I currently use Authy on my android and my Linux system.

It syncs every new authenticator between my devices but I dont want to trust companies with my security anymore.

I host a nextcloud instance on my homelab. Does anyone know a good FOSS authenticator that can use my nextcloud to sync between Linux and android? Provided that it is available on both of course.

Thanks for any input!

    • Cargon@lemmy.ml
      link
      fedilink
      arrow-up
      1
      ·
      1 year ago

      This is what I used as well (KeePassXC specifically), with Syncthing sharing the .kdbx file across devices.

  • Nils@feddit.de
    link
    fedilink
    arrow-up
    1
    ·
    1 year ago

    I personally use Bitwarden for my 2FA needs. As others mentioned you can self host the server but personally I have no reason not to trust their SaaS solution, especially now that they offer EU hosted servers. If all you want is a basic authenticator app that does only one thing give FreeOTP a try, it’s made my RedHat. You can then sync the applications state.

    • Cralder@feddit.nu
      link
      fedilink
      arrow-up
      1
      ·
      1 year ago

      I use bitwarden for 2FA as well. The only issue I have is that I need another solution as well since I also have 2FA activated on my bitwarden account. You can’t have bitwarden 2FA saved on bitwarden. (Well you can but that’s obviously a bad Idea)

  • Dsklnsadog@lemmy.dbzer0.com
    link
    fedilink
    arrow-up
    1
    ·
    edit-2
    1 year ago

    I’m surprised no one has recommended “2FAS” yet. It’s the open-source alternative. The app is primarily designed for mobile, but they also offer a browser extension that you could install on Linux if you wanted to. Personally, I always try to keep my 2FA apps unsynchronized with a desktop PC.

    Oh, and you can export your secrets at any time. Not like Authy.

      • lemmyvore@feddit.nl
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 year ago

        You can use OTPClient on desktop, it can import Aegis encrypted exports.

        It’s what I do, my TOTP codes originate on the phone because I scan the QR codes with it, but Aegis is set to export a backup each time something changes.

        A sync app (FolderSync) runs every night and gets the export to my server, where it gets picked up for offline backups.

        I load the latest export in OTPClient only as needed, when I run into a 2fa which is not there.

        Both Aegis and OTPClient can be set to ask for password each time you open them.