jcjones / cfssl-pkcs11-caLinks
Tools for using CFSSL w/ PKCS11 token as a CA
☆17Updated 10 years ago
Alternatives and similar repositories for cfssl-pkcs11-ca
Users that are interested in cfssl-pkcs11-ca are comparing it to the libraries listed below
Sorting:
- A tool to monitor a certificate transparency log for operational problems☆186Updated 2 years ago
- Tools for using PIV tokens (like Yubikeys) as an SSH agent, for encrypting data at rest, and more☆208Updated 4 months ago
- Simplifying Seccomp enforcement in containerized or non-containerized apps☆112Updated 4 years ago
- PAL: A secret bootstrapping tool for Docker☆84Updated 11 months ago
- A package for handling ssh certificates☆45Updated 3 years ago
- Automated certificate management using a CFSSL CA.☆227Updated 11 months ago
- proof-of-concept for recovering the master key from a Hashicorp Vault process☆69Updated 2 years ago
- ☆41Updated 4 years ago
- A simple service for interacting with an HSM or other PKCS#11 device.☆57Updated 3 weeks ago
- X.509 certificate linter, written in Go☆60Updated 6 years ago
- BeyondCorp-style federated access proxy☆50Updated 2 years ago
- A tool for getting SSH keys out of LDAP☆49Updated 3 years ago
- "Transit like" secret backend plugin for PGP/GPG in Hashicorp Vault☆91Updated last week
- An interface to PKCS#11 devices that satisfies the crypto.Signer interface☆92Updated 2 years ago
- Manages continuous scans of your infrastructure☆107Updated 3 years ago
- Provides agent and server plugins for SPIRE to allow TPM 2-based node attestation.☆81Updated 2 years ago
- A monitor that checks that Certificate Transparency Logs are complying with RFC 6962 and the Chromium Certificate Transparency Log Policy…☆40Updated 2 years ago
- OCSP responder for Hashicorp Vault PKI☆64Updated 3 years ago
- CURSE is an SSH certificate signing server, built as an alternative to Netflix's BLESS tool, but without a dependency on AWS.☆222Updated last year
- asynchronously synchronise local NSS databases with remote directory services☆150Updated 2 weeks ago
- Wireguard peer manager☆80Updated this week
- Generate seccomp profiles from go binaries☆135Updated 7 years ago
- Toolkit to manage keys and certificates in TPM2 chips☆43Updated 5 months ago
- An easy way to give all your EC2 instances SSH host certificates☆16Updated 2 years ago
- A dead simple secret store service for anyone using AWS☆37Updated 6 years ago
- A low-cost Certificate Transparency log for deployment in the cloud.☆38Updated 11 months ago
- Automated storage and retrieval of dm-crypt keys using Vault☆60Updated 2 years ago
- Shell wrapper to run a login shell with `sudo` as the current user for the purpose of audit logging☆95Updated 3 years ago
- Hallow is a SSH Certificate Authority designed for use with AWS native environments☆65Updated last year
- IP-format-preserving encryption, with a dedicated 4-byte cipher☆107Updated 4 years ago