Bitcoin Forum
December 14, 2024, 09:57:44 PM *
News: Latest Bitcoin Core release: 28.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: [TUTORIAL] Generate 2FA with Keepass (instead of Authenticator App)  (Read 665 times)
bct_ail (OP)
Legendary
*
Offline Offline

Activity: 2688
Merit: 2229

https://t1p.de/6ghrf


View Profile WWW
May 12, 2020, 08:35:50 PM
Merited by dbshck (8), LoyceV (6), Quickseller (3), Halab (2), vapourminer (1), JayJuanGee (1), xandry (1), Husna QA (1)
 #1

Tutorial are made for Keepass 2.40, the pictures are from this version too. I am confident this should work with other versions as well, but I cannot guarantee that.

To generate a Time-based One-time Password (TOTP) many uses an Authenticator App. Those Apps are great but you can do that with Keepass as well. So you can use Keepass with an autarkic dedicated PC without Internet connection. Therefore you need KeePass 2.x for Windows, macOS or Linux and the Plugin KeeTrayTOTP.
That plugin is a fork from TrayTOTP, which are not further developed. Github-Download: https://github.com/victor-rds/KeeTrayTOTP/releases. Note: Please beware that you use the right release date which is compatible to keepass. (Example: Keepass V.2.4 was released at September, 10th 2018, so you can use TrayTOTP Version 0.95-Beta)

Save KeetrayTOTP.plgx in Folder plugins from your Keepass-Folder. If you start Keepass it should activate the plugin automatically (if not, Version is incompatible, please refer to my Note.). Activate the plugin (Tools -> Plugins), close Keepass and start it again. You see the help file. You can read it now or later (Tools -> Tray TOTP Plugin)


If you don’t like help files continue reading.

Start to link TOTP to an entry. Make a right click on the entry, choose "Selected Entries" and "Setup TOTP" (Nice gimmick from the plugin is, that QR-Codes can be shown from the entries)


The following window appears. There you can write the Seed, time interval, format and an URL from a Timeserver if you use Keepass with an internet connection.


Click Finish and TOTP is already set up. If you use Keepass with an Internet connection, a right click on the entry and "Copy TOTP" copied the current TOTP in the Clipboard.


A double-click at the entry shows in Advanced the new Field names


These Field names can be shown directly in the entries. To do so, go to "View ", "Configure columns" and check "TOTP Seed", "TOTP Setting" and "TOTP". The entries now have these three new columns.


You can test it with a TOTP Generator. https://totp.danhersam.com/ for example.

You are done. Have fun.
nakamura12
Hero Member
*****
Offline Offline

Activity: 2492
Merit: 682


drop me a dm if interested to rent my PT


View Profile
May 12, 2020, 09:13:14 PM
 #2

I didn't know that there is a keepass plugin for 2FA. Nice guide. I'll will try this one and see if it works perfectly fine. Thanks for sharing this womderful guide. This will be useful when I don't have my phone near with me when you need a OTP for your account on a site when you log in.

hd49728
Legendary
*
Offline Offline

Activity: 2310
Merit: 1139



View Profile
May 13, 2020, 03:14:51 AM
Merited by LoyceV (6), vapourminer (1), JayJuanGee (1)
 #3

Keepass is good but you can also use Aegis Authenticator, a decent alternative to Google Authenticator and Authy.
Keepass is so strong to generate and manage passwords: https://bitcointalk.org/index.php?topic=5132378.0.
Password Safe is another one, and it has apps for Android & iOS devices.

▄▄███████████████████▄▄
▄███████████████████████▄
████████▀░░░░░░░▀████████
███████░░░░░░░░░░░███████
███████░░░░░░░░░░░███████
██████▀░░░░░░░░░░░▀██████
██████▄░░░░░▄███▄░▄██████
██████████▀▀█████████████
████▀▄██▀░░░░▀▀▀░▀██▄▀███
███░░▀░░░░░░░░░░░░░▀░░███
████▄▄░░░░▄███▄░░░░▄▄████
▀███████████████████████▀
▀▀███████████████████▀▀
 
 CHIPS.GG 
▄▄███████▄▄
▄████▀▀▀▀▀▀▀████▄
███▀░▄░▀▀▀▀▀░▄░▀███
▄███
░▄▀░░░░░░░░░▀▄░███▄
▄███░▄░░░▄█████▄░░░▄░███▄
███░▄▀░░░███████░░░▀▄░███
███░█░░░▀▀▀▀▀░░░▀░░░█░███
███░▀▄░▄▀░▄██▄▄░▀▄░▄▀░██
▀███
░▀░▀▄██▀░▀██▄▀░▀░██▀
▀███
░▀▄░░░░░░░░░▄▀░██▀
▀███▄
░▀░▄▄▄▄▄░▀░▄███▀
▀█
███▄▄▄▄▄▄▄████▀
█████████████████████████
▄▄███████▄▄
███
████████████▄
▄█▀▀▀▄
█████████▄▀▀▀█▄
▄██████▀▄▄▄▄▄▀██████▄
▄█████████████▄████████▄
████████▄███████▄████████
█████▄█████████▄██████
██▄▄▀▀▀▀█████▀▀▀▀▄▄██
▀█████████▀▀███████████▀
▀███████████████████▀
██████████████████
▀████▄███▄▄
████▀
████████████████████████
3000+
UNIQUE
GAMES
|
12+
CURRENCIES
ACCEPTED
|
VIP
REWARD
PROGRAM
 
 
  Play Now  
bct_ail (OP)
Legendary
*
Offline Offline

Activity: 2688
Merit: 2229

https://t1p.de/6ghrf


View Profile WWW
June 10, 2020, 03:05:08 PM
 #4

Keepass is good but you can also use ...
I can recommend some too. But since this thread is not about authenticators, it doesn't matter what other systems there are. 
The point here is not to use an Authenticator app for the smartphone.

If Password Safe also offers the possibility to generate 2FA, then you are free to create a tutorial about that too. I would be happy about that.
Greatchu
Member
**
Offline Offline

Activity: 490
Merit: 10


View Profile
June 11, 2020, 10:28:37 AM
 #5

With news surrounding hacks and theft on PC the last thing I would want to use is an add-on or software for all my exchanges 2FA pass or codes, nope never going to happen, I'm better off with Authy or Google Auth app on playstore

bob123
Legendary
*
Offline Offline

Activity: 1624
Merit: 2504



View Profile WWW
June 11, 2020, 10:47:42 AM
Merited by LoyceV (6), vapourminer (1)
 #6

With news surrounding hacks and theft on PC the last thing I would want to use is an add-on or software for all my exchanges 2FA pass or codes, nope never going to happen, I'm better off with Authy or Google Auth app on playstore

The idea behind 2FA is that you actually use a second device.

If you are using your desktop to access the exchange etc., storing the 2FA on the desktop system absolutely defeats the purpose. -> Use your mobile instead.
If you however are using your mobile (for whatever reason) to always access the exchange etc, storing the 2FA on your mobile also completely defeats the purpose -> Store the 2FA on your desktop system.


A generic answer like "i'm better off with ... on my smartphone" is wrong. It always depends on the context.

bct_ail (OP)
Legendary
*
Offline Offline

Activity: 2688
Merit: 2229

https://t1p.de/6ghrf


View Profile WWW
June 11, 2020, 11:04:33 AM
 #7

With news surrounding hacks and theft on PC the last thing I would want to use is an add-on or software for all my exchanges 2FA pass or codes, nope never going to happen, I'm better off with Authy or Google Auth app on playstore

Than use a PC or laptop without internet connection which I have mentioned in my Tutorial
you can use Keepass with an autarkic dedicated PC without Internet connection.

The other important things has already mentioned by bob123.
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!