diff options
author | tpearson@raptorengineering.com <tpearson@raptorengineering.com> | 2016-08-18 04:46:47 -0500 |
---|---|---|
committer | Samuel Mendoza-Jonas <sam@mendozajonas.com> | 2016-08-26 13:23:01 +1000 |
commit | ccb478ac2e5b1e24ebb6af4130fdd37e1b36babb (patch) | |
tree | 3d6846ae2b791ab11f3d5069f9097199f34cf529 /bootstrap | |
parent | f5dab0206a3baca73895a587583ddfa402f8f569 (diff) | |
download | talos-petitboot-ccb478ac2e5b1e24ebb6af4130fdd37e1b36babb.tar.gz talos-petitboot-ccb478ac2e5b1e24ebb6af4130fdd37e1b36babb.zip |
Add encrypted file support
In certain cases, such as network booting over an untrusted connection,
it may be useful to fully encrypt and sign the kernel files.
Enable fully encrypted boot using builtin keyring via the addition of
the string "ENCRYPTED" to the first line of the /etc/pb-lockdown file.
This disables detached (plaintext) signature verification.
Signed-off-by: Timothy Pearson <tpearson@raptorengineering.com>
Signed-off-by: Samuel Mendoza-Jonas <sam@mendozajonas.com>
Diffstat (limited to 'bootstrap')
0 files changed, 0 insertions, 0 deletions