arekinath / pivyLinks
Tools for using PIV tokens (like Yubikeys) as an SSH agent, for encrypting data at rest, and more
☆207Updated 2 months ago
Alternatives and similar repositories for pivy
Users that are interested in pivy are comparing it to the libraries listed below
Sorting:
- Bash script for setting or clearing touch requirements for # cryptographic operations the OpenPGP application on a YubiKey 4☆158Updated 4 years ago
- Simple PKCS11 provider for TPM chips☆253Updated last year
- How to use a Yubikey with OpenSSH without GPG☆157Updated 4 years ago
- Scripts to bootstrap internal Certificate Authorities (CAs) using Yubikeys☆81Updated 5 years ago
- Attest the trustworthiness of a device against a human using time-based one-time passwords☆176Updated last year
- Mirror only. Official repository at https://git.glasklar.is/system-transparency/core/system-transparency☆89Updated last week
- An SSH and GPG agent which you can use with your PIV hardware security device (e.g. a Yubikey).☆91Updated last week
- Small-scale CA with SmartCard support - CLI wrapper for OpenSSL and OpenSC☆61Updated 5 years ago
- Moving pam_ssh_agent_auth to github as primary development location☆106Updated 2 years ago
- A guide for setting up LUKS boot with a key from TPM in Linux☆159Updated 5 years ago
- PKCS#11 GnuPG SCD☆70Updated 8 months ago
- ☆33Updated 3 years ago
- PKI support for SSH certificates☆60Updated 3 years ago
- 🦐SSH Certificate Authority in a Lambda (on the barbie)☆118Updated 5 years ago
- Full disk encryption with Yubikey (Yubico key)☆111Updated 5 months ago
- Calculate future (next boot) TPM PCRs after a kernel upgrade☆39Updated last month
- HSMWiz is a frontend for OpenSC, pkcs11tool and pkcs15tool to ease handling of HSM smartcards☆49Updated 4 years ago
- Yubikey full disk encryption☆128Updated 9 years ago
- Scripts to slightly improve the security of the Linux boot process with UEFI Secure Boot and TPM support☆280Updated 2 years ago
- A simple way to generate password-proteceted secrets from a FIDO2 authenticator with the hmac-secret extension☆54Updated 2 years ago
- Block hosts that attempt to bruteforce SSH using the journald API.☆94Updated 2 years ago
- A dedicated Chrome instance to log into captive portals without messing with DNS settings.☆460Updated 2 years ago
- Use a TPM to store a TOTP token in order to attest boot state to another device☆208Updated last year
- LUKS support for storing keys in TPM NVRAM☆184Updated 7 years ago
- Short term certificate based identity system (ssh/x509 ca + openidc)☆135Updated last month
- SSH Certificate Authority with device attestation☆55Updated 10 months ago
- Command line tool for the YubiKey PIV application☆329Updated last week
- Proxy server for ACME DNS challenges written in Go☆83Updated last year
- A WebAuthn/U2F token protected by a TPM (Go/Linux)☆344Updated last year
- PKCS#11 provider with smart card support via GnuPG☆36Updated 6 years ago