RFC: Automated digital signing of OS artifacts - Arch-dev-public - lists.archlinux.org

On my way to #FOSDEM

I'll do a talk about the #ALPM project tomorrow at 18:05 in the #RustLang devroom:

https://fosdem.org/2025/schedule/event/fosdem-2025-6259-adventures-in-oxidizing-arch-linux-package-management/

If you want to chat about that project or e.g. #signstar, feel free to reach out!
Otherwise you may find me in the cantina with other #ArchLinux people.

#FOSDEM2025

FOSDEM 2025 - Adventures in oxidizing Arch Linux Package Management

With the release of `nethsm-cli` 0.6.0 it is now possible to issue signatures for signing requests! 🎉 📦 🦀

https://crates.io/crates/nethsm-cli/0.6.0

Signing requests for files can be created using `signstar-request-signature` (see https://chaos.social/@dvzrv/113646761365294969).

#DigitalSignature #RustLang #ArchLinux #Signstar #NetHSM #Nitrokey #OpenPGP #Cryptography

crates.io: Rust Package Registry

We have just released the first version of
`signstar-request-signature`, which is another piece of the #Signstar puzzle. 📦 🦀

https://crates.io/crates/signstar-request-signature/0.1.0

With this #RustLang #crate a #library and #CLI is provided for creating, reading and writing of signing requests for files.
The implementation has again been done by the awesome @wiktor 👏 🥳

#ArchLinux #NetHSM #Nitrokey #DigitialSignature #OpenPGP

crates.io: Rust Package Registry

High-level documentation for the #Signstar project and all of its crates is now available at https://signstar.archlinux.page

#ArchLinux #NetHSM #Nitrokey #Cryptography #RustLang

Introduction - Signstar

We have just released the first version of the nethsm-backup #crate 📦 🦀

https://crates.io/crates/nethsm-backup/0.1.0

The #RustLang library, written by the wonderful @wiktor, is used to #parse, #decrypt, #validate and #browse #NetHSM #backups.

#Nitrokey #ArchLinux #Signstar #Rust

crates.io: Rust Package Registry

With the release of the nethsm-config crate in version 0.2.0 we have added some exciting new features!

https://crates.io/crates/nethsm-config/0.2.0

A fully validated #configuration file type can now be used to map various system user types to #NetHSM users.
This file format brings us a step closer to our first test setup for #Signstar.

#Rust #RustLang #Signstar #ArchLinux #Nitrokey

crates.io: Rust Package Registry

The #nethsm crate has just been released in version 0.7.0. 🎉

https://crates.io/crates/nethsm/0.7.0

In this version we added several improvements for the use with #OpenPGP (such as updating to the latest #rPGP) and added integration for validated key setups.

#Rust #RustLang #ArchLinux #Signstar #Cryptography #DigitalSignature #Nitrokey

crates.io: Rust Package Registry

We have just released the first version of the nethsm-tests crate 🥳

https://crates.io/crates/nethsm-tests/0.1.0

This library helps to test against #NetHSM #containers and has been split out of the nethsm crate.

#Rust #RustLang #Nitrokey #ArchLinux #Signstar #DigitalSignature #Cryptography

crates.io: Rust Package Registry

Boring infrastructure: Building a secure signing environment

media.ccc.de