Purism announces a new product, Pureboot, available in 2nd quarter for Laptops + Librem key users providing a unique security service and experience. https://puri.sm/posts/pureboot-the-high-security-boot-process/ #ChooseFreedom
@Purism that's great. Please consider having multiple physical keys instead of (in addition to) recovery passphrase.
Thanks a lot @Purism.
Do you think we could find a way to mix a #Gnuk token with an USB storage to store /boot.
This USB storage could store the #LUKS header and avoid having any key material on the laptop which could be lost.
This way, we boot from the USB storage, it verifies the signatures of files on /boot, decrypt the laptop storage with the #Gnuk token.
Server run by the main developers of the project It is not focused on any particular niche interest - everyone is welcome as long as you follow our code of conduct!