### What do you use to manage psswords?

`pass` is officially shit on mobile. Gave up trying to figure out what ridiculously specific combination of pgp+ssh key types work with iOS. The Android app is horribly outdated.

Self-hosted Vaultwarden and Bitwarden look like you need 9 IT certifications just to install.

Reply to this note

Please Login to reply.

Discussion

1Passsword for over a decade.

Yeah, I wanted to go the self-hosting route, but the current options are too burdensome; way too much administrative responsibility. So now I am waffling between 1Pass and Bitwarden.

I’ve tried BitWarden. The UI feels about 15 years behind 1Password.

Keepass is also good

Keepass is good, but it is not self-hosted for cross-device password management, unless I want to set up WebDav and hope the implementations are all well-written across multiple platforms.

I was with LastPass for over a decade. Made the switch to Proton Pass and I like it. Unlimited aliases means no one gets my real email except friends and family. Needs a CLI though. Would have preferred self-hosted but arrived at same conclusion you did.

...and VaultWarden on umbrel was misery.

It’s a bit janky, but it works if you pay for ten years at a time and stuff

In proper architecture

I selfhosted on an I9 32 gb ram for 4 years no complaints but had to switch

Vaultwarden using docker. The hardest thing is setting up https, but it mostly just works out of the box with BitWarden apps. You also need to make sure you keep backups of the data folder.

Now I have it running as a tailscale service, which is the easiest solution to the https problem.

Can you share your dockerfile and reverse proxy configuration, and tell me how the DNS setup works?

SecureSafe was my app of choice before switching to self hosted Vaultwarden.

SecureSafe worked great. And can integrate well into all platforms and browsers. Also had an inheritance protocol included,b which I now miss.

Vaultwarden isn't as functional but is very easy to use if running your own @Start9 machine.

I also think ProtonPass is worth checking out.

KeePass. Screw the rest. It’s open source and can be used locally.

Keepass and Syncthing. Fully FLOSS.

Vaultwarden is extremely easy to setup on a VPS and access on all your devices.

tattoos

Bitwarden/Vaultwarden is the way to go, hands down. For SSH keys on iOS, I just use the built-in key manager on the SSH app I like best (Secure Shellfish, which is fantastic), and in the off chance that I have the need to use any of my PGP keys for anything while on iOS I'll just open up this basic PGPro app or use Keybase.

As far as self-hosting Bitwarden goes, the most absolutely dead simple method I know of, the one that I recommend to newbies and people who don't wanna be bothered with server maintenance BS, is to first install Cloudron (cloudron.io) on a VPS & then install Vaultwarden via Cloudron. For the particularly technically challenged, this can all be done entirely within the web browser if desired, as providers like Vultr and DigitalOcean among others allow for a one-click install/setup of Cloudron on a provisioned VPS instance, and then you can install Vaultwarden via the browser in Cloudron.

can send you a docker compose for vaultwarden plus let's encrypt if you want

Yes please. Might as well. I'm going to have to figure how how all that translates to nixos config