PLAY PODCASTS
Full Disk Encryption in openSUSE using systemd, TPM2 and FIDO2 keys (osc25)

Full Disk Encryption in openSUSE using systemd, TPM2 and FIDO2 keys (osc25)

Learning about sdbootutil

Chaos Computer Club - recent events feed · Alberto Planas

June 27, 202544m 47s

Audio is streamed directly from the publisher (cdn.media.ccc.de) as published in their RSS feed. Play Podcasts does not host this file. Rights-holders can request removal through the copyright & takedown page.

Show Notes

With the integration of systemd-boot or grub2-bls bootloaders in the distribution, both (partially) following the boot loader specification (BLS), we have the chance to use the systemd tools to set a full disk encryption installation using TPM2 and FIDO2 keys. The sdbootutil is managing both aspects, the BLS integration and the FDE configuration. In this talk we will present how this model works in openSUSE and how can be used and troubleshooted. Licensed to the public under https://creativecommons.org/licenses/by-sa/4.0/ about this event: https://c3voc.de

Topics

49792025osc25New Technologiesgalerieosc25-engDay 2