<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Security and emergency strategy]]></title><description><![CDATA[<p dir="auto">I am currently contemplating about a good security and emergency strategy and maybe others here have thought about this too, so maybe someone has some deeper thoughts about this:</p>
<p dir="auto">I am currently running two cloudron instances, "private" and "business". Only I have access to "business" but it gives me the opportunity to split apps between two instances in case one fails.</p>
<p dir="auto">However, I am generally willing and interested to host both passwords via vaultwarden and also 2-factor-authentication on Cloudron, possibly on separate instances. However, I need to secure my vaultwarden instance with 2FA, obviously.</p>
<p dir="auto">Now I am thinking, let's say worst case, both my laptop and my mobile phone get stolen. How do I get access now to my server and my data, considering that I cannot get access to my passwords or to confirm 2FA on a separate device?</p>
<p dir="auto">Probably I need some sort of lifeline, but I am not really sure how this would look like, considering both security and practicability.</p>
]]></description><link>https://forum.cloudron.io/topic/11994/security-and-emergency-strategy</link><generator>RSS for Node</generator><lastBuildDate>Tue, 21 Apr 2026 19:30:39 GMT</lastBuildDate><atom:link href="https://forum.cloudron.io/topic/11994.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 27 Jun 2024 15:49:08 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Security and emergency strategy on Fri, 28 Jun 2024 08:34:19 GMT]]></title><description><![CDATA[<p dir="auto">Vaultwarden/Bitwarden actually has a few mechanisms for that.</p>
<p dir="auto">For the second factor you will get a "recovery code" that they ask you to store in a secure location. This is a letter and numbers string that can be used to override all configured second factors.</p>
<p dir="auto">If you have lost your master password, or you're simply no longer around to give it to someone else then Vaultwarden has a feature called "emergency access" where you can designate another user to gain access to your safe after a configurable wait time (so you could still object and prevent misuse). <a href="https://bitwarden.com/help/emergency-access/" target="_blank" rel="noopener noreferrer nofollow ugc">https://bitwarden.com/help/emergency-access/</a></p>
<p dir="auto">For me personally I have added my wife as my emergency contact, but since I know that she is not really a technical minded person I also have a backup yubikey at a secure location that has my master password stored as a static key and the above recovery key written down next to it.</p>
]]></description><link>https://forum.cloudron.io/post/90530</link><guid isPermaLink="true">https://forum.cloudron.io/post/90530</guid><dc:creator><![CDATA[fbartels]]></dc:creator><pubDate>Fri, 28 Jun 2024 08:34:19 GMT</pubDate></item><item><title><![CDATA[Reply to Security and emergency strategy on Thu, 27 Jun 2024 23:01:34 GMT]]></title><description><![CDATA[<p dir="auto">I use a Yubikey to secure my VW. I had trouble logging in on a new device this week and thought it was Yubikey related, turned out to be date/time issue on the local machine. VW backups up to an encrypted S3 bucket (at Backblaze). It's recommended to have at least two Yubikeys (one active, one backup). The only con is the initial investment cost as they're a bit pricey. I got mine during a Cloudflare promo.</p>
]]></description><link>https://forum.cloudron.io/post/90507</link><guid isPermaLink="true">https://forum.cloudron.io/post/90507</guid><dc:creator><![CDATA[humpty]]></dc:creator><pubDate>Thu, 27 Jun 2024 23:01:34 GMT</pubDate></item><item><title><![CDATA[Reply to Security and emergency strategy on Thu, 27 Jun 2024 17:36:12 GMT]]></title><description><![CDATA[<p dir="auto">I’m logged into Bitwarden at work and keep Bitwarden backups (via bitwarden-cli) there as well (password protected).</p>
]]></description><link>https://forum.cloudron.io/post/90495</link><guid isPermaLink="true">https://forum.cloudron.io/post/90495</guid><dc:creator><![CDATA[necrevistonnezr]]></dc:creator><pubDate>Thu, 27 Jun 2024 17:36:12 GMT</pubDate></item></channel></rss>