One more step to unhitching from Google…

Right now the only option I see in F-Droid is Aegis.

I’m not sure what to actually look for side from checking for unexpected permissions and reasonably frequent updates.

Hopefully something I can sync with a GNOME app…

  • Jayjader@jlai.lu
    link
    fedilink
    English
    arrow-up
    2
    ·
    2 hours ago

    I use pass for my passwords, and it has an otp extension that I’ve been using more and more. I used to use aegis but I have needed to switch phones one too many times without having access to the previous phone to be comfortable with phones for 2fa.

    Of course, this isn’t as secure as a truly separate OTP solution, but it’s still better than no OTP/2FA. And I can easily enough back up and restore my 2fa access over the internet, even on a new computer (albeit I need to also backup a PGP key that can decrypt the password store to truly be portable).

  • John Colagioia@lemmy.sdf.org
    link
    fedilink
    English
    arrow-up
    1
    ·
    1 hour ago

    I primarily use GNOME Authenticator, but after an inopportune crash, I now also run 2FAuth on my home server as a backup, and now just hope that I remember to do the export/import dance going forward.

    • ikidd@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      50 minutes ago

      Yah, I can’t see a point to have another app/extension when Bitwarden has it built in, and it’s a great password manager.

        • ikidd@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          27 minutes ago

          Right under Password in the edit screen of an item: Authenticator Key. You put in the auth key the target site provides you when you enable TOTP and it will start generating timed tokens. Usually you’ll also get a one-time pad of backup keys, I usually toss those in the Notes of the edit screen there as well in case something goes wrong.

  • pjusk@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    1
    ·
    1 hour ago

    Woahhh defo not enough love for Ente Auth in tgese comments. Highly recommend! Its got a beautiful and intuitive UI, completely open-source and is back by super active devs and community 💚

  • zingo@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    8
    arrow-down
    1
    ·
    4 hours ago

    Aegis.

    I like the auto backup feature (encrypted) . Then the backup is synced to computer via Syncthing.

    Set and forget setup.

  • Curious Canid@lemmy.ca
    link
    fedilink
    English
    arrow-up
    14
    ·
    7 hours ago

    I’ve been using Aegis for several years now without any problems. It replaced the Google Authenticator seamlessly.

  • Redex@lemmy.world
    link
    fedilink
    English
    arrow-up
    3
    ·
    edit-2
    10 hours ago

    I personally use Ente Auth and quite like it, don’t use syncing and save an encrypted copy to my PC. I really like that you can see what the next code will be.

  • sbird@sopuli.xyz
    link
    fedilink
    English
    arrow-up
    9
    ·
    13 hours ago

    Aegis seems like a pretty good 2FA app on Android from what I’ve heard. Personally, I use Ente Auth as sync is very helpful when I don’t have my phone nearby (you can either use the desktop app or use your browser, both work). Don’t think you can self-host sync, though I might be wrong. Ente Auth also works without sync, so there’s that.

    I would not suggest using a password manager’s 2FA integration (e.g. Bitwarden, I think Proton Pass has one if you use that?) as it kind of defeats the point of 2FA, since if someone got access to your password manager, they would also get the 2FA codes.