arekinath / pivy
Tools for using PIV tokens (like Yubikeys) as an SSH agent, for encrypting data at rest, and more
☆200Updated 2 weeks ago
Alternatives and similar repositories for pivy:
Users that are interested in pivy are comparing it to the libraries listed below
- Simple PKCS11 provider for TPM chips☆252Updated 10 months ago
- Scripts to bootstrap internal Certificate Authorities (CAs) using Yubikeys☆78Updated 5 years ago
- Small-scale CA with SmartCard support - CLI wrapper for OpenSSL and OpenSC☆61Updated 5 years ago
- PKCS#11 GnuPG SCD☆70Updated 4 months ago
- Attest the trustworthiness of a device against a human using time-based one-time passwords☆171Updated 9 months ago
- PKI support for SSH certificates☆57Updated 3 years ago
- Command line tool for the YubiKey PIV application☆319Updated 2 weeks ago
- PKCS#11 provider with smart card support via GnuPG☆36Updated 6 years ago
- [DEPRECATED] PKCS#11 Module for TPM 2.0☆68Updated 4 years ago
- Mirror only. Official repository at https://git.glasklar.is/system-transparency/core/system-transparency☆86Updated 2 weeks ago
- An SSH and GPG agent which you can use with your PIV hardware security device (e.g. a Yubikey).☆89Updated 3 weeks ago
- Calculate future (next boot) TPM PCRs after a kernel upgrade☆39Updated last year
- Bash script for setting or clearing touch requirements for # cryptographic operations the OpenPGP application on a YubiKey 4☆158Updated 4 years ago
- Hallow is a SSH Certificate Authority designed for use with AWS native environments☆63Updated 8 months ago
- Configuration to use gpg smartcards for ssh authentication☆111Updated 4 years ago
- Notes and automation pertaining to my home internet appliance (PCEngines/coreboot/OpenBSD/Ansible).☆55Updated 4 years ago
- Full disk encryption with Yubikey (Yubico key)☆111Updated 2 months ago
- 🦐SSH Certificate Authority in a Lambda (on the barbie)☆117Updated 4 years ago
- Some random script turning a OpenPGP smartcard into a low-end HSM☆26Updated 6 years ago
- Block hosts that attempt to bruteforce SSH using the journald API.☆93Updated 2 years ago
- HSMWiz is a frontend for OpenSC, pkcs11tool and pkcs15tool to ease handling of HSM smartcards☆46Updated 4 years ago
- How to use a Yubikey with OpenSSH without GPG☆157Updated 4 years ago
- ☆33Updated 3 years ago
- A Go TLS/HTTPS server demo that uses a Yubikey as the backend for it's private key☆181Updated 6 years ago
- Scripts to slightly improve the security of the Linux boot process with UEFI Secure Boot and TPM support☆275Updated 2 years ago
- Moving pam_ssh_agent_auth to github as primary development location☆101Updated last year
- PKI Meta-Linter☆74Updated this week
- A Secure Enclave Token Driver Smartcard Extension☆57Updated 2 years ago
- LUKS support for storing keys in TPM NVRAM☆185Updated 7 years ago
- A simple way to generate password-proteceted secrets from a FIDO2 authenticator with the hmac-secret extension☆53Updated 2 years ago