a hard drive full of mp3s ripped from CDs (snagged from a Columbia House subscription, no less). But this is just how ~the software~ business works now. Investors want predictable ROI. If your business can’t/won’t show *aaS revenue predictability, investors will take their money somewhere that can.
- ecmascript 6y agoWell just because that is how a lot of software gets deployed doesn't mean it sucks any less. I hate subscriptions because the costs adds up very quickly. I try to save more than 50% of my income so having several subs is just not happening. I'd rather not have any software at all or much crappier alternatives of it rather than paying every month.
- brandon272 6y ago1Password is a great app but I can’t justify spending $120 CAD per year on their family plan. (I know it’s slightly less expensive to pay a year upfront, which I’d rather not do)
- beyer 6y agoI'm not sure where you're getting this price, is that your calculation with GST/HST? Plans on https://1Password.ca https://1Password.ca are CA $7.95/month (CA ~$96 for the year) for monthly billing. We think this is a killer price for five family members without any restrictions like living at the same residence. You do save quite a bit with annual billing, but I understand that's not for everyone.
- paulcarroty 6y agoI use https://gitlab.gnome.org/World/passwordsafe https://gitlab.gnome.org/World/passwordsafe on Linux, mainly 'case KeepassXC UX is ugly and forced you to do tons of clicks.
- vzaliva 6y agoI've been a long time 1Password user but their lack of Linux support made me switch to LastPass. It is great they finally decided to support Linux, but it should be noted it took them 10 years to do so (see the date of the post they mention in the link). So after ignoring Linux users for 10 years they finally decided to grant us their support. I feel my money are better spent supporting vendors who support Linux early on and do not view it as an afterthought. I will stick with LastPass.
- mastazi 6y agoI'm deeply unsatisfied with Lastpass (especially the state of their desktop apps: the Windows app is complete garbage and the Mac app is just a re-skinned version of Lastpass for Safari - or the other way around, not sure) knowing that 1Password care about desktop apps might convince me to switch.
- iuguy 6y agoI was a 1Password user from when it was fully self-hosted until they started pulling bait and switch tactics to move people to subscriptions and online vaults[1]. I also had Windows licences, and Windows was certainly a 2nd class citizen while I used 1Password. And of course, it doesn't look like the 1Password Linux client is open source. The back-end certainly isn't. I switched to Keepass[2] initially, synchronised with NextCloud but it wasn't intuitive enough for everyone. We moved everyone to Bitwarden a few years ago using bitwarden_rs[3] and have never looked back. [1] - https://medium.com/@kennwhite/who-moved-my-cheese-1password-6a98a0fc6c56#615b https://medium.com/@kennwhite/who-moved-my-cheese-1password-... [2] - https://keepassxc.org/ https://keepassxc.org/ [3] - https://github.com/dani-garcia/bitwarden_rs https://github.com/dani-garcia/bitwarden_rs
- panpanna 6y agoI think keepass has the base functions covered, they just need a slightly better UI and a simpler way to sync passwords. Thankfully, it's open source so I'm sure someone with fix that soon ;)
- rb666 6y agoI'm also a big fan of Bitwarden. Have tested 1Password, LastPass and a few of the other password managers over the last 5 years. This is the one that ticks all the boxes, has the least bloat, does correct matching. I support it with pleasure!
- somemirth 6y agoYeah same, Bitwarden is really good. Have been using it for the last 4 years.
- DavideNL 6y agoI tested Bitwarden for a while and found it was lacking features compared to 1Password. Until a few weeks back they didn't even have a "Trash", delete an item and it was gone forever. Exporting 1Password to Bitwarden was a complete mess, attachments in items were not imported at all/deleted (you don't get a warning of this.) Bitwarden is okay, but compared to 1Password they have a long way to go in my opinion.
- rawoke083600 6y agoI have been looking into a good passwd-manager for linux and my android phone for the last week or so: Most of them look so "blingy" I can't get myself to trust it ! I'm 51% convinced myself just to code my own (I know , I know) I've recently switched over from Ubuntu-Genome to Ubuntu-i3 and now for the life of me, I can't get chrome to sync/autofill/remember my passwords :( - Same user just different desktop/wm, why is chrome so good and so bad ! Anyone have any ideas how to fix chrome or can recommended a "unix-spirit(do one thing etc...)" password-manager for Linux+Android+Chrome ?
- 0XAFFE 6y agoI would go for bitwarden[1]. It's free software, can be self hosted and is available on most platforms and has nice browser addons. If you want to go the self hosted route, you might want to look into bitwarden_rs[2] because it uses way less resources than the official server. [1] https://bitwarden.com/ https://bitwarden.com/ [2] https://github.com/dani-garcia/bitwarden_rs https://github.com/dani-garcia/bitwarden_rs
- rawoke083600 6y agoThank you !
- maxhille 6y agohttps://www.passwordstore.org/ https://www.passwordstore.org/ Using it for years now and am happy with it. Although it start from this pretty basic setup, you can extend your usage with mobile apps and browser extensions.
- gspr 6y agoIt's the perfect tool. I don't think I've ever said that about any piece of software before. I literally wouldn't change a thing about it.
- xtat 6y agowas onboard until i found its a gui
- benhurmarcel 6y agoThere is already a command line tool available.
- a-ungurianu 6y agoUnrelated to the heading of this post, but looking at the screenshot it seems that it supports OTP generation within the app. Having one place that both stores your password and generates the OTP seems to defeat the purpose of 2FA no?
- pseudalopex 6y agoIt's better than not using 2FA.
- bwoodruff 6y agoYes and no. A much better explanation than I can give here is covered in our blog post: https://blog.1password.com/totp-for-1password-users/ https://blog.1password.com/totp-for-1password-users/ - Ben, 1Password
- ecmascript 6y agoI would only be interested in 1Password if I could pay once and store the chain on my own servers. This is not interesting for me atm and I am currently moving to Keepass.
- twhb 6y ago1Password team, if you’re reading, my macOS app wishlist has been piling up pretty high. - Please rethink sections. Most items are better off without them, so they should be revealed only when requested, not cluttering every create and edit screen and making me sort half my fields under a “SECTION” section just to not use sections. - Please rethink the flow for adding a new field of a non-text type. It’s just silly to have to scan down for “SECTION”, then down for “new field”, then right for “T”, then click, then scan down for the field type, then click, then click in the data box, every time I want to add a one-time password. - Please hide unused items from the sidebar, like empty categories, “Favorites” when there are no favorites, and the vault switcher when there’s only one vault. The clutter makes it slower and harder to use. - Please condense Watchtower into one sidebar entry. My two options right now are “don’t see Watchtower alerts” and “push the rest of the sidebar so far down I only see a few non-Watchtower items”, neither of which is good. - Please separate “Ignore HTTPS warning for this website”, ignore 2FA warning, etc, from tags. I don’t want to pollute my tagging system with what’s essentially “items on a LAN”, “items where 1Password’s 2FA list is wrong”, etc. - Please give me a keyboard shortcut to create a new login regardless of the currently selected category. I suggest Command-N for “New in current category”, Shift-Command-N for “New login”, and Option-Command-N for “Open new item type menu”, but would settle for anything that consistently creates a new login with one shortcut. - Please change the popup password generator to match the 1Password Mini password generator: include 1+ numbers and symbols when checked, not a preset number, and omit symbols that are usually rejected by websites, because the small entropy gain isn’t worth the time spent manually editing passwords. - Please revise your passphrase word list, or at least provide an alternate list. It’s hard to remember words nobody knows. (That’s the use case for passphrases, passwords that sometimes need to be spoken or remembered, for the rest I’ll use a higher entropy password.) I know using only common words would be less secure, but there’s a better balance to be struck; Bitwarden’s list is excellent. - Please work to reduce full UI refreshes. I keep losing keystrokes to them. - Please give me configurable URL matching rules like Bitwarden. Without them there will always be some false positive page matches that I need to arrow through every time I use that domain. I love you guys. I’m willing to pay your price for great software. But these annoyances keep piling up and I feel that the price warrants more care.
- alexandrerond 6y agoIt was impossible to get an export (csv or 1p format dump) on a Linux system. Only way was to use CLI to request each entry individually, parse that format (different from others), figure out custom fields etc. Not fun for many 100s of passwords.
- bitigchi 6y agoUse pass: https://www.passwordstore.org https://www.passwordstore.org
- torgard 6y agoFantastic! I'm really looking forward to trying this out. Great to see them put effort into supporting Linux.
- rmorey 6y agoI have been a very happy 1Password user for several years now, finally switching to it when they released 1PX on Linux. I now use macOS, but this is still great to see! Don't let the haters get you down, keep up the great work