mkinitcpio-ykfde
yubico-pam
mkinitcpio-ykfde | yubico-pam | |
---|---|---|
2 | 6 | |
105 | 664 | |
- | 0.0% | |
2.3 | 0.0 | |
4 months ago | over 1 year ago | |
C | C | |
GNU General Public License v3.0 only | BSD 2-clause "Simplified" License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
mkinitcpio-ykfde
-
sd-encrypt, LUKS partition unlock and YubiKey - Erratic behavior
I am interested in running a self-signed Secure Boot LUKS setup that I could unlock with my YubiKey. I've tried an initramfs hook in my other devices and it works. However, I read this section about unlocking the LUKS partition with systemd and its integrated enrollment tool (systemd-cryptenroll) and my interest was piqued since it meant an integrated solution that doesn't depend on a third-party one.
-
Second factor LUKS encryption via Yubikey on Fedora 33
Found a solution myself: https://github.com/eworm-de/mkinitcpio-ykfde/blob/master/README-dracut.md
yubico-pam
-
Mac OS login by trouch
There's documentation online for yubico-pam here: https://developers.yubico.com/yubico-pam/
- Yubikey with Microsoft account...
-
Built-in 2FA is great
You can even use a Yubikey as a 2FA for signing in to MacOS or Windows, and through the magic of PAM it also works on Linux
-
Any cool uses for the Yubikey?
If you're on linux, you can do awesome PAM stuff with Yubico's module.
-
Default key on factory-fresh Yubikey 5
https://developers.yubico.com/yubico-pam/ https://developers.yubico.com/pam-u2f/
-
FreeBSD 13/OPNsense
"GitHub - Yubico/yubico-pam: Yubico Pluggable Authentication Module (PAM)" https://github.com/Yubico/yubico-pam
What are some alternatives?
libfido2 - Provides library functionality for FIDO2, including communication with a device over USB or NFC.
Purse - GnuPG asymmetric password manager
dracut-crypt-ssh - dracut initramfs module to start dropbear sshd during boot to unlock the root filesystem with the (cryptsetup) LUKS passphrase remotely
OpenKeychain - OpenKeychain is an OpenPGP implementation for Android.
OpenSSL - TLS/SSL and crypto library
pam-onelogin - pam-onelogin is a pretty complete pam/nss stack for using OneLogin as authentication source (with MFA) and user/group lookups. Primarily used for SSH.
c-toxcore - The future of online communications.
yubico-piv-tool - Command line tool for the YubiKey PIV application
linux - Arch Linux kernel sources, with patches (Mirror)
Git - Git Source Code Mirror - This is a publish-only repository but pull requests can be turned into patches to the mailing list via GitGitGadget (https://gitgitgadget.github.io/). Please follow Documentation/SubmittingPatches procedure for any of your improvements.