Lanzaboote vs. bootspec-secureboot

This page summarizes the projects mentioned and recommended in the original post on /r/NixOS

Our great sponsors
  • WorkOS - The modern identity platform for B2B SaaS
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • SaaSHub - Software Alternatives and Reviews
  • lanzaboote

    Secure Boot for NixOS [maintainers=@blitz @raitobezarius @nikstur]

  • I know of two projects for supporting Secure Boot on NixOS: Lanzaboote and bootspec-secureboot.

  • bootspec-secureboot

  • I know of two projects for supporting Secure Boot on NixOS: Lanzaboote and bootspec-secureboot.

  • WorkOS

    The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.

    WorkOS logo
  • rfcs

    The Nix community RFCs (by NixOS)

  • Both require the Bootspec patches, only support systemd-boot, have recent activity, and include a Rust-based tool for signing images.

  • nixos-cfgs

    my NixOS system configs

  • I had a very good time using lanzaboote as a NixOS newbie, simply following the documentation. It seems like it might be more friendly than bootspec-secureboot (which I haven't investigated). If it might be useful, I have a straightforward NixOS config using lanzaboote running on 2 machines at raehik/nixos-cfgs.

NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a more popular project.

Suggest a related project

Related posts