!agkXCfUrgbadYlQXRj:kack.it

NixOS + TPMs

186 Members
53 Servers

Load older messages


SenderMessageTime
12 Dec 2024
@baloo_:matrix.orgbaloolooking forward to that ><04:25:13
@numinit:matrix.orgMorgan (@numinit)that and plenty of Android (OEM) key attestation, which uses them and also completely stretches the definition of key attestation in a million ways 04:26:28
@numinit:matrix.orgMorgan (@numinit) asn.1 for days... 04:27:09
@numinit:matrix.orgMorgan (@numinit)fun fact:04:53:25
@numinit:matrix.orgMorgan (@numinit)PKCS#11 was created by OASIS, the same creators of standards as well designed and respected as.... SAML04:53:57
@numinit:matrix.orgMorgan (@numinit) 😬But at least they somewhat redeemed themselves with virtio. 04:54:25
14 Dec 2024
@netpleb:matrix.orgnetpleb joined the room.23:24:44
@netpleb:matrix.orgnetplebIs it possible for me to supply the seeds for my TPM rather than have the TPM generate them?23:31:15
@netpleb:matrix.orgnetpleb * Is it possible for me to supply the seeds to my TPM rather than have the TPM generate them?23:31:29
@netpleb:matrix.orgnetpleb * Is it possible for me to supply the endorsement and platform seeds to my TPM rather than have the TPM generate them?23:36:25
16 Dec 2024
@netpleb:matrix.orgnetpleb attempting to answer my own question here: as far as I can tell this is probably possible for a virtual/emulated TPM but is likely not straightforward. Still not sure about physical TPMs 20:48:09
22 Dec 2024
@allrealmsoflife:matrix.orgallrealmsoflife joined the room.20:27:05
24 Dec 2024
@karlthane:matrix.orgkarlthane joined the room.13:57:17
@karlthane:matrix.orgkarlthane left the room.14:03:13
@karlthane:matrix.orgkarlthane joined the room.14:09:52
25 Dec 2024
@cathal_mullan:matrix.orgCathal joined the room.14:38:33
26 Dec 2024
@10leej:matrix.org@10leej:matrix.org joined the room.01:41:10
@10leej:matrix.org@10leej:matrix.org left the room.01:41:56
@elikoga:matrix.orgelikoga changed their display name from elikoga to elikoga (@38c3 📞448{0,1}.15:21:39
@elikoga:matrix.orgelikoga changed their display name from elikoga (@38c3 📞448{0,1} to elikoga (@38c3 📞448{0,1}).15:25:57
@elikoga:matrix.orgelikoga changed their display name from elikoga (@38c3 📞448{0,1}) to elikoga (@38c3 📞488{0,1}).15:26:37
27 Dec 2024
@raitobezarius:matrix.orgraitobezarius changed their display name from raitobezarius to raitobezarius (DECT: 3538 / EPVPN 2681).07:32:18
29 Dec 2024
@elikoga:matrix.orgelikoga changed their display name from elikoga (@38c3 📞488{0,1}) to elikoga (@38c3 📞488{0,1,9}).11:02:52
30 Dec 2024
@raitobezarius:matrix.orgraitobezarius changed their display name from raitobezarius (DECT: 3538 / EPVPN 2681) to raitobezarius.16:28:21
1 Jan 2025
@mjolnir:nixos.orgNixOS Moderation Botchanged room power levels.14:26:17
3 Jan 2025
@elikoga:matrix.orgelikoga changed their display name from elikoga (@38c3 📞488{0,1,9}) to elikoga.10:28:02
12 Jan 2025
@nakibrayane:matrix.orgRayane Nakib (ريّان نقيب) joined the room.12:37:08
@nakibrayane:matrix.orgRayane Nakib (ريّان نقيب)Hello, I recently got a new laptop with a modern CPU that have a TPM chip, What can I do with it to improve the security of my system?12:45:10
@elikoga:matrix.orgelikoga
In reply to @nakibrayane:matrix.org
Hello, I recently got a new laptop with a modern CPU that have a TPM chip, What can I do with it to improve the security of my system?

https://jnsgr.uk/2024/04/nixos-secure-boot-tpm-fde/

You can use it to unlock your encrypted disk without user intervention

14:59:17
@nakibrayane:matrix.orgRayane Nakib (ريّان نقيب)How is this more secure then dm-crypt with a password, If someone store my laptop, they can just assess all the data in it.16:30:53

Show newer messages


Back to Room ListRoom Version: 6