!agkXCfUrgbadYlQXRj:kack.it

NixOS + TPMs

188 Members
50 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
11 Aug 2021
@mic92:nixos.devMic92So would need an activation phase that signs all keys afterwards?16:10:35
13 Aug 2021
@grahamc:nixos.org@grahamc:nixos.orgthe work I'm doing around secureboot support is based on a more involved bootloader "install" step which could support signing modules19:47:39
18 Aug 2021
@mic92:nixos.devMic92https://github.com/NixOS/nixpkgs/pull/13457705:30:59
@grahamc:nixos.org@grahamc:nixos.org
     tpm2_unseal -c ${dev.tpm2KeyFile.persistentObject} -p ${dev.tpm2KeyFile.authString} > /crypt-ramfs/tpm/unsealed
14:47:23
@grahamc:nixos.org@grahamc:nixos.orgI'm thinking this should be starting an auth session (I think that is the right term) and using the session key for subsequent calls so that the channel with the TPM is all encrypted14:48:23
@grahamc:nixos.org@grahamc:nixos.orgis tpm2_startauthsession the command which does that?14:48:52
@roosemberth:orbstheorem.chRoos joined the room.18:47:17
29 Aug 2021
@vika:matrix.nice.sampler.fivika (she/her) 🏳️‍⚧️ joined the room.09:45:57
31 Aug 2021
@florian:web3.foundationFlorian | W3F changed their display name from Florian | W3F to Florian | W3F - OoO.08:11:03
2 Sep 2021
@tnias:stratum0.orgtnias joined the room.21:50:46
4 Sep 2021
@0x4a6f:matrix.org[0x4A6F] joined the room.09:55:44
9 Sep 2021
@sugi:matrix.besaid.desugi joined the room.22:35:18
13 Sep 2021
@florian:web3.foundationFlorian | W3F changed their display name from Florian | W3F - OoO to Florian | W3F - OoO Mon/Tue.11:56:00

Show newer messages


Back to Room ListRoom Version: 6