issues
search
osresearch
/
safeboot
Scripts to slightly improve the security of the Linux boot process with UEFI Secure Boot and TPM support
https://safeboot.dev/
GNU General Public License v2.0
268
stars
28
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
Is this project still maintained/working on X1 g6?
#178
jtyvy8080
opened
8 months ago
0
[Request] kernel update
#177
bannhead
closed
1 year ago
1
Can I use ipxe with chainload?
#176
belaaaaar
closed
1 year ago
0
Use rsa2048 WK
#175
nicowilliams
opened
1 year ago
0
Installation on Debian Bullseye-based system
#174
rdmitry0911
opened
1 year ago
0
Enrollment w/ IDevID or IAK certificates
#173
nicowilliams
opened
1 year ago
2
Update swtpm to latest
#172
nicowilliams
opened
1 year ago
0
Normalize EKpubs (fix #170)
#171
nicowilliams
opened
1 year ago
0
Using EKhash = H(EKpub), when the EKpub is derived from an EKcert, is problematic
#170
nicowilliams
opened
1 year ago
3
need safeboot-users mailing list
#169
bmilliron67
opened
1 year ago
0
HCP Refactoring, last remaining safeboot patches
#168
geoffthorpe
closed
2 years ago
0
Split attestation client and server into separate safeboot-attest tree
#167
osresearch
opened
2 years ago
1
Make attest-server a flask app
#166
osresearch
closed
2 years ago
1
[Security] Workflow deb-package.yml is using vulnerable action actions/checkout
#164
akulpillai
opened
2 years ago
0
clarify EC and SPI for philistines like myself
#163
axelsimon
closed
2 years ago
0
Yubikey - luks-seal pcscd complaints
#162
sourceXORapprentice
opened
2 years ago
0
Package split
#161
nicowilliams
opened
2 years ago
2
Fix for TPM memory error (#159)
#160
sourceXORapprentice
opened
2 years ago
0
TPM2 luks-seal, out of memory for object contexts
#159
sourceXORapprentice
opened
2 years ago
4
Provable boots
#158
osresearch
opened
2 years ago
8
Don't die if files already in initramfs
#157
umbernhard
opened
2 years ago
0
Initial Qubes OS support
#156
jevank
opened
2 years ago
17
Fixes up some rough edges
#155
umbernhard
opened
2 years ago
0
cryptsetup is not installed by sudo make requirements
#154
umbernhard
opened
2 years ago
2
Function library not installed to correct path
#153
umbernhard
opened
2 years ago
2
gencert: Support use of OpenSSL for cert issuance
#152
nicowilliams
opened
2 years ago
0
Various small fixes
#151
nicowilliams
closed
2 years ago
0
attest-enroll: Fix missing continuation (mis-merge)
#150
nicowilliams
closed
2 years ago
0
getkeytab: Chase referrals to primary KDC
#149
nicowilliams
closed
2 years ago
1
Fixing swtpm --daemon...
#148
nicowilliams
opened
2 years ago
1
Split attestation into separate repo?
#147
osresearch
opened
2 years ago
1
Style guide
#146
osresearch
opened
2 years ago
0
Fixes
#145
nicowilliams
closed
2 years ago
1
Policy Expressions, takes 2 and 3
#144
nicowilliams
opened
2 years ago
7
Enrollment protocol future options: privacy CA?
#143
nicowilliams
opened
2 years ago
2
Add support for interactive attestation server signature being required to strengthen attestation binding
#142
nicowilliams
opened
2 years ago
0
Proof of possession protocol (PoP) is needed
#141
nicowilliams
opened
2 years ago
3
Sign assets
#140
nicowilliams
closed
2 years ago
3
Eventlog mutability attack
#139
osresearch
opened
2 years ago
6
Break-glass recovery feature needed
#138
nicowilliams
opened
2 years ago
0
`sbin/attest-enroll` needs to support enrolling an `EKcert`, and it should validate it
#137
nicowilliams
opened
2 years ago
7
Enrolled assets need authentication
#136
nicowilliams
opened
2 years ago
2
docs/attestation: use mermaid to render communications
#135
osresearch
closed
2 years ago
5
Complex policy expressions
#134
nicowilliams
closed
2 years ago
24
Add crude policy expression language allowing for arbitrary policy complexity
#133
nicowilliams
closed
2 years ago
1
Use encrypted sessions
#132
nicowilliams
opened
3 years ago
3
Red Hat support?
#131
bmilliron67
opened
3 years ago
0
Determine the correct partition number of the EFI system partition
#130
carlozanella
closed
2 years ago
1
windows: Bitlocker encryption keys require specific name
#129
osresearch
opened
3 years ago
3
Need profile-based PCR validation
#128
nicowilliams
opened
3 years ago
0
Next