<?xml version="1.0" encoding="utf-8" standalone="yes"?> <?xml-stylesheet href="https://maik.io/pretty-feed-v3.xsl" type="text/xsl"?>

<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>timedpasswords on maik.io</title>
    <link>https://maik.io/tags/timedpasswords/</link>
    <description>Recent content in timedpasswords on maik.io</description>
    <generator>maik.io</generator>
    <language>de-de</language>
    <lastBuildDate>Mon, 24 Feb 2025 06:33:00 +0100</lastBuildDate>
    <atom:link href="https://maik.io/tags/timedpasswords/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Separate database</title>
      <link>https://maik.io/notes/2025-02-24-separate-database/</link>
      <pubDate>Mon, 24 Feb 2025 06:33:00 +0100</pubDate>
      <guid>https://maik.io/notes/2025-02-24-separate-database/</guid>
      <description>&lt;p&gt;Die Entwickler von KeePassXC raten davon ab, Einmalpasswörter (One-Time Passwords, OTPs) im selben Programm zu speichern, in dem auch Benutzernamen und Passwörter gesichert sind. Bei genauerer Betrachtung leuchtet das ein.&lt;/p&gt;
&lt;p&gt;&lt;a href=&#34;https://keepassxc.org/docs/#faq-security-totp&#34; target=&#34;_blank&#34; &gt;Auszug aus den FAQs von KerPassXC&lt;/a&gt;:&lt;/p&gt;
&lt;blockquote&gt;
&lt;p&gt;KeePassXC allows me to store my TOTP secrets. Doesn’t this undermine any advantage of two-factor authentication?&lt;/p&gt;
&lt;/blockquote&gt;
&lt;blockquote&gt;
&lt;p&gt;Yes. But only if you store them in the same database as your password. We believe that storing both together can still be more secure than not using 2FA at all, but to maximize the security gain from using 2FA, you should always store TOTP secrets in a separate database, secured with a different password, possibly even on a different computer.&lt;/p&gt;</description>
      <content:encoded>
      <![CDATA[<p>Die Entwickler von KeePassXC raten davon ab, Einmalpasswörter (One-Time Passwords, OTPs) im selben Programm zu speichern, in dem auch Benutzernamen und Passwörter gesichert sind. Bei genauerer Betrachtung leuchtet das ein.</p>
<p><a href="https://keepassxc.org/docs/#faq-security-totp" target="_blank" >Auszug aus den FAQs von KerPassXC</a>:</p>
<blockquote>
<p>KeePassXC allows me to store my TOTP secrets. Doesn’t this undermine any advantage of two-factor authentication?</p>
</blockquote>
<blockquote>
<p>Yes. But only if you store them in the same database as your password. We believe that storing both together can still be more secure than not using 2FA at all, but to maximize the security gain from using 2FA, you should always store TOTP secrets in a separate database, secured with a different password, possibly even on a different computer.</p>
</blockquote>
]]>    
      <![CDATA[<br><br><hr><br><small><p>Vielen Dank fürs Lesen! Wenn du Lust auf noch mehr Gedanken, Updates und ab und zu einen Blick hinter die Kulissen hast, folge mir doch gern auf <a href="https://maik.io/mastodon">Mastodon</a> oder <a href="https://maik.io/instagram">Instagram</a>.</p><p>Hast du Fragen oder Feedback? Schreib mir gern eine <a href="https://maik.io/email">E-Mail</a>.</p></small>]]>
      </content:encoded>  
    </item>      
  </channel>
</rss>