Best way to secure authenticator app itself?

I’m using Ente Photos and Authenticator, both use the same authenticator code (I initially set it up for photos). Now when i try to log into the auth website it asks for 2fa code which is stored in auth website itself. I have my account logged in multiple places so i can get around that but I’m afraid of getting locked out at some point. How can i secure auth other way? Is there any better approach to this?

You can also put your Ente 2FA TOTP key in another 2FA app, by itself. Like Aegis if you are using Android.

I had your issue recently as well. I set up 2FA for Ente Photos and then my Ente Auth needed my TOTP when logging in.

1 Like

You also could use yubikey or something like it

I use Aegis, and when I’m setting new 2FA credential, I add secret to KeePassXC database (separate from one I use for passwords), so I have it at 2 places (actually on each device I use), plus backup.
It means you have to keep and maintain 2 databases, but quantity is quite small for me (20-25 services), and it’s not I’m changing it often (most likely never)

1 Like

Passkey?

Thank you. I’ll save a encrypted Backup on cloud and in hard drive

1 Like

Hmm i noticed Ente did added passkey support recently. I’ll look into it

The best way is to have it in an offline setting.

air gapped pass key :thinking: