Windows based authenticator apps - alternative to Authy?


I use 1Password to keep track of my passwords. From what I understand, it also has built-in features for authentication.
 

My Computer

System One

  • OS
    Windows 11
    Computer type
    Laptop
    Manufacturer/Model
    HP
I came here searching for the same solution, and I think I may have found it.

I use Aegis for TOTP on my Andoid phone, and keep the TOTP keys stored in a keepass database.

It turns out, the Windows Keepass app, KeepassXC, has a TOTP generator. You right-click on a db entry, select <TOTP>Set up TOTP>, paste in the key. Then return and do the same with <TOTP>Show TOTP> to get the code. Or, you can even select <TOTP>Show QR code> to install it on another authenticator app. And, since you have the secret key stored, you have a backup in case you lose your phone.

Here's some more info: In-depth tutorial: How to set up 2FA TOTP with KeepassXC, Aegis and Authy.

Does anyone see any downside here?
 

My Computer

System One

  • OS
    Windows 11
    Computer type
    PC/Desktop
I use an authenticator that syncs between all my devices - Windows and Android. It fills in username, password and 2FA / TOTP.

It's also Mac/iOS compatible but I don't own any of those.

Roboform is free on one device and $2.49 a month for unlimited devices. As it is also an excellent password manager it's good value.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro 24H2 26100.2894
    Computer type
    Laptop
    Manufacturer/Model
    Acer Swift SF114-34
    CPU
    Pentium Silver N6000 1.10GHz
    Memory
    4GB
    Screen Resolution
    1920 x 1080
    Hard Drives
    SSD
    Cooling
    fanless
    Internet Speed
    150 Mbps
    Browser
    Brave
    Antivirus
    Webroot Secure Anywhere
    Other Info
    System 3

    ASUS T100TA Transformer
    Processor Intel Atom Z3740 @ 1.33GHz
    Installed RAM 2.00 GB (1.89 GB usable)
    System type 32-bit operating system, x64-based processor

    Edition Windows 10 Home
    Version 22H2 build 19045.3570
  • Operating System
    Windows 11 Pro 23H2 22631.2506
    Computer type
    Laptop
    Manufacturer/Model
    HP Mini 210-1090NR PC (bought in late 2009!)
    CPU
    Atom N450 1.66GHz
    Memory
    2GB
    Browser
    Brave
    Antivirus
    Webroot
Just seen this. I've been using WinAuth for several years - and you can backup and clone securely!

You can use an encryption key to create backups (or if you prefer, a password) which is a good way to make sure you don't risk losing all the secret codes you need - and then save this to a cloud storage location. It's all within your control (and I use a PGP/GPG key created using Kleopatra etc).

If you export locally in plain text, you can see it saves base64 encoded icons as well, which means when you install on another device it comes with the icons. After secure transfer, you can then import the export into your phone OTP generator (I use Aegis now) on Android. It doesn't bring in the icons - I'm trying to work out if I could do that ... Aegis handles images slightly differently.

My only hesitation with WinAuth is that it hasn't been updated for a long while. FWIW I also wish it had a search function in it.
Thanks for the info: Have a couple of questions on WinAuth.
1. At another site I read the below paste (what exactly does this mean?)
WinAuth doesn’t allow users to produce two-step verification codes for all the accounts. You can do so with these accounts ONLY
->Google, Microsoft, Net, Guild Wars 2, Glyph/Trion, Steam.

2. Are what part of the process are you using the PGP/GPG key ?
 

My Computer

System One

  • OS
    Windows 10 & Windows 11
    Computer type
    Laptop
    Manufacturer/Model
    HP 17" Laptop, Acer Aspire 5
I came here searching for the same solution, and I think I may have found it.

I use Aegis for TOTP on my Andoid phone, and keep the TOTP keys stored in a keepass database.

It turns out, the Windows Keepass app, KeepassXC, has a TOTP generator. You right-click on a db entry, select <TOTP>Set up TOTP>, paste in the key. Then return and do the same with <TOTP>Show TOTP> to get the code. Or, you can even select <TOTP>Show QR code> to install it on another authenticator app. And, since you have the secret key stored, you have a backup in case you lose your phone.

Here's some more info: In-depth tutorial: How to set up 2FA TOTP with KeepassXC, Aegis and Authy.

Does anyone see any downside here?
Thanks for the info. I already use these for Pswd Managers, think I will look into this. As you're probably are doing I'd think it prudent to set the settings to run more than one instance of KeePass and have separate DB file and Pswd for the TOTP. I surmise you'd have to manually update the Accts to or from your phone. Other than that do regular mirror sync backups daily to a USB drive or maybe look into storing encrypted backup to secure end to end encrypted storage site.
 

My Computer

System One

  • OS
    Windows 10 & Windows 11
    Computer type
    Laptop
    Manufacturer/Model
    HP 17" Laptop, Acer Aspire 5
WinAuth doesn’t allow users to produce two-step verification codes for all the accounts. You can do so with these accounts ONLY
->Google, Microsoft, Net, Guild Wars 2, Glyph/Trion, Steam.
I don't know what that means, but I am successfully using WinAuth 3.5.1 (.NET 3.5) (2016-06-07) for 2Fa in ElevenForum and in another (Dutch) forum.
No other purposes needed until now, so I did no tests with other apps.
 

My Computer

System One

  • OS
    Windows 11 Pro 23H2 22631.4751
    Computer type
    PC/Desktop
    Manufacturer/Model
    Build by vendor to my specs
    CPU
    AMD Ryzen 7 5700G
    Motherboard
    MSI PRO B550M-P Gen3
    Memory
    Kingston FURY Beast 2x16GB DIMM DDR4 2666 CL16
    Graphics Card(s)
    MSI GeForce GT 730 2GB LP V1
    Sound Card
    Creative Sound Blaster Audigy FX
    Monitor(s) Displays
    Samsung S24E450F 24"
    Screen Resolution
    1920 x 1080
    Hard Drives
    1. SSD Crucial P5 Plus 500GB PCIe M.2
    2. SSD-SATA Crucial MX500-2TB
    PSU
    Corsair CV650W
    Case
    Cooler Master Silencio S400
    Cooling
    Cooler Master Hyper H412R with Be Quiet Pure Wings 2 PWM BL038 fan
    Keyboard
    Cherry Stream (wired, scissor keys)
    Mouse
    Asus WT465 (wireless)
    Internet Speed
    70 Mbps down / 80 Mbps up
    Browser
    Firefox 130.0
    Antivirus
    F-secure via Internet provider
    Other Info
    Router: FRITZBox 7490
    Oracle VirtualBox 7 for testing software on Win 10 or 11
...
WinAuth doesn’t allow users to produce two-step verification codes for all the accounts. You can do so with these accounts ONLY
->Google, Microsoft, Net, Guild Wars 2, Glyph/Trion, Steam.
I was very confused about this at first, but I knew those could not be the only accounts supported so I tried clicking on what looks like a header: "Authenticator". That brought up a display that lest you enter stuff for an arbitrary account. I think it would have been much more obvious if they had an "Other" button at the bottom rather than "Authenticator" at the top. They forgot to ask me when they were designing their display.
 

My Computer

System One

  • OS
    Windows 11
    Computer type
    PC/Desktop
    Manufacturer/Model
    Microsoft
    CPU
    Intel Core i5-8400
    Motherboard
    ASUS PRIME H370-PLUS
    Memory
    16GB
    Graphics Card(s)
    Intel UHD Graphics 630
    Sound Card
    On board
    Monitor(s) Displays
    Samsung SyncMaster 2043BWX
    Screen Resolution
    1680 x 1050
    Hard Drives
    Samsung SSD 850 256GB
    WDC 1TB NVMe
    WD 3TB external USB drive
    PSU
    I don't remember
    Case
    Corsair something-or-other
    Cooling
    Air CPU + 2 case fans
    Keyboard
    DAS S Pro (Cherry Brown)
    Mouse
    Logitech USB of some sort

Latest Support Threads

Back
Top Bottom