heads/initrd/bin
Kyle Rankin efd6b066a2
Add a "Factory reset" GPG option
This mimics tlauion's OEM work in the sense that a user (or OEM) could
choose this option and it will reset an OpenPGP smart card and
automatically generate a random key on it. The idea is to allow an OEM
to set up a Librem Key and Heads on a machine before shipping with a
random key, so the user can test for tampering when they receive the
machine, and then the user can choose to reset all of the keys with
their chosen keys after that fact.
2019-04-19 08:35:01 -07:00
..
cbfs-init Read and measure an EFI file into initrd during init 2018-04-29 19:58:44 -07:00
config-gui.sh Show the last setting for a config option if more than one exist 2018-12-06 16:45:40 -08:00
flash-gui.sh Add GPG GUI 2019-02-19 06:48:08 -08:00
flash.sh Use global /tmp/config that combines multiple config files 2018-12-06 15:24:28 -08:00
flashrom-kgpe-d16-openbmc.sh Re-add the flashrom script for kgpe-d16-openbmc 2018-05-11 14:23:48 -07:00
generic-init Use global /tmp/config that combines multiple config files 2018-12-06 15:24:28 -08:00
gpg-gui.sh Add a "Factory reset" GPG option 2019-04-19 08:35:01 -07:00
gpgv Enable gpg with card support (issue #32) 2017-04-05 17:59:49 -04:00
gui-init Add GPG GUI 2019-02-19 06:48:08 -08:00
kexec-boot Use global /tmp/config that combines multiple config files 2018-12-06 15:24:28 -08:00
kexec-insert-key Allow boot without unseal of TPM LUKS key 2017-09-02 14:13:29 -04:00
kexec-iso-init Use global /tmp/config that combines multiple config files 2018-12-06 15:24:28 -08:00
kexec-parse-boot Strip invalid leading/trailing '/' from script params 2017-09-02 14:13:29 -04:00
kexec-save-default Use global /tmp/config that combines multiple config files 2018-12-06 15:24:28 -08:00
kexec-save-key Allow TPM LUKS key to be set during default selection 2017-09-02 14:13:29 -04:00
kexec-seal-key also shred LUKS sealed secret when done instead of rm it 2019-02-24 10:29:09 -05:00
kexec-select-boot Use global /tmp/config that combines multiple config files 2018-12-06 15:24:28 -08:00
kexec-sign-config Use global /tmp/config that combines multiple config files 2018-12-06 15:24:28 -08:00
kexec-unseal-key supress errors on console when files don't exist (equivalent of rm -f) 2019-02-24 10:28:57 -05:00
key-init properly deal with trusting keys to supress UX confusion about trusted keys 2019-02-08 12:38:38 -05:00
mount-usb Cleanup of init to support server and desktop 2018-02-25 11:51:19 -08:00
network-init-recovery Add all supported network modules to network-init-recovery 2018-04-20 09:29:57 -07:00
poweroff Ensure recovery for failed default boot 2017-09-02 14:13:29 -04:00
qubes-measure-luks qubes init script and improved TPM disk encryption with LUKS headers (issue #123 and #6) 2017-04-01 23:02:00 -04:00
reboot Ensure recovery for failed default boot 2017-09-02 14:13:29 -04:00
seal-libremkey supress errors on console when files don't exist (equivalent of rm -f) 2019-02-24 10:28:57 -05:00
seal-totp shred TOTP_SECRET also when generation is successful 2019-02-24 11:11:00 -05:00
tpm-reset helper to do a forcible TPM reset (issue #27) 2017-04-12 06:45:15 -04:00
uefi-init Read and measure an EFI file into initrd during init 2018-04-29 19:58:44 -07:00
unseal-hotp supress errors on console when files don't exist (equivalent of rm -f) 2019-02-24 10:28:57 -05:00
unseal-totp supress errors on console when files don't exist (equivalent of rm -f) 2019-02-24 10:28:57 -05:00
usb-init Use global /tmp/config that combines multiple config files 2018-12-06 15:24:28 -08:00
usb-scan Use global /tmp/config that combines multiple config files 2018-12-06 15:24:28 -08:00
wget-measure.sh wget and measure files into the PCR 2017-03-27 18:03:29 -04:00
x230-flash.init Use global /tmp/config that combines multiple config files 2018-12-06 15:24:28 -08:00