Forum Discussion
New iPad - Account Data already known
Hi,
today I configured a new iPad of my wife. I downloaded the 1Password App from the Appstore and selected Login.
Than the 1PW App already suggested me the Login of my wife for our Family Account and already had the Secret Key filled in.
On my wifes iPhone the iCloud sync of the Keychain is not activated. Can someone please explain how the App on the new iPad were able to get the data? Maybe Keychain sync was temporary activated in the past on the iPhone of my wife - not sure.
But I don't want those data in the Cloud, so that those data needs to be added manually on new devices.
Regards
Finke
8 Replies
- Finke03Occasional Contributor
In addition to that I‘m also asking myself how the Account data comes to the new device as I did not activate iCloud Keychain during the setup of the new iPad. I only added the Apple ID of my wife and turned on some basic iCloud services like photos etc. 🤔.
That’s strange, especially because I thought the secret key will never leave the device!?Maybe an expert from 1PW can explain on technical level how the data are synced as the keychain data seems to be stored different as the apple password app data which holds safari credentials etc.
- Finke03Occasional Contributor
Hi1P_SimonH
these are not so good news.
If someone is only using an iPhone and temporarily activated iCloud Keychain there should be a way to remove it. 😔- 1P_SimonH
Community Manager
Hi Finke03,
The encrypted secret key leaving the device is expected behavior. You can learn more about that in this article.
One follow up question that might help solve this: Did you use Quick Start to set up the new iPad? It's possible that this would transfer over the Keychain data of your wife's account directly without using iCloud.- Finke03Occasional Contributor
Hi1P_SimonH ,
no I did not use QuickStart.
I cannot explain how this happened?!It’s an older iPad which only receives security updates from Apple. This means also the new Apple password app is not installed (only the old one under settings).
It’s also worth to mentioned that there were two safari logins automatically there and the access to the WiFi network. So it seems that there was some sync with iCloud Keychain without actively enable it during the setup wizard.But my main concern is not about the WiFi password, it’s more about the secret key. I see the risk that if somebody compromise the Apple ID of my wife (2factor is active) or apples server, they have two parts of 1PW Login (account name + secret key), which makes it easier to brute force. That’s the reason why I don’t want to have this key stored in the cloud. Instead I want to scan the emergency kit for new devices.
- 1P_SimonH
Community Manager
Hi Finke03,
Good question – I can see how that would be concerning. Did you set up the new iPad by using a backup from another iPad that was using 1Password? That's one possibility, but most likely iCloud keychain sync was active while using 1Password in the past and still stored some of your account information.If you have an account being found in the details stored in iCloud, and you no longer want that account to show in the list of found accounts, you can remove the data from iCloud keychain using a Mac set up with that same Apple ID as follows:
- On the Mac, launch the "Keychain Access" utility that comes with macOS
- In the search box in the upper-right corner of the app, search for "com.agilebits.onepassword.b5Credentials" (without the quotation marks)
- Each search result you see is one account's details that are stored in iCloud Keychain.
You can delete all of those entries if you want to remove all of the account credentials stored in iCloud Keychain (this won't impact the 1Password app or your account); if you only want to remove the one specific set of credentials:- Double-click on the entry you want to examine
- Tick the "Show password" box at the bottom of the Attributes tab, and enter your macOS user password when prompted
- The contents of the box will show the stored account details - you can click into the box and use the up and down keys on your keyboard to see all of the details
- When you have identified the entry that relates to the specific membership you no longer want to have recorded in iCloud Keychain, delete that one com.agilebits.onepassword.b5Credentials entry
I hope this helps and let me know if you have any questions!- Finke03Occasional Contributor
Hi1P_SimonH ,
thanks for the reply.
No, the iPad has not been restored from a backup and iCloud Keychain has not be enabled during the setup. So it’s definitely surprising that the App already knows all the details. It could be that in the past the iCloud Keychain was temporarily activated, but now it’s everywhere deactivated.Unfortunately I have no Mac with the configured Apple ID of my wife. Is there some other chance to wipe this out?
regards
Finke