Shared passwords¶
The lab keeps its shared credentials — printers, instruments, the Wi-Fi that nobody remembers — in a password manager at https://oprema.ladisk.si/mreza. It replaced a KeePass file, which replaced a Word document.
It is a separate account from your equipment-catalogue login. That is on purpose: the catalogue is open to everybody in the lab, and the shared passwords are not. Having an account here does not give you one there.
Getting in¶
An admin invites you, and you get an email. Follow it, choose a master password, and you are in. Nobody has to install anything.
Warning
Your master password cannot be reset for you. It is not stored anywhere — it is the key your vault is encrypted with, and the server genuinely does not have it. If you forget it, your account is emptied and re-invited, not recovered. Use something you will not lose, and consider writing it down somewhere physical until it sticks.
Using it¶
The website is the simple way: open the link in the footer of any page here, log in, and read what you need. Nothing to install, and it works on a phone.
If you would rather have autofill, the official Bitwarden apps work with it: the browser extension, the desktop app and the phone app. Same account, same passwords.
The one thing to get right is that they must be pointed at our server instead of Bitwarden’s own. In the browser extension:
Install Bitwarden from your browser’s add-on store.
Open it. Before typing your email, change the server — recent versions show a region selector on the login screen reading
bitwarden.com; older ones use a cog. Choose Self-hosted.Put
https://oprema.ladisk.si/mrezain the server URL field, including the/mreza, and save.Now log in with your email and master password.
Get step 3 wrong and the login simply fails: your account does not exist on bitwarden.com, so there is nothing to log in to. Nothing breaks, and you can change the server and try again.
The desktop and phone apps work the same way, with the same setting in the same place.
Already using Bitwarden for your own passwords? Nothing here disturbs that. Leave your personal setup alone and use the website for the lab’s credentials — the extension holds one account at a time, so pointing it here would log you out of your own.
What goes in it¶
Credentials the lab shares. Not your personal passwords — this is a shared store, and the people in your collections can read what is in them.
If something in there is genuinely sensitive, say so before you add it. The server sits on the same machine as the equipment catalogue, which is the right level of protection for a printer and the wrong one for anything that would matter if it leaked.
Leaving¶
Tell an admin. Your account is removed in the password manager itself, and anything you had access to that really matters is worth changing anyway — revoking access stops somebody reading it in future, and cannot un-know what they already saw.