KeePassXC. We have an enterprise secret management product, but I don't think we're using this functionality yet.
Sysadmin
A community dedicated to the profession of IT Systems Administration
No generic Lemmy issue posts please! Posts about Lemmy belong in one of these communities:
[email protected]
[email protected]
[email protected]
[email protected]
I don't understand the extreme love for Bitwarden. I understand it's useful, but I want as few things with a webui and server instance as possible, especially passwords, the thing that should be most secure.
KeePass, vault saved into the user's One Drive synced folder is sufficient. It's secure, offline, and automatically makes backups. And migrates to the new system just by logging into One Drive.
Bitwarden and others worry me because they have a lot of exposed attack surface, comparatively, and require much more maintenance to keep secure imo. I don't want to expose any of that to a portal or anything.
That said, I don't hate Bitwarden, the bitwarden/vault warden software is incredibly solid for what it is.
Personally, 1Password, but their enshittifaction is serious.
Work, Password Safe. But we’re moving to CyberArk.
Why do companies name their password safe "Password Safe"? Thats about as relevant as naming a phone "Phone".
more dev than sysop, but: bitwarden
We use Netwrix Password Secure at work. They just announced this week they have found a RCE vulnerability in their software...
We have a KeePass DB as a fallback but mostly use a PAM solution to manage server access.
We use PasswordState at work and KeePassXC for personal passwords.