handmade.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
handmade.social is for all handmade artisans to create accounts for their Etsy and other handmade business shops.

Server stats:

36
active users

#secureboot

0 posts0 participants0 posts today
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://transfem.social/@puppygirlhornypost2" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>puppygirlhornypost2</span></a></span> <span class="h-card" translate="no"><a href="https://social.vlhl.dev/users/navi" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>navi</span></a></span> <em>nodds in agreement</em> the entire <a href="https://infosec.space/tags/CensorBoot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CensorBoot</span></a>-Stack is literally done to maximize pain and frustration, brick <a href="https://infosec.space/tags/DualBoot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DualBoot</span></a> / <a href="https://infosec.space/tags/MultiBoot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MultiBoot</span></a> setups and is by <a href="https://infosec.space/tags/Microsoft" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Microsoft</span></a>'s <a href="https://www.youtube.com/watch?v=U7VwtOrwceo&amp;t=11m10s" rel="nofollow noopener noreferrer" target="_blank">own admission inherently &amp; unfixably insecure</a>.</p><ul><li>As can be seen by the fact that they literally didn't even bother with <em>"<a href="https://infosec.space/tags/SecureBoot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecureBoot</span></a>"</em> on the <a href="https://infosec.space/tags/XboxOne" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>XboxOne</span></a> which remains uncracked to this day...</li></ul>
Frederic Jacobs<p>Given the long lifetime of automotive ECUs, pretty cool to see NXP's I.MX 94 family of automotive chips supports secure boot with post-quantum cryptography.<br><a href="https://www.nxp.com/company/about-nxp/newsroom/NW-NXP-NEW-IMX94-APPLICATIONS-PROCESSORS" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">nxp.com/company/about-nxp/news</span><span class="invisible">room/NW-NXP-NEW-IMX94-APPLICATIONS-PROCESSORS</span></a></p><p><a href="https://mastodon.social/tags/PQC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PQC</span></a> <a href="https://mastodon.social/tags/secureboot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>secureboot</span></a></p>
Codeschubse, Sith<p>Ich musste im Bios das <a href="https://ohai.social/tags/SecureBoot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecureBoot</span></a> deaktivieren, um den Rechner neu installieren zu können. Wenn ich das jetzt wieder aktiviere, kann ich dann trotzdem bei Bedarf ein Livesystem vom USB-Stick booten? Und bringt das überhaupt was, oder lass ich es einfach deaktiviert?</p>
Stephan<p>systemd-ukify: Unified Kernel Image (UKI) für UEFI Secure Boot mit YubiKey signieren</p><p><a href="https://www.codingblatt.de/secure-boot-systemd-ukify-yubikey-signieren/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">codingblatt.de/secure-boot-sys</span><span class="invisible">temd-ukify-yubikey-signieren/</span></a></p><p><a href="https://social.tchncs.de/tags/linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>linux</span></a> <a href="https://social.tchncs.de/tags/systemd" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>systemd</span></a> <a href="https://social.tchncs.de/tags/secureboot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>secureboot</span></a> <a href="https://social.tchncs.de/tags/yubikey" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>yubikey</span></a></p>
David Sardari<p><span class="h-card" translate="no"><a href="https://fosstodon.org/@Gentoo_eV" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>Gentoo_eV</span></a></span> Given that I get a KVM console in time, I will demonstrate my installation guide (<a href="https://gentoo.duxsco.de/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">gentoo.duxsco.de/</span><span class="invisible"></span></a>) in English using a <a href="https://fedifreu.de/tags/Hetzner" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Hetzner</span></a> dedicated server.</p><ul><li><strong>What?</strong> <em>Beyond Secure Boot – Measured Boot on Gentoo Linux?</em></li><li><strong>When?</strong> Saturday, 2024-10-19 at 18:00 UTC (20:00 CEST)</li><li><strong>Where?</strong> Video call via BigBlueButton: <a href="https://bbb.gentoo-ev.org/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">bbb.gentoo-ev.org/</span><span class="invisible"></span></a></li></ul><p>The final setup will feature:</p><ul><li><a href="https://fedifreu.de/tags/SecureBoot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecureBoot</span></a>: All EFI binaries and unified kernel images are signed.</li><li><a href="https://fedifreu.de/tags/MeasuredBoot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MeasuredBoot</span></a>: <a href="https://fedifreu.de/tags/clevis" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>clevis</span></a> and <a href="https://fedifreu.de/tags/tang" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tang</span></a> will be used to check the system for manipulations via <a href="https://fedifreu.de/tags/TPM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TPM</span></a> 2.0 PCRs and for remote LUKS unlock (you don't need tty).</li><li>Fully encrypted: Except for ESPs, all partitions are <a href="https://fedifreu.de/tags/LUKS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LUKS</span></a> encrypted.</li><li><a href="https://fedifreu.de/tags/RAID" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RAID</span></a>: Except for ESPs, <a href="https://fedifreu.de/tags/btrfs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>btrfs</span></a> and <a href="https://fedifreu.de/tags/mdadm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mdadm</span></a> based <a href="https://fedifreu.de/tags/RAID" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RAID</span></a> are used for all partitions.</li><li>Rescue System: A customised <a href="https://fedifreu.de/tags/SystemRescue" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SystemRescue</span></a> (<a href="https://www.system-rescue.org/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">system-rescue.org/</span><span class="invisible"></span></a>) supports SSH logins and provides a convenient chroot.sh script.</li><li>Hardened <a href="https://fedifreu.de/tags/Gentoo" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Gentoo</span></a> <a href="https://fedifreu.de/tags/Linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Linux</span></a> for a highly secure, high stability production environment.</li><li>If enough time is left at the end, <a href="https://fedifreu.de/tags/SELinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SELinux</span></a> which provides Mandatory Access Control using type enforcement and role-based access control</li></ul>
David Sardari<p><span class="h-card" translate="no"><a href="https://fosstodon.org/@Gentoo_eV" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>Gentoo_eV</span></a></span> I linked your announcement at the top of every page at:<br><a href="https://gentoo.duxsco.de/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">gentoo.duxsco.de/</span><span class="invisible"></span></a></p><p><a href="https://fedifreu.de/tags/gentoo" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gentoo</span></a> <a href="https://fedifreu.de/tags/measuredboot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>measuredboot</span></a> <a href="https://fedifreu.de/tags/secureboot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>secureboot</span></a> <a href="https://fedifreu.de/tags/systemrescue" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>systemrescue</span></a></p>
RainTechnology/Programs that are black magic to me and I will never understand how to properly use them no matter how bad i want to. (In no special order)<br><br>- <a class="hashtag" href="https://melonbread.dev/tag/blender" rel="nofollow noopener noreferrer" target="_blank">#Blender</a> (3D Modeling in general)<br>- <a class="hashtag" href="https://melonbread.dev/tag/cmake" rel="nofollow noopener noreferrer" target="_blank">#CMake</a><br>- <a class="hashtag" href="https://melonbread.dev/tag/dwarffortress" rel="nofollow noopener noreferrer" target="_blank">#DwarfFortress</a><br>- <a class="hashtag" href="https://melonbread.dev/tag/freecad" rel="nofollow noopener noreferrer" target="_blank">#freeCAD</a> (or cad in general)<br>- <a class="hashtag" href="https://melonbread.dev/tag/rust" rel="nofollow noopener noreferrer" target="_blank">#Rust</a>-lang (I can run `cargo install` just fine)<br>- <a class="hashtag" href="https://melonbread.dev/tag/powershell" rel="nofollow noopener noreferrer" target="_blank">#PowerShell</a> (eh, don't care that I don't get this one)<br>- <a class="hashtag" href="https://melonbread.dev/tag/secureboot" rel="nofollow noopener noreferrer" target="_blank">#SecureBoot</a><br>- <a class="hashtag" href="https://melonbread.dev/tag/treafik" rel="nofollow noopener noreferrer" target="_blank">#Treafik</a> <br><br>This is probably more but man it kills me I can not wrap my head around these.
Alex Cordonnier<p>A bit late to the fediverse party, but here's my <a href="https://infosec.exchange/tags/introduction" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>introduction</span></a>:</p><p>I'm a software engineer in the SF Bay Area working on <a href="https://infosec.exchange/tags/secureboot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>secureboot</span></a> architecture and <a href="https://infosec.exchange/tags/bringup" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bringup</span></a> at a major tech company. Interested in <a href="https://infosec.exchange/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> (obviously, on this server) and extreme <a href="https://infosec.exchange/tags/homeautomation" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>homeautomation</span></a>. Also enjoy <a href="https://infosec.exchange/tags/hiking" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hiking</span></a>, <a href="https://infosec.exchange/tags/cooking" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cooking</span></a> with my wonderful wife, the <a href="https://infosec.exchange/tags/oxfordcomma" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>oxfordcomma</span></a>, and <a href="https://infosec.exchange/tags/lotr" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>lotr</span></a>. Go <a href="https://infosec.exchange/tags/Illini" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Illini</span></a>! 🔶​🔷​</p><p><a href="https://infosec.exchange/tags/twittermigration" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>twittermigration</span></a></p>