mjec / khefinLinks
A simple way to generate password-proteceted secrets from a FIDO2 authenticator with the hmac-secret extension
☆54Updated 2 years ago
Alternatives and similar repositories for khefin
Users that are interested in khefin are comparing it to the libraries listed below
Sorting:
- Attest the trustworthiness of a device against a human using time-based one-time passwords☆176Updated last year
- Decrypt your LUKS partition using a FIDO2 compatible authenticator☆137Updated last year
- OpenPGP functionality for Solo☆107Updated 4 years ago
- ☆33Updated 3 years ago
- Experimental pacman integration for Reproducible Builds and Binary Transparency (with sigstore/rekor)☆86Updated 11 months ago
- Mirror only. Official repository at https://git.glasklar.is/system-transparency/core/system-transparency☆89Updated 2 weeks ago
- SSH Certificate Authority with device attestation☆55Updated 10 months ago
- Compatibility between systemd and ZFS roots☆44Updated 4 years ago
- PKCS#11 GnuPG SCD☆70Updated 8 months ago
- Tools for using PIV tokens (like Yubikeys) as an SSH agent, for encrypting data at rest, and more☆207Updated 2 months ago
- TPM 2.0 plugin for age☆96Updated 4 months ago
- OpenPGP card implementation☆54Updated 3 months ago
- A software FIDO2/U2F authenticator☆46Updated last year
- Use SoloKey to unlock a LUKS encrypted partition☆32Updated 2 years ago
- Provisioning tool for systemd in initramfs (systemd-tool)☆118Updated 11 months ago
- Arch Linux initramfs hook for smartcard support for LUKS full-disk encryption☆97Updated last year
- A tool for detecting usbguard policy and device presence changes☆51Updated 2 months ago
- UEFI SecureBoot for ArchLinux☆60Updated 2 years ago
- Extended verification for git tags☆133Updated 2 years ago
- Patch attestation utility☆30Updated 3 weeks ago
- deprecated - maybe replaced by: `apparmor.d`☆85Updated last year
- An SSH and GPG agent which you can use with your PIV hardware security device (e.g. a Yubikey).☆91Updated last week
- Btrfs Snapshot Disk Usage Analyzer☆41Updated 4 years ago
- WireGuard with Linux Network Namespaces☆147Updated this week
- Moving pam_ssh_agent_auth to github as primary development location☆106Updated 2 years ago
- Cryptsetup with Deniable LUKS header crypto extension 🇺🇦 SUPPORT UKRAINE! 🇺🇦☆64Updated 5 years ago
- Pure Golang implementation of clevis encryption framework☆26Updated 9 months ago
- Unlock LUKS disk by Nitrokey on boot.☆34Updated 2 years ago
- Systemd configuration for a network namespace containing a WireGuard VPN connection☆44Updated last year
- automatic ip addresses for wireguard peers☆43Updated 5 years ago