fox-it / linux-luks-tpm-boot
A guide for setting up LUKS boot with a key from TPM in Linux
☆181Updated 6 years ago
Related projects ⓘ
Alternatives and complementary repositories for linux-luks-tpm-boot
- LUKS support for storing keys in TPM NVRAM☆186Updated 6 years ago
- A guide for setting up LUKS boot with a key from TPM in Linux☆159Updated 4 years ago
- DEPRECATED TPM enabled GRUB2 Bootloader☆193Updated 3 years ago
- [DEPRECATED] PKCS#11 Module for TPM 2.0☆68Updated 4 years ago
- PKCS#11 provider with smart card support via GnuPG☆36Updated 5 years ago
- Tools for using PIV tokens (like Yubikeys) as an SSH agent, for encrypting data at rest, and more☆194Updated 2 weeks ago
- Attest the trustworthiness of a device against a human using time-based one-time passwords☆166Updated 4 months ago
- Utility to manage LUKS keys sealed by a TPM 2.0☆50Updated last year
- Full disk encryption with Yubikey (Yubico key)☆109Updated 4 months ago
- Encrypted boot partition manager with UEFI Secure Boot support☆204Updated 11 months ago
- dracut initramfs module to start dropbear sshd during boot to unlock the root filesystem with the (cryptsetup) LUKS passphrase remotely☆286Updated last year
- PKCS#11 GnuPG SCD☆69Updated last week
- Simple PKCS11 provider for TPM chips☆252Updated 5 months ago
- ☆63Updated 2 years ago
- ☆25Updated 5 years ago
- Script to generate an OVMF vars file with default secure boot key enrolled.☆83Updated 2 years ago
- Calculate future (next boot) TPM PCRs after a kernel upgrade☆38Updated last year
- Tool used in initramfs to seal/unseal FDE key to the TPM☆23Updated 2 years ago
- Official master repository of the LUKS in-place-conversion utility (luksipc)☆91Updated 5 years ago
- Firmware for the Nitrokey Pro device☆119Updated 9 months ago
- Unofficial forward ports of the last publicly available grsecurity patch☆150Updated 6 years ago
- ☆41Updated 7 years ago
- Scripts to slightly improve the security of the Linux boot process with UEFI Secure Boot and TPM support☆271Updated last year
- Adds an automated unlock function based on TPM policy installation☆69Updated last year
- Scripts to bootstrap internal Certificate Authorities (CAs) using Yubikeys☆76Updated 4 years ago
- Two factor authentication for harddisk encryption☆614Updated 11 months ago
- Bash script for setting or clearing touch requirements for # cryptographic operations the OpenPGP application on a YubiKey 4☆158Updated 3 years ago
- Small-scale CA with SmartCard support - CLI wrapper for OpenSSL and OpenSC☆61Updated 4 years ago
- Tang binding daemon☆516Updated last week
- Yubikey full disk encryption☆126Updated 9 years ago