Re: which HSM for secure boot keys
On Sat, Dec 20, 2014 at 10:39:55PM +0100, Cyril Brulebois wrote:
>Aaron McSorley <firstname.lastname@example.org> (2014-12-19):
>> I remember some discussion about how to store the shim keys at
>> debconf, and some hardware security module being passed around. I'm
>> looking for a recommendation for a HSM for my own shim keys. Was
>> there ever a conclusion on how to store the keys for debian, and does
>> anyone remember what that little usb HSM was?
>I think you want to contact the DSA team (likely the people knowing
>about this): email@example.com
Yeah, Tollef was the guy talking about doing this side. Yubikey, maybe?
Steve McIntyre, Cambridge, UK. firstname.lastname@example.org
"We're the technical experts. We were hired so that management could
ignore our recommendations and tell us how to do our jobs." -- Mike Andrews