Old 06-27-2013, 11:17 AM   #1
Password File, No Not That One.


I want to create a password file so I'm not using the same password for each site. What options do I have to secure it?

Ideally I'd like to have just a text file, encrypted, so when I read it I need to enter the password and then immediately it encrypts itself again so to read it again I have to type in the password again.

Other security ideas for this file would be great. Thanks
Old 06-27-2013, 11:19 AM   #2
You've not said a thing about what these passwords are for. Site? Are we talking abuot a website access? htaccess?? throw us a bone please.
Old 06-27-2013, 11:30 AM   #3
Original Poster
Of course! My apologies! Passwords for Websites.
Old 06-27-2013, 11:42 AM   #4
I suggest you look at KeePassX. It's handles the automatic encryption for you. You can keep one database or multiple, as many as you need. You can define subgroups in each database to separate passwords into different categories, such as email, web forums, banking, or whatever is meaningful to you.

It can also generate strong passwords for you of any length you like using one of its built-in character group selections, or using a custom set of parameters you define. You can bring up any entry and copy the password from it with ctrl+c and paste it into a form. Use ctrl+b for the username. It copies it into your clipboard so you can paste it somewhere, then it deletes it from your clipboard later after a time interval you can specify in the settings.

There is also an autotyping capability you can set up for each web site login form where you need to enter a username and password, and it will type in the username and password for you without using the clipboard and while employing some obfuscating tactics to make it less vulnerable to key loggers.

Overall, it's much more flexible than a simple encrypted text file, takes less effort to maintain, and may even be more secure.

Old 06-30-2013, 09:38 PM   #5
Another vote for KeepassX.
FYI its based off a version called Keepass that runs on MS, so if you use MS at work, you can use the 'same' tool.

Old 06-30-2013, 10:11 PM   #6
Both KeePassX and KeePass will run on Linux. There are also other password managers available. They're designed for the task you want, and would be much easier to use than an encrypted text file. But if you insist on a text file, gpg will do the job, as well as some other encryption tools. You have lots of choices for this, but my choice would be a password manager, probably either KeePassX or KeePass. You could also use LastPass in Firefox or Iceweasel, and that works well enough, but it only works in the browser, so you need it open anytime you need a password. If all you need are passwords for websites, then LastPass may be good enough. It doesn't require a new package install, it's just an addon for your browser.

