Lanzaboote vs. bootspec-secureboot

This page summarizes the projects mentioned and recommended in the original post on /r/NixOS

Our great sponsors
  • InfluxDB - Collect and Analyze Billions of Data Points in Real Time
  • Mergify - Updating dependencies is time-consuming.
  • SonarQube - Static code analysis for 29 languages.
  • lanzaboote

    Secure Boot for NixOS [maintainers=@blitz @raitobezarius @nikstur]

    I know of two projects for supporting Secure Boot on NixOS: Lanzaboote and bootspec-secureboot.

  • bootspec-secureboot

    I know of two projects for supporting Secure Boot on NixOS: Lanzaboote and bootspec-secureboot.

  • InfluxDB

    Collect and Analyze Billions of Data Points in Real Time. Manage all types of time series data in a single, purpose-built database. Run at any scale in any environment in the cloud, on-premises, or at the edge.

  • rfcs

    The Nix community RFCs (by NixOS)

    Both require the Bootspec patches, only support systemd-boot, have recent activity, and include a Rust-based tool for signing images.

  • nixos-cfgs

    my NixOS system configs

    I had a very good time using lanzaboote as a NixOS newbie, simply following the documentation. It seems like it might be more friendly than bootspec-secureboot (which I haven't investigated). If it might be useful, I have a straightforward NixOS config using lanzaboote running on 2 machines at raehik/nixos-cfgs.

NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a more popular project.

Suggest a related project

Related posts