URL details: prosauce.org/blog/2020/5/24/harden-your-linux-uefi-secure-boot-using-grub-signature-checking-and-a-yubikey#commenting
URL title:
Harden your Linux UEFI Secure Boot using GRUB signature checking and a Yubikey — casualHacking
URL description:
The goal of this article is to walk through hardening your UEFI-supported
Linux desktop’s boot. This is accomplished by replacing signature checking
keys with your own, keeping a portion of that key chain in an HSM/PIV
device, and enabling GRUB signature checking.
We want to harden our boot such that anything in the boot chain executed
before Linux requires signature verification. Caveat, that we are going to
implement verification to the extent possible, we are not going to
guarantee everyth
URL last crawled:
2022-08-06
URL speed:
0.438 MB/s,
downloaded in 0.200 seconds
We found no external links pointing to this url.