krathalan / systemd-sandboxingLinks
Hardened systemd profiles for various services
☆24Updated last year
Alternatives and similar repositories for systemd-sandboxing
Users that are interested in systemd-sandboxing are comparing it to the libraries listed below
Sorting:
- Systemd Hardening Helper - Mirror of https://github.com/desbma/shh☆130Updated 3 weeks ago
- Paused mirror. Official repository at https://git.glasklar.is/system-transparency/core/stboot☆113Updated last year
- deprecated - maybe replaced by: `apparmor.d`☆85Updated last year
- Use SoloKey to unlock a LUKS encrypted partition☆31Updated 2 years ago
- An app launcher to start apps in a restrictive sandbox https://www.kicksecure.com/wiki/sandbox-app-launcher☆41Updated 4 months ago
- Calculate future (next boot) TPM PCRs after a kernel upgrade☆39Updated 3 weeks ago
- Unmaintained systemd-boot integration with secure boot support; consider https://github.com/Foxboron/sbctl instead.☆33Updated 4 years ago
- Simple script to generate Secure Boot keys☆14Updated 3 years ago
- A high level language for SELinux policy☆59Updated 3 months ago
- Attest the trustworthiness of a device against a human using time-based one-time passwords☆174Updated last year
- Linux kernel source tree with OpenPaX patch☆93Updated 3 months ago
- Mirror only. Official repository at https://git.glasklar.is/system-transparency/core/system-transparency☆87Updated 3 months ago
- Utility to manage LUKS keys sealed by a TPM 2.0☆52Updated last year
- ***** This repo is moved to https://github.com/libtypec/libtypec/ ***** “libtypec” is aimed to provide a generic interface abstracting al…☆36Updated 3 months ago
- My local AppArmor profiles for apps that can use those☆71Updated last week
- A simple way to generate password-proteceted secrets from a FIDO2 authenticator with the hmac-secret extension☆54Updated 2 years ago
- Enhanced config file parser, which merges config files placed in several locations into one.☆88Updated last month
- SSH Certificate Authority with device attestation☆55Updated 9 months ago
- Build initrd images using mkosi and distro packages☆39Updated last year
- Scripts to slightly improve the security of the Linux boot process with UEFI Secure Boot and TPM support☆279Updated 2 years ago
- Systemd Hardening Helper - Automatic systemd service hardening guided by strace profiling☆85Updated last week
- Thermal daemon for IA☆46Updated 3 years ago
- Build ostree images based on Debian/Ubuntu☆111Updated 3 weeks ago
- Utility for easy access to BIOS WMI settings☆42Updated 9 months ago
- Forensic tool to read all installed packages from a mounted Arch Linux drive and compare the filesystem to a trusted source☆34Updated last year
- TPM 2.0 plugin for age☆94Updated 4 months ago
- Experimental pacman integration for Reproducible Builds and Binary Transparency (with sigstore/rekor)☆86Updated 11 months ago
- ☆26Updated 4 years ago
- Patch attestation utility☆30Updated last week
- EFI Unified Kernel Image Maker☆19Updated last month