obelisk / rustica
An SSHCA that uses a standard Yubikey to issue new host and user certificates.
☆43Updated 2 months ago
Alternatives and similar repositories for rustica:
Users that are interested in rustica are comparing it to the libraries listed below
- A crate for reading, parsing, verifying, and generating OpenSSH certificates and keys.☆16Updated 7 months ago
- A Secure Enclave Token Driver Smartcard Extension☆57Updated 2 years ago
- Libraries and binaries for running witnesses for verifiable logs☆23Updated last week
- Hallow is a SSH Certificate Authority designed for use with AWS native environments☆64Updated 8 months ago
- An experimental, work-in-progress PAM module for Tailscale☆140Updated 2 years ago
- ☆16Updated 2 years ago
- Tools for using CFSSL w/ PKCS11 token as a CA☆17Updated 9 years ago
- `age-plugin-yubikey` implementation, encrypt things with a Yubikey/any PIV card☆25Updated 4 years ago
- XChaCha8Blake3Siv is a nonce-reuse misuse-resistant (NRMR) and key-committing authenticated encryption with associated data (AEAD) algori…☆17Updated 3 years ago
- ☆31Updated last week
- A Setup for creating a Public Key Infrastructure backed by a YubiHSM2☆15Updated last year
- Proxy for testing network disconnects and jitter/throttling☆16Updated last month
- A CLI to use a Google Cloud KMS key for PGP signing operations.☆43Updated 4 years ago
- 🔑 YubiKey-sealed Secrets-as-Code for git.☆34Updated 3 months ago
- Yubikey client API library, Challenge-Response & Configuration☆52Updated 11 months ago
- Some Rust code for submitting a cert to all of Chrome's trusted CT logs and getting back the SCTs☆16Updated 2 years ago
- Create cryptographic signatures for files and verify them.☆90Updated 3 months ago
- Find unmaintained packages in Rust projects☆68Updated this week
- Pure Rust client for YubiHSM2 devices☆64Updated this week
- Tools for using PIV tokens (like Yubikeys) as an SSH agent, for encrypting data at rest, and more☆197Updated last week
- DNS test harness☆49Updated 8 months ago
- Pure Rust YubiKey host-side driver for PIV-based RSA/ECC key storage + signing/encryption support☆227Updated last week
- A Certificate Transparency log implementation and monitoring API designed for scalability, ease of operation, and reduced cost.☆135Updated last month
- For all your DER / PEM inspection, editing, staging, and roundtrip needs☆14Updated 2 years ago
- Rust access to macOS Keychain Services (experimental)☆59Updated 2 months ago
- PAL: A secret bootstrapping tool for Docker☆84Updated 5 months ago
- X.509 certificate linter, written in Go☆59Updated 6 years ago
- WIP x509 Certificate auditing CLI☆32Updated 2 months ago
- A dead simple secret store service for anyone using AWS☆37Updated 6 years ago
- Go Ed25519 suitable for use in consensus-critical contexts.☆52Updated last year