aboutsummaryrefslogtreecommitdiff
path: root/profiles/remote-unlock.nix (unfollow)
Commit message (Collapse)AuthorFilesLines
45 hoursunlock the disk using the host's TPMFranck Cuny1-2/+0
3 daysadding a new VM for testingFranck Cuny1-1/+1
Re-key all the secrets.
2026-01-12simplify ssh key managementFranck Cuny1-18/+6
2026-01-05add ssh keys from the yubikeysFranck Cuny1-0/+12
2025-11-28add a module to remotely unlock machinesFranck Cuny1-0/+3
For machines with full disk encryption, we can remotely unlock them from bree. A systemd timer will run every 10 minutes and check if we need to unlock the host. If we need to, it will SSH and provide the passphrase to unlock the disk(s).
2025-10-24move remote-unlock as a profileFranck Cuny1-0/+22