obelisk / rusticaLinks
An SSHCA that uses a standard Yubikey to issue new host and user certificates.
☆44Updated 2 months ago
Alternatives and similar repositories for rustica
Users that are interested in rustica are comparing it to the libraries listed below
Sorting:
- A Secure Enclave Token Driver Smartcard Extension☆59Updated 2 years ago
- A crate for reading, parsing, verifying, and generating OpenSSH certificates and keys.☆17Updated 2 months ago
- Hallow is a SSH Certificate Authority designed for use with AWS native environments☆65Updated last year
- 🔑 YubiKey-sealed Secrets-as-Code for git.☆34Updated last month
- Experimental version of Algo built on Terraform☆80Updated 3 weeks ago
- An experimental, work-in-progress PAM module for Tailscale☆143Updated 2 years ago
- Verify and assert policy on YubiKey attestation certificates☆20Updated 2 months ago
- Split-Trust Encryption Tool for ubiquitous data encryption.☆38Updated last month
- Utilities to reproducibly build images for AWS Nitro Enclaves☆34Updated last month
- Provides agent and server plugins for SPIRE to allow TPM 2-based node attestation.☆81Updated 2 years ago
- Pure Rust client for YubiHSM2 devices☆65Updated 3 months ago
- A tool to monitor a certificate transparency log for operational problems☆186Updated last year
- Tools for using PIV tokens (like Yubikeys) as an SSH agent, for encrypting data at rest, and more☆207Updated 2 months ago
- Some Rust code for submitting a cert to all of Chrome's trusted CT logs and getting back the SCTs☆16Updated 3 years ago
- proof-of-concept for recovering the master key from a Hashicorp Vault process☆67Updated 2 years ago
- ☆34Updated this week
- ☆17Updated 2 years ago
- ☆26Updated this week
- A CLI to use a Google Cloud KMS key for PGP signing operations.☆43Updated 4 years ago
- Libraries and binaries for running witnesses for verifiable logs☆26Updated this week
- Proxy for testing network disconnects and jitter/throttling☆16Updated 2 weeks ago
- A simple service for interacting with an HSM or other PKCS#11 device.☆56Updated last month
- Simplifying Seccomp enforcement in containerized or non-containerized apps☆110Updated 4 years ago
- A Setup for creating a Public Key Infrastructure backed by a YubiHSM2☆15Updated last year
- A small CLI tool for Shamir's Secret Sharing written in Go, using Vault's Shamir implementation☆44Updated 4 years ago
- Tools for using CFSSL w/ PKCS11 token as a CA☆17Updated 9 years ago
- Resizable ORAM, remote storage agnostic, written in Rust☆70Updated 3 years ago
- verify https assets with a public transparency log☆75Updated 3 years ago
- An SSH and GPG agent which you can use with your PIV hardware security device (e.g. a Yubikey).☆91Updated last week
- `age-plugin-yubikey` implementation, encrypt things with a Yubikey/any PIV card☆25Updated 4 years ago