obelisk / rusticaLinks
An SSHCA that uses a standard Yubikey to issue new host and user certificates.
☆46Updated 2 months ago
Alternatives and similar repositories for rustica
Users that are interested in rustica are comparing it to the libraries listed below
Sorting:
- A Secure Enclave Token Driver Smartcard Extension☆61Updated 3 years ago
- A crate for reading, parsing, verifying, and generating OpenSSH certificates and keys.☆17Updated 6 months ago
- Tools for using PIV tokens (like Yubikeys) as an SSH agent, for encrypting data at rest, and more☆214Updated last month
- ☆99Updated last week
- An experimental, work-in-progress PAM module for Tailscale☆144Updated 3 years ago
- Hallow is a SSH Certificate Authority designed for use with AWS native environments☆65Updated last year
- Utilities to reproducibly build images for AWS Nitro Enclaves☆43Updated 8 months ago
- Rust libraries and tools for using and generating TUF repositories☆218Updated this week
- Tools for using CFSSL w/ PKCS11 token as a CA☆17Updated 10 years ago
- Command line program for secret-sharing strings☆81Updated 3 months ago
- Verify and assert policy on YubiKey attestation certificates☆20Updated 3 months ago
- Provides agent and server plugins for SPIRE to allow TPM 2-based node attestation.☆81Updated 2 years ago
- A CLI to use a Google Cloud KMS key for PGP signing operations.☆43Updated 4 years ago
- ☆30Updated last week
- Pure Rust YubiKey host-side driver for PIV-based RSA/ECC key storage + signing/encryption support☆254Updated 2 weeks ago
- TLS-enabling YOUR network!☆90Updated last year
- Pure Rust client for YubiHSM2 devices☆71Updated 2 weeks ago
- ☆38Updated last week
- Generate seccomp profiles from go binaries☆135Updated 7 years ago
- Experimental version of Algo built on Terraform☆81Updated 7 months ago
- Libraries and binaries for running witnesses for verifiable logs☆35Updated last week
- Some Rust code for submitting a cert to all of Chrome's trusted CT logs and getting back the SCTs☆16Updated 3 years ago
- "Transit like" secret backend plugin for PGP/GPG in Hashicorp Vault☆93Updated this week
- proof-of-concept for recovering the master key from a Hashicorp Vault process☆69Updated 2 years ago
- ☆68Updated last week
- A simple service for interacting with an HSM or other PKCS#11 device.☆56Updated 2 weeks ago
- PAL: A secret bootstrapping tool for Docker☆85Updated last year
- A tool to monitor a certificate transparency log for operational problems☆191Updated 2 years ago
- Simplifying Seccomp enforcement in containerized or non-containerized apps☆112Updated 5 years ago
- X.509 certificate linter, written in Go☆59Updated 7 years ago