3 ms·
> "Point your domain's DNS to server" A lot of advanced users don't have servers, and they don't want to expose their desktop or an appliance to the internet.
by jbm 2y ago
> "Point your domain's DNS to server"
A lot of advanced users don't have servers, and they don't want to expose their desktop or an appliance to the internet. Moreover, are you going to trust your precious password information on a leased server run by Linode or whoever?
On topic, I use Bitwarden, but their changes to the iOS application are very annoying. I've been logged out repeatedly (at least once per week) and it keeps requiring me to input my password, without any way to reduce the overhead. It's so frustrating that I've been considering switching to the native iOS password app; if it was available on Linux, I would bid farewell to Bitwarden.
- godelski 2y agoI had issues with this (new iPhone user and ... well... I'm having fun...) A problem I had was my encryption settings. Definitely I am a bit overkill[0], but this might be worth checking. I use Argon2 and tried to find the max settings I could use on my iPhone16. Make sure the KDF memory is lower than 256MB. Keep iterations low (<=10) and parallelism not too high (4 seems about right). So do something like 128MB, 8 iterations, 4 parallel and you'll be good. If this reddit post is anywhere near accurate, should cost in the tens of millions of dollars to crack your master passphrase[1]. But users there also are saying they can get higher settings so YMMV. (BTW, these settings should be changed from the bitwarden website) [0] Philosophy has always been: make it as secure as possible without being meaningfully impactful. Which is always above the standard security levels. [1] https://www.reddit.com/r/Bitwarden/comments/1167rwm/pbkdf2_vs_argon2_finally_some_hard_numbers/ https://www.reddit.com/r/Bitwarden/comments/1167rwm/pbkdf2_v...