this post was submitted on 10 Aug 2024
12 points (100.0% liked)

Proton

5313 readers
5 users here now

Empowering you to choose a better internet where privacy is the default. Protect yourself online with Proton Mail, Proton VPN, Proton Calendar, Proton Drive. Proton Pass and SimpleLogin.

Proton Mail is the world's largest secure email provider. Swiss, end-to-end encrypted, private, and free.

Proton VPN is the world’s only open-source, publicly audited, unlimited and free VPN. Swiss-based, no-ads, and no-logs.

Proton Calendar is the world's first end-to-end encrypted calendar that allows you to keep your life private.

Proton Drive is a free end-to-end encrypted cloud storage that allows you to securely backup and share your files. It's open source, publicly audited, and Swiss-based.

Proton Pass Proton Pass is a free and open-source password manager which brings a higher level of security with rigorous end-to-end encryption of all data (including usernames, URLs, notes, and more) and email alias support.

SimpleLogin lets you send and receive emails anonymously via easily-generated unique email aliases.

founded 1 year ago
MODERATORS
 

cross-posted from: https://lemmy.ml/post/18959419

I am alone... or not? I don't know if it's a bug just for me or not... but anyone already have issues with TOP using ProtonPass?

Currently I can't use TOTP codes generated from ProtonPass on wesites like Lemmy.ml, Infomaniak, my CheckMK instance, and few others...

I put them on Proton Pass and Aegis, 'cause I don't want to put my Proton account 2FA in Proton Pass for security. So as I'm using Aegis, I put all of them into it too. But Proton TOTP code results as erros and Aegis one (which are differents) are ok... I was thinking about SHA256 and SHA1 but don't seems to be the reason...

Thanks and if your are in the case, don't worry... You're not alone!

top 3 comments
sorted by: hot top controversial new old
[–] darkham@lemmy.ml 1 points 5 days ago

Solved, it was a datetime error... timedatectl set-ntp true resolved my problem.

[–] EmperorHenry@infosec.pub 1 points 3 months ago (1 children)

I started using Aegis as soon as I saw the update for the google authenticator that "securely stores" my authentication tokens....in google's own severs...that get hacked all the time.

Don't use proton pass to store your 2FA tokens, use something like Aegis for 2FA tokens instead, and be sure to password protect it with a password that you DON'T store inside of proton pass

[–] darkham@lemmy.ml 1 points 3 months ago

As said I already use Aegis, but I want to live without my phone x) and I'm ok with security issues to put passwords and totp at the same place.