bitwarden / desktop

The desktop vault (Windows, macOS, & Linux).
https://bitwarden.com
GNU General Public License v3.0
3.54k stars 401 forks source link

TOTP codes are wrong (imported from 1Password) #100

Closed ralfbiedert closed 6 years ago

ralfbiedert commented 6 years ago

Bitwarden: 1.3.0

I imported a 1pif vault including a number of 2FA / TOTP (otpauth) tokens.

Unfortunately, none of the imported tokens work. You can see how they differ in a side-by-side comparison with 1Password on the same machine:

screen shot 2018-06-16 at 20 02 21

The 1Password one is correct and can be used to log into the remote machine, the Bitwarden one is wrong.

kspearrin commented 6 years ago

What is the value of your Authenticator Key field? Is it a otpauth:// URL? Change to just the key value, not a full URL.

ralfbiedert commented 6 years ago

You are correct, the import was otpauth://totp/.... After changing to just the key value it worked.

Thank you very much for the super swift response!

On a side note, I still think these are 1 - 2 bugs:

No preferences which one is better, but I think right now it's a bit confusing.

kspearrin commented 6 years ago

This will be fixed when we also support otp auth URLs, which is tracked here: https://community.bitwarden.com/t/support-totp-auth-parameters/37