I dusted off my limited Python skills and modified Nitrokey's "Qubes OEM" installer to add support in anaconda for changing your LUKS passphrase at first boot. With that in place, we can now offer Qubes as a preinstall option: https://puri.sm/posts/qubes-now-a-preinstall-option-for-librem-14-and-mini/
@Gina pretty good day. Was in Amsterdam briefly, and then Den Haag. New suit who dis
@Gina weeeee
Aruba I make ya sudo gonna take ya to a root prompt I wanna own ya pretty momma. Key escrow I now know baby why don't we go. Oh I want to take you down to Ring0 we'll get there fast and then we'll take it slow. That's where we want to go way down to Ring0. https://threatpost.com/hpe-sudo-bug-aruba-platform/169038/
@Gina at least it’s short drive 😂😭
Because why not write more about Tails and USB HSMs...
Updated to remove an extraneous step:
https://ajmartinez.com/tech/posts/202135-001-librem-key
If you want to use something like a Nitrokey HSM2 for other crypto needs using pkcs11 just install opensc and you're off to the races.
Have a Librem Key you want to use in Tails? Read on: https://ajmartinez.com/tech/posts/202135-001-librem-key
@Gina we leave in late November you can join us in the land of guns, rattlesnakes, rampant COVID, and broken healthcare!
But the tacos are amazing.
@kyle that’s awesome man. Old machines are often this way. Shake out accumulation of gunk. Lube. Run it another century.
Another weekend another quick FOSS project to share with whoever might find it useful: CrossBuild is a thing that exists now for providing a container with cross compilation toolchains for ARMv7 and i686. Anyone wishing to add more can surely use a multi-stage Dockerfile to extend what I've already done.
PSA for my fellow NOC managers out there in Azure land. Rotate them keys. Better safe than sorry.
https://www.wiz.io/blog/chaosdb-how-we-hacked-thousands-of-azure-customers-databases
Workaround for a little bit of annoyance between competing daemons snagging my Librem Key:
@rbrown no worries and good luck!
@rbrown join works fine for me with the HDMI port. Insert key too, though I tend to use it with a mechanical keyboard and not the awful onboard one. ctrl-shift-v pastes in the terminal, and other keys paste in Emacs, so I don't miss shift-insert much but that was why I wanted to fix it in the EC. Matt already did it though, so I just went after the numpad next just because it bothered me that I couldn't use it even if I wanted to.
I like to work with my hands. That may mean hammering out solutions to complex problems in #Python or #Rust, building things in my shop, or spinning yarn to knit something warm. You’ll likely see some of all of that here. By day (and sometimes night) I keep >13k nodes and services alive in the Electric Vehicle sector.
PGP: FCBF 31FD B34C 8555 027A D1AF 0AD2 E852 9F5D 85E1