krathalan / systemd-sandboxingLinks
Hardened systemd profiles for various services
☆24Updated last year
Alternatives and similar repositories for systemd-sandboxing
Users that are interested in systemd-sandboxing are comparing it to the libraries listed below
Sorting:
- Scripts to slightly improve the security of the Linux boot process with UEFI Secure Boot and TPM support☆280Updated 2 years ago
- Attest the trustworthiness of a device against a human using time-based one-time passwords☆176Updated last year
- Linux kernel source tree with OpenPaX patch☆93Updated 3 months ago
- deprecated - maybe replaced by: `apparmor.d`☆85Updated last year
- Systemd Hardening Helper - Mirror of https://github.com/desbma/shh☆132Updated this week
- Paused mirror. Official repository at https://git.glasklar.is/system-transparency/core/stboot☆113Updated last year
- Utility to manage LUKS keys sealed by a TPM 2.0☆52Updated last year
- TCP ISN CPU Information Leak Protection. TCP Initial Sequence Numbers Randomization to prevent TCP ISN based CPU Information Leaks.☆54Updated 5 months ago
- A simple GUI to change settings in coreboot's CBFS, via the nvramtool utility.☆90Updated 2 years ago
- Mirror only. Official repository at https://git.glasklar.is/system-transparency/core/system-transparency☆88Updated 2 weeks ago
- Scalable, modular, and easy to combine BIOS firmware technology without boundaries on processor architecture.☆48Updated this week
- User-friendly Lightweight TPM Remote Attestation over Bluetooth☆170Updated 2 years ago
- Reviews of shim☆75Updated 3 weeks ago
- Scripts to build the Linux kernel from a config file and initrd from a list of programs☆24Updated 2 years ago
- My local AppArmor profiles for apps that can use those☆71Updated last month
- Automatic updates for Alpine Linux and other systems using apk-tools☆67Updated 8 months ago
- Recover files from damaged BTRFS filesystems☆82Updated 2 years ago
- Framework to join Linux's physical security bricks.☆261Updated 3 months ago
- Linux-hardened deny_new_usb control☆22Updated 4 years ago
- A high level language for SELinux policy☆59Updated 4 months ago
- Enhanced version of dd for forensics and security☆110Updated last month
- Basic guide to harden systemd services☆254Updated 5 years ago
- An app launcher to start apps in a restrictive sandbox https://www.kicksecure.com/wiki/sandbox-app-launcher☆42Updated 5 months ago
- Krathalan's AppArmor profiles for Arch Linux☆41Updated 8 months ago
- Bootstrap disposable Windows VMs configured through a web app☆93Updated last year
- Provide SSH access to initramfs early user space on Fedora and other systems that use Dracut☆271Updated 2 weeks ago
- Use dropbear over wireguard.☆309Updated 3 months ago
- Unmaintained systemd-boot integration with secure boot support; consider https://github.com/Foxboron/sbctl instead.☆33Updated 4 years ago
- Script to generate an OVMF vars file with default secure boot key enrolled.☆92Updated 2 years ago
- Calculate future (next boot) TPM PCRs after a kernel upgrade☆39Updated last month