Not sure I understand why you’d want to self host a password manager. Bitwarden has never been breached AFAIK. How is it better or safer to keep if self hosted?

  • wryterra ( wryterra@alien.top ) B
    link
    fedilink
    English
    arrow-up
    1
    ·
    3 years ago

    Personally I stick with Bitwarden because one thing I want to stay around if I nuke (accidentally, or deliberately) my homelab is my password manager!

    • Vogete ( Vogete@alien.top ) B
      link
      fedilink
      English
      arrow-up
      1
      ·
      3 years ago

      I agree. I trust Bitwarden more to host it than me. I can have too many things going wrong. With that being said, I do agree with the security implications with centralized Bitwarden, but I’d rather have that risk than to screw myself over due to my own incompetence.

      Someone a while ago mentioned on this sub: The best thing to host yourself is a password manager, and the worst thing to host yourself is a password manager.

    • sevlonbhoi1 ( sevlonbhoi1@alien.top ) B
      link
      fedilink
      English
      arrow-up
      1
      ·
      3 years ago

      every device you use bitwarden has a local copy of all passwords. Even if you nuke your server, you still will have access to your passwords.

      The server is just use to sync changes. if there is no sync needed, you don’t need the server.

    • tech2but1 ( tech2but1@alien.top ) B
      link
      fedilink
      English
      arrow-up
      1
      ·
      3 years ago

      Whilst I have pretty much everything backed up where I can the only things that I have actually got 100% tried and tested recoverable is Hyper Backup (as it encrypts my B2 backup) and within that is my Vaultwarden backup. So even if my lab was destroyed tomorrow I could get to my B2 backup and recover the Vaultwarden backup and stand it up on any machine I could get access to.

      I am not very good at the local backup thing but I do also have an unencrypted backup that is run less regularly that I could easily grab the Vaultwarden files from.

      In addition to that the vault is accessible locally if it can’t communicate with the server anyway.