Selfhosted
A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.
Rules:
-
Be civil: we're here to support and learn from one another. Insults won't be tolerated. Flame wars are frowned upon.
-
No spam posting.
-
Posts have to be centered around self-hosting. There are other communities for discussing hardware or home computing. If it's not obvious why your post topic revolves around selfhosting, please include details to make it clear.
-
Don't duplicate the full text of your blog or github here. Just post the link for folks to click.
-
Submission headline should match the article title (don’t cherry-pick information from the title to fit your agenda).
-
No trolling.
-
No low-effort posts. This is subjective and will largely be determined by the community member reports.
Resources:
- selfh.st Newsletter and index of selfhosted software and apps
- awesome-selfhosted software
- awesome-sysadmin resources
- Self-Hosted Podcast from Jupiter Broadcasting
Any issues on the community? Report it using the report flag.
Questions? DM the mods!
view the rest of the comments
I don't trust my setup for something like this.
My server and NAS go down in a fire, and I'm not gonna have the key I need to get the backup so I can restore my password manager lol
The nice thing about Bitwarden is that all vaults are locally saved on every device where you access it. So even if your NAS, server and whole house burn in fire you still have all the keys on your phone.
That's good, if at least one surviving synced device survives then you still have access. Still a big "if" in a catastrophe, but a much better proposition.
What is the data retention policy for the local vaults?
That is true for a single person - but in a multiple person household that would mean that everyone needs to carry a copy of their with them. So this mechanism is no replacement for a solid backup of the server somewhere else…
You are missing the point; the original comment was about not having the keys to restore the (I assume) encrypted backups. With Bitwarden you can still access the vault even if the server is offline/lost. It's not a replacement for a backup strategy.
No? Everyone who uses the bitwarden app or browser extention has a local copy of the database that is used for read operations. You can't disable this so everyone who uses bitwarden can still use their passwords even if the server dies.
Unless your phone also burns down together with the house, which is not unlikely
The point: .
You
What do you mean? If my house burns down the chance all my devices went up in flames is high. This is one of the reasons I'm not self hosting Bitwarden.
If you don't do off-site backups there's no recovery from your house burning down. Which self hosted alternative will survive without backups from all your devices burning? You are completely missing the point.
You'd need a good backup somewhere. But that's the same for bitwarden cloud. You cannot just assume it will never have issues
No, my problem is that I need my password manager to access my backup, and I need my backup to get my password manager.
That is a bad setup then. Not an issue of the software or hardware.
Thanks for your useful and actionable feedback that clearly explains the problem. So trustworthy /s
Seriously though, this is what break glass accounts are for. Create an account that can access your backups (preferably only the backup system) with a really long password and keep it offline in a safe place. Like a safe. Set up alerting if the break glass account ever gets used.
I had the same issue which is by I don't self host bitwarden. If my house burned down the same day Bitwarden had a catastrophic outage I'd probably have issues but that seems unlikely.
Probably worth storing the key in another place as well, like keepass on your phone or just print it out on paper and store it.
I can't say I particularly trust even Bitwarden's servers. I export Bitwarden passwords to a spreadsheet once a month and rsync it along with SSH keys to a USB key. Takes a couple minutes.