Hacker News new | ask | show | jobs
by zokier 1137 days ago
> Yes: to a first approximation, a second factor is something you are (or have), while a first factor is something you know.

But the typical totp-in-password-manager setup is missing the other factor, there is nothing you know in such setup.

1 comments

In that case, the thing you know would be the password to the password manager.

But yes, I agree. I keep my TOTP on my phone (I use Aegis) and my password manager on my desktop computer.