LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Slackware
User Name
Password
Slackware This Forum is for the discussion of Slackware Linux.

Notices


Reply
  Search this Thread
Old 09-15-2021, 09:41 PM   #1
gbschenkel
Member
 
Registered: Nov 2010
Location: Porto Alegre, Brazil
Distribution: Slackware, Proxmox, AlpineLinux, Devuan, TurnkeyLinux
Posts: 99

Rep: Reputation: 60
TPM 2.0 with tpm2-tools


I just saw Slackware don't have any TPM tools(official or community). Some majors distro have it since 2016.

Since newer Desktop and Server now use UEFI, I think is maybe will be nice to add tpm2-tools to handle TPM 2.0. BIOS only use TPM 1.2 and appear none have take interest to implement it until now.

Appears Slackware could run full encrypted with the keys stored on TPM and Secure Boot using the keys to trust and unlock Slackware.

I just bought two AOM-TPM-9665V, one -C model for my Asus X99 mobo (workstation) and a -S model for my SuperMicro X10DRi (homelab). The delivery will take 1(one) month to arrive here, maybe will be nice have this on Slackware, but some with a newer CPU which has the TPM 2.0 built-in can create the package for Patrick add into the future Slackware 15.0.

https://github.com/tpm2-software
https://tpm2-tools.readthedocs.io/en/latest/INSTALL/

"TPM2 is designed to have many possible algorithms, including support for elliptic curve and a host of government mandated (Russian and Chinese) crypto systems. There’s no requirement for any shipping TPM2 to support any particular algorithms, so you actually have to ask your TPM what it supports. The bedrock for TPM2 in the West seems to be RSA1024-2048, ECC and AES for crypto and SHA1 and SHA256 for hashes." - source


Some sources of information.
https://paolozaino.wordpress.com/2018/06/15/tpm-module/
https://paolozaino.wordpress.com/202...dule-on-linux/
https://link.springer.com/book/10.10...-1-4302-6584-9
https://pawitp.medium.com/full-disk-...0-c0892cab9704
https://pawitp.medium.com/the-correc...x-a0421796eade

https://blog.hansenpartnership.com/tpm2-and-linux/
 
Old 10-12-2021, 08:29 AM   #2
hatersgottahate
LQ Newbie
 
Registered: Oct 2021
Location: The UK
Distribution: arch btw
Posts: 26
Blog Entries: 8

Rep: Reputation: Disabled
No stuff, no nonsense, it's Slackware. The thing's from 1993, it didn't have an update since 2016, TPM 2 wasn't invented then.
 
Old 10-12-2021, 11:48 PM   #3
gbschenkel
Member
 
Registered: Nov 2010
Location: Porto Alegre, Brazil
Distribution: Slackware, Proxmox, AlpineLinux, Devuan, TurnkeyLinux
Posts: 99

Original Poster
Rep: Reputation: 60
Quote:
Originally Posted by hatersgottahate View Post
No stuff, no nonsense, it's Slackware. The thing's from 1993, it didn't have an update since 2016, TPM 2 wasn't invented then.
Nonsense, http://www.slackware.com/changelog/c...php?cpu=x86_64
Go troll other forum, or get a job.
 
5 members found this post helpful.
Old 10-13-2021, 03:15 AM   #4
hatersgottahate
LQ Newbie
 
Registered: Oct 2021
Location: The UK
Distribution: arch btw
Posts: 26
Blog Entries: 8

Rep: Reputation: Disabled
Quote:
Originally Posted by gbschenkel View Post
Nonsense, http://www.slackware.com/changelog/c...php?cpu=x86_64
Go troll other forum, or get a job.
According to WPedia, Slack didn't get a Mainstream update since 2016. It's kernal is still on 4.x! That's what I call a outdated Distro

Quote:
Current (pre-release) ChangeLog for x86_64

Last edited by hatersgottahate; 10-13-2021 at 03:19 AM. Reason: typo
 
Old 10-13-2021, 04:36 AM   #5
ctrlaltca
Member
 
Registered: May 2019
Location: Italy
Distribution: Slackware
Posts: 323

Rep: Reputation: 361Reputation: 361Reputation: 361Reputation: 361
gbschenkel, I'm not sure tpm is a good candidate for the mainline distro, unless other software already included can benefit from it (eg. adding hardware-based crypto/hash capabilities to openssl/gnutls).
I saw you can use it to store keys for luks: https://glentomkowiak.medium.com/luk...tu-df867cad9a1 and that would be really a nice thing to explore!
For sure right now it's a good candidate for a slackbuild at https://slackbuilds.org/
 
2 members found this post helpful.
Old 10-13-2021, 08:43 AM   #6
garpu
Senior Member
 
Registered: Oct 2009
Distribution: Slackware
Posts: 1,538

Rep: Reputation: 899Reputation: 899Reputation: 899Reputation: 899Reputation: 899Reputation: 899Reputation: 899
There was a dust-up on the gamingonlinux discord a few months ago about Slackware. Like how hard is it to understand that Slackware has two versions. And even the "stable" one still gets security updates? The person didn't believe that I was using the 5.13 (at the time) kernel, when stable had the 4.something one.

Back on topic...think TPM2-tools would be a great candidate for a slackbuild, if not in /extra. Those who need it can build it. Those who don't, don't need to.
 
1 members found this post helpful.
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
How to use the tpm-tools on linux? poplinux Linux - Security 2 10-24-2015 07:26 PM
unlocking USB-attached FDE HDDs - is this possible with TrouSers and tpm-tools? libCognition Linux - Software 0 05-01-2012 06:16 AM
Trying to understand Trusted Computing? TPM module .. ysatxh Linux - Security 4 05-24-2011 03:56 PM
tpm keyring >># make smsoft Linux - Software 2 06-10-2010 10:56 AM
LXer: Linux and the Trusted Platform Module (TPM) LXer Syndicated Linux News 1 09-28-2009 03:00 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Slackware

All times are GMT -5. The time now is 08:25 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration