Automated digital signing of OS artifacts
https://lists.archlinux.org/archives/list/[email protected]/thread/BOMYF4UTJJ37UIBXW52OU7WJTT3YPTKS/
#ArchLinux #Linux #RFC #OpenPGP #DigitalSignature #Automation #Signstar #NetHSM
Automated digital signing of OS artifacts
https://lists.archlinux.org/archives/list/[email protected]/thread/BOMYF4UTJJ37UIBXW52OU7WJTT3YPTKS/
#ArchLinux #Linux #RFC #OpenPGP #DigitalSignature #Automation #Signstar #NetHSM
On my way to #FOSDEM
I'll do a talk about the #ALPM project tomorrow at 18:05 in the #RustLang devroom:
If you want to chat about that project or e.g. #signstar, feel free to reach out!
Otherwise you may find me in the cantina with other #ArchLinux people.
With the release of `nethsm-cli` 0.6.0 it is now possible to issue signatures for signing requests! 🎉 📦 🦀
https://crates.io/crates/nethsm-cli/0.6.0
Signing requests for files can be created using `signstar-request-signature` (see https://chaos.social/@dvzrv/113646761365294969).
#DigitalSignature #RustLang #ArchLinux #Signstar #NetHSM #Nitrokey #OpenPGP #Cryptography
We have just released the first version of
`signstar-request-signature`, which is another piece of the #Signstar puzzle. 📦 🦀
https://crates.io/crates/signstar-request-signature/0.1.0
With this #RustLang #crate a #library and #CLI is provided for creating, reading and writing of signing requests for files.
The implementation has again been done by the awesome @wiktor 👏 🥳
High-level documentation for the #Signstar project and all of its crates is now available at https://signstar.archlinux.page
With the release of the nethsm-config crate in version 0.2.0 we have added some exciting new features!
https://crates.io/crates/nethsm-config/0.2.0
A fully validated #configuration file type can now be used to map various system user types to #NetHSM users.
This file format brings us a step closer to our first test setup for #Signstar.
The #nethsm crate has just been released in version 0.7.0. 🎉
https://crates.io/crates/nethsm/0.7.0
In this version we added several improvements for the use with #OpenPGP (such as updating to the latest #rPGP) and added integration for validated key setups.
#Rust #RustLang #ArchLinux #Signstar #Cryptography #DigitalSignature #Nitrokey
We have just released the first version of the nethsm-tests crate 🥳
https://crates.io/crates/nethsm-tests/0.1.0
This library helps to test against #NetHSM #containers and has been split out of the nethsm crate.
#Rust #RustLang #Nitrokey #ArchLinux #Signstar #DigitalSignature #Cryptography
My talk "Boring Infrastructure: Building a secure signing environment" from #asg2024 is online:
You can find the slides for it at: https://pkgbuild.com/~dvzrv/presentations/all-systems-go-2024/
#AllSystemsGo #OpenPGP #DigitalSignature #Signing #Berlin #Linux #ArchLinux #Signstar