Our great sponsors
-
WorkOS
The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.
I know of two projects for supporting Secure Boot on NixOS: Lanzaboote and bootspec-secureboot.
I know of two projects for supporting Secure Boot on NixOS: Lanzaboote and bootspec-secureboot.
Both require the Bootspec patches, only support systemd-boot, have recent activity, and include a Rust-based tool for signing images.
I had a very good time using lanzaboote as a NixOS newbie, simply following the documentation. It seems like it might be more friendly than bootspec-secureboot (which I haven't investigated). If it might be useful, I have a straightforward NixOS config using lanzaboote running on 2 machines at raehik/nixos-cfgs.