lemmy.dudeami.win
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
cm0002@programming.dev to Linux@programming.dev · 5 days ago

Protecting against rogue devices with Full Disk Encryption and TPM

news.opensuse.org

external-link
message-square
6
fedilink
  • cross-posted to:
  • linux@lemmy.ml
51
external-link

Protecting against rogue devices with Full Disk Encryption and TPM

news.opensuse.org

cm0002@programming.dev to Linux@programming.dev · 5 days ago
message-square
6
fedilink
  • cross-posted to:
  • linux@lemmy.ml
Protecting against rogue devices in openSUSE with Full Disk Encryption
news.opensuse.org
external-link
openSUSE have now multiple ways to configure a Full Disk Encryption (FDE) installation. A very secure and easy way (YaST2) of doing this is via user space to...
alert-triangle
You must log in or register to comment.
  • thann@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    8
    arrow-down
    1
    ·
    4 days ago

    UEFI is the problem, we need coreboot!

    • Possibly linux@lemmy.zip
      link
      fedilink
      English
      arrow-up
      3
      ·
      3 days ago

      Tianocore is the foss implementation

  • uawarebrah@sh.itjust.works
    link
    fedilink
    arrow-up
    8
    arrow-down
    1
    ·
    4 days ago

    Linux still needs some work in this space, we need full verified boot and ways to protect the boot partition against evil maid attacks. This is one major reason I haven’t been able to fully switch to Linux.

  • Björn Tantau@swg-empire.de
    link
    fedilink
    arrow-up
    2
    ·
    4 days ago

    Can someone ELI5? Do I have to do something when I just use FDE with a passphrase?

    • Possibly linux@lemmy.zip
      link
      fedilink
      English
      arrow-up
      3
      ·
      3 days ago

      You can use TPM2 on Linux but it can have some bad security consequences if done incorrectly.

  • Possibly linux@lemmy.zip
    link
    fedilink
    English
    arrow-up
    1
    ·
    3 days ago

    Interesting

    Secure boot is very hard to get right. At Tue moment I would be hesitant to rely on it solely.

Linux@programming.dev

linux@programming.dev

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !linux@programming.dev

A community for everything relating to the GNU/Linux operating system (except the memes!)

Also, check out:

  • !linux_memes@programming.dev
  • !linuxphones@lemmy.ca
  • Matrix instant messaging group chat

Original icon base courtesy of lewing@isc.tamu.edu and The GIMP

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 473 users / day
  • 1.92K users / week
  • 4.14K users / month
  • 9.75K users / 6 months
  • 1 local subscriber
  • 8.55K subscribers
  • 2.13K Posts
  • 15.4K Comments
  • Modlog
  • mods:
  • Ategon@programming.dev
  • adr1an@programming.dev
  • dwraf_of_ignorance@programming.dev
  • BE: 0.19.8
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org