Danny Grove

@groved
39 Followers
109 Following
61 Posts
Co-Founder @ hashbang.sh
Owner @ drgrovellc.com
Lead Infrastructure Engineer @ manifestcyber.com
[StageX] Maintainer
#security #ReproducibleBuilds #infrastructure #privacy #OpenSource
Thoughts are my own
OpenPGPopenpgp4fpr:c92fe5a3fbd58dd3ec5aa26bb10116b8193f2dbd
Homepagehttps://dannygrove.com
Matrixhttps://matrix.to/#/@dgrove:matrix.org
Communityhttps://hashbang.sh

I’m officially on the schedule for #OSSummit + #EmbeddedLinux Conference NA! 🎤I’ll be presenting: "StageX: Rebuilding Trust Through Multi-Signed, Full-Source Bootstrapped, and Reproducible Builds". Join me May 18-20 in Minneapolis!
Use code OSSNA for 20% off your pass. ✨ Get it here: https://bit.ly/3R3d8nb

#stagex

Register | LF Events

Register Now! The registration deadline is 11:59 PM Central Daylight Time on the respective date. Quick Note: We never sell attendee lists or contact information, nor do we authorize others to do so.

LF Events

The road to post-quantum cryptography (PQC) has been long, but the end is nigh.

For the past nine months we’ve been working on technical debt issues in hockeypuck, resulting in the 2.3.x series of releases. This has included a major postgres schema redesign, in-place reloading, reindexing threads, configurable keyword search, and significant refactoring of hockeypuck’s internals. v2.3.3 is in final testing with the last of these improvements, and will be released soon.

But this is all just prep.

The goal is version 2.4, which will distribute v6 PGP keys, which support post-quantum algorithms for both encryption and signing. 2026 is the year of PQC in PGP, and the hockeypuck keyservers will be ready.

To enable the safe distribution of v6/PQC keys without breaking legacy software, we have developed an updated version of the venerable HKP API (for which HocKeyPuck is named). v1 and v2 HKP will be supported in parallel, but v6/PQC keys will only be distributed over v2.

HKPv2 is specified in https://datatracker.ietf.org/doc/html/draft-gallagher-openpgp-hkp and server implementation is underway in https://github.com/hockeypuck/hockeypuck/tree/feature/hkpv2 .

If you maintain PGP client software and wish to be PQC ready, now is the time to check out HKPv2 and what it means for your users. Join the discussion at https://groups.google.com/g/hockeypuck-devel

Hockeypuck v2.4 development is kindly supported by @NGIZero Core.

#openpgp #pgp #gnupg #pqc

OpenPGP HTTP Keyserver Protocol

This document specifies a series of conventions to implement an OpenPGP keyserver using the Hypertext Transfer Protocol (HTTP). As this document is a codification and extension of a protocol that is already in wide use, strict attention is paid to backward compatibility with these existing implementations.

IETF Datatracker

#systemd is forked, I encourage everyone to contribute by.... removing as much bloat as possible  

#privacy #anonymity #opensource #ageverification

https://legiscan.com/CA/rollcall/AB1043/id/1602264

77 of the 80 CA Senate members approved this garbage. We must stop this now in the court system and with our votes.

What ICE is doing in US airports today, it will be doing at US polling places in November. These photos aren’t funny or incongruous; they should be giving us nightmares. This has to end now.

RE: https://mastodon.social/@itsfoss/116284836011398197

Eroding privacy under the guise of "protecting children". Call your representative, let them know they will be voted out of office if they approve this. It's our job as parents and technologist to teach the next generation and help them grow responsibly, not the governments.

#privacy #PrivacyIsAHumanRight #FuckChatControl #linux #ageverification

RE: https://mastodon.social/@lobsters/116280125863583032

One of our maintainers, @zoef, makes a really strong visual case on the importance of Web of Trust especially in 2026

#security #stagex #linux #crytography

I like ZigBee for Home-Automation 🙂

Hardware from many different manufacturers, all compatible with each other.

- Philips
- Ikea
- Sonoff
- Xiaomi

No proprietary bridges, no cloud, no vendor lock-in. Just some free and open source software (Zigbee2MQTT / Home Assistant) and a tiny USB dongle (ConBee II) as a network coordinator.

All meshing nicely and every grid-powered device effectively extends my network's range by relaying datagrams.

#zigbee #homeassistant #zigbee2mqtt #smarthome #opensource