Absolutely, Bill. We’d like to make FxA handle master password (meaning,
the two have the same value) by default.

This means quite a few things:

   - One less password: the password you use to sign into FxA, and to
   unlock the vault, is one and the same.
   - Recoverable: should you ever forget your vault password, you can
   recover it via email (on your Mac or 1Password, if you forget your Master
   Password, you’re hosed)
   - Accessible: You need to be online to access FxA. But the same password
   you use there can be used to unlock your vault, even when you’re have no
   internet. This is a corner case, though.

Not everybody will want FxA. If so, you’re free to pick your own vault
password and never have to sign into FxA. It works exactly like how every
Master Password works: don’t ever forget it.

Of course, you can also say “My vault don’t need a password to unlock it”.
I suspect that most people who uses their own machine don’t want to bother
entering a password in order for Firefox to autofill.

On Thu, Jan 29, 2015 at 4:59 AM, William Maggs <[email protected]> wrote:

> Occam's razor is out! On first read I really like this idea. If we decide
> to do it I think you would want to make FxA handle the master password key
> by default, just for clarity.
>
> Bill
>
> On Tue, Jan 27, 2015 at 10:58 PM, Francois Marier <[email protected]>
> wrote:
>
>> On 28/01/15 13:48, Christopher Karlof wrote:
>> > I think it’s a fantastic idea. I think there are a lot of people that
>> > would be happy to see that, and it sounds like something that could be
>> > done pretty easily without many or any UX changes. Let me know how I can
>> > help.
>>
>> Bram and I summarized that idea on the wiki (flow chart included):
>>
>>   https://wiki.mozilla.org/CloudServices/Password_Manager/Master_Password
>>
>> I will now stop cross-posting and move any future thoughts to the wiki
>> page:)
>>
>> Francois
>> _______________________________________________
>> Passwords-dev mailing list
>> [email protected]
>> https://mail.mozilla.org/listinfo/passwords-dev
>>
>
>
> _______________________________________________
> Dev-fxacct mailing list
> [email protected]
> https://mail.mozilla.org/listinfo/dev-fxacct
>
>
_______________________________________________
Dev-fxacct mailing list
[email protected]
https://mail.mozilla.org/listinfo/dev-fxacct

Reply via email to