osresearch / safeboot
Scripts to slightly improve the security of the Linux boot process with UEFI Secure Boot and TPM support
☆275Updated 2 years ago
Alternatives and similar repositories for safeboot:
Users that are interested in safeboot are comparing it to the libraries listed below
- Attest the trustworthiness of a device against a human using time-based one-time passwords☆169Updated 8 months ago
- Mirror only. Official repository at https://git.glasklar.is/system-transparency/core/system-transparency☆86Updated this week
- LinuxBoot book which contains the documentation in markdown format☆278Updated 3 weeks ago
- Go-based tools for modifying UEFI firmware☆313Updated last month
- Converged Security Suite for Intel & AMD platform security features☆60Updated last month
- DEPRECATED TPM enabled GRUB2 Bootloader☆193Updated 3 years ago
- Framework to join Linux's physical security bricks.☆247Updated 7 months ago
- A PKCS#11 interface for TPM2 hardware☆293Updated 2 weeks ago
- Script to generate an OVMF vars file with default secure boot key enrolled.☆88Updated 2 years ago
- Paused mirror. Official repository at https://git.glasklar.is/system-transparency/core/stboot☆112Updated last year
- Small and reliable initramfs solution supporting (remote) rescue shell, lvm, dmcrypt luks, software raid, tuxonice, uswsusp and more.☆316Updated last year
- Tools to let a u-root instance boot signed live distro images over the web☆109Updated 2 years ago
- Libtpms-based TPM emulator with socket, character device, and Linux CUSE interface.☆636Updated 2 weeks ago
- Tools for using PIV tokens (like Yubikeys) as an SSH agent, for encrypting data at rest, and more☆197Updated 2 weeks ago
- ☆40Updated 2 months ago
- Display, extract, and manipulate PSP firmware inside UEFI images☆628Updated 3 months ago
- deprecated - maybe replaced by: `apparmor.d`☆87Updated last year
- Kexecboot is a nice Linux-As-a-Bootloader implementation based on kexec☆112Updated last year
- Calculate future (next boot) TPM PCRs after a kernel upgrade☆39Updated last year
- The libtpms library provides software emulation of a Trusted Platform Module (TPM 1.2 and TPM 2.0)☆231Updated 2 months ago
- ☆163Updated 11 months ago
- Linux UEFI library written in pure Go.☆145Updated last month
- A guide for setting up LUKS boot with a key from TPM in Linux☆160Updated 5 years ago
- Repository is intended to provide patches and rpm specs with experimental features to run under the Qubes OS.☆24Updated 4 years ago
- Go packages built on go-tpm providing a high-level API for using TPMs☆251Updated this week
- a visual toolkit for exploring and editing firmware images, running on web platforms☆110Updated 3 months ago
- Encrypted boot partition manager with UEFI Secure Boot support☆206Updated last year
- A CNCF Project to Bootstrap & Maintain Trust on the Edge / Cloud and IoT☆453Updated this week
- UAPI Group Specifications☆102Updated 2 months ago
- Tang binding daemon☆545Updated last week