location: Diff for "PasswordManagementTool"

Institute of Mathematics - PublicMathWiki:

Differences between revisions 4 and 11 (spanning 7 versions)
Revision 4 as of 2021-02-04 14:29:39
Size: 737
Editor: eseide
Comment:
Revision 11 as of 2024-08-29 12:09:49
Size: 1692
Editor: crose
Comment:
Deletions are marked like this. Additions are marked like this.
Line 1: Line 1:
## page was renamed from PasswordTool
= Password Management Tool =
 * There are a lot of tools which try to help you organize your passwords.
 * We chose '''keepassx'''' - http://www.keepassx.org/
  * It's available for Linux and Windows.
  * The database is the same for Linux and Windows - you can use the same in both worlds.
= Password Management =
Line 8: Line 3:
= Installation =
 * Thinlinc: already installed.
 * mathpwt1 / mathpwt4: will be installed soon.
 * Ubuntu general: `sudo apt-get install keepassx`
 * Windows: download from the homepage.
== Important advises ==
Line 14: Line 5:
= Use =
 * If you use only one database: keepassx will remember your last used database.
 * If you use different databases: specify the db file as argument on the command line or select it via the GUI.
 * To save your credentials and other impartant data, use [[keepassx]].
 * Use different passwords for your online accounts.
 * Whenever possible, activate multi factor authentication (MFA) - even if this is pain at the beginning, as soon as you have been hacked, you will change your mind.
 * Save your passwords in a secure way (not in .docx or .xlsx or whatever).
 * Take care that you have access to your personal credentials, even if there is no internet available.

== FAQ ==

 * Q: Why different passwords?

   * A: If a hacker get's your password, the first thing he will do is to try the capured password on all major online services (gmail, whatsapp, spotify, ...)

 * Q: Should I use an online password service like lastpass, 1password, ...

   * That's your decision. Some of them have been hacked already ([[https://www.heise.de/news/Passwortmanager-LastPass-Hacker-scheinen-Kennworttresore-zu-knacken-9300583.html|Lastpass hacked]])

 * Q: Is it ok to save my passwords in the browser?

   * A: This is a personal decision and no clear yes/no. You definetly should use a strong master password.

 * Q: Is it ok to Mac OS X Keychain or Microsoft Windows Credential Manager?

   * A: This is fine with one added requirement: you should have an offline backup! Just imagine your Apple ID or Microsoft account will be locked by Apple or Microsoft! You will not be the first person and it is really really hard to get the account back ([[https://www.heise.de/select/ct/2022/24/2227209284720057373|Microsoft sperrt Account]])

 * Q: What is your advice to manage passwords?

   * A: Use [[keepassx]].

Password Management

Important advises

  • To save your credentials and other impartant data, use keepassx.

  • Use different passwords for your online accounts.
  • Whenever possible, activate multi factor authentication (MFA) - even if this is pain at the beginning, as soon as you have been hacked, you will change your mind.
  • Save your passwords in a secure way (not in .docx or .xlsx or whatever).
  • Take care that you have access to your personal credentials, even if there is no internet available.

FAQ

  • Q: Why different passwords?
    • A: If a hacker get's your password, the first thing he will do is to try the capured password on all major online services (gmail, whatsapp, spotify, ...)
  • Q: Should I use an online password service like lastpass, 1password, ...
    • That's your decision. Some of them have been hacked already (Lastpass hacked)

  • Q: Is it ok to save my passwords in the browser?
    • A: This is a personal decision and no clear yes/no. You definetly should use a strong master password.
  • Q: Is it ok to Mac OS X Keychain or Microsoft Windows Credential Manager?
    • A: This is fine with one added requirement: you should have an offline backup! Just imagine your Apple ID or Microsoft account will be locked by Apple or Microsoft! You will not be the first person and it is really really hard to get the account back (Microsoft sperrt Account)

  • Q: What is your advice to manage passwords?

PublicMathWiki: PasswordManagementTool (last edited 2025-03-30 08:21:09 by crose)