Differences between revisions 1 and 31 (spanning 30 versions)
Revision 1 as of 2018-01-12 17:08:27
Size: 948
Editor: HectorOron
Comment: Initial template for secure boot sprint
Revision 31 as of 2018-04-30 17:29:35
Size: 5243
Editor: ?ansgar
Comment: add link to report
Deletions are marked like this. Additions are marked like this.
Line 5: Line 5:
 * when: March 1st-4th, 2018
 * where: [[http://linuxhotel.de/|Linux Hotel]], Essen
 * when: April 5th-8th, 2018 (Final dates)
 * where: [[http://www.office-factory.net/|Office Factory]], Fulda
Line 12: Line 12:
||#||'''Name''' ||'''E-Mail''' ||'''Nick'''||'''Arrival'''||'''Departure'''||'''Confirmed'''||'''(Long) PGP ID''' ||'''Thu'''||'''Fri'''||'''Sat'''||'''Sun'''||'''Notes''' ||
||01|| || || || || || || || || || || || || ||
||# ||'''Name''' ||'''E-Mail''' ||'''Nick'''||'''Arrival'''||'''Departure'''||'''Confirmed'''||'''(Long) PGP ID''' ||'''Thu'''||'''Fri'''||'''Sat'''||'''Sun'''||'''Need travel sponsor?'''|| '''Need accomodation sponsor?'''||'''Need food sponsor?'''||'''Notes''' ||
||01|| Helen Koike || helen.koike@collabora.com || koike || || || || || ✓ || ✓ || ✓ || ✓ || ✓ || ✓ || - || ||
||02|| Chris Lamb || lamby@debian.org || lamby || || || If need be || || || || || || || || || || ||
||03|| Luke Faraone || lfaraone@debian.org || lfaraone || || || || || || || || || - || - || || ||
||04|| SteveMcIntyre|| 93sam@debian.org || Sledge || Wed pm || Sun evening || ✓ || 587979573442684E || ✓ || ✓ || ✓ || ✓ || ✓ || ✓ || || ||
||05|| Philipp Hahn || pmhahn@debian.org || pmhahn || Thu 09:00 || Sun || ✓ || || ✓ || ✓ || ✓ || ✓ || - || - || - || ||
||06|| BenHutchings || benh@debian.org || bwh || Wed evening || Sun evening || ✓ || E7BFC8EC95861109 || ✓ || ✓ || ✓ || ✓ || ✓ || ✓ || - || ||
||07|| Ansgar Burchardt || ansgar@debian.org || ansgar || Wed || Sun || ✓ || || ✓ || ✓ || ✓ || ✓ || || || || ||
||08|| || || || || || || || || || || || || || || ||
Line 17: Line 25:
 * TBD  * Secure Boot goal
 * Current state
 * Signing infrastructure proposals
 * Integration with Dak and potential issues
 * Integration with Buildd, concerns with the NEW queue and other potential issues
 * Potential issues with embargoes packages / security uploads
 * Potential issues with binNMU uploads
 * Signing duration time concerns, resource management
 * Reproducible builds
 * Revocation process
 * Manual process vs automated (security concerns)
 * Signing box, extending beyond secure boot (should everything be signed in the ideal future?)
 * Packages to be signed (grub, kernel, fwupdate)
 * Architectures (amd64, i386, arm64, ...?)
 * Credentials, who can upload files to be signed, update shim, access the signing key?
Line 23: Line 45:
 * report: Secure Boot Sprint 2018-03 Report  * report: [[https://lists.debian.org/debian-project/2018/04/msg00071.html|Secure Boot Sprint 2018-04 Report]]
Line 31: Line 53:
== Hosting alternatives == == Transport ==
Line 33: Line 55:
 * Linux Hotel  * Flight: ensure you go to FRA (Frankfurt am Main), not Frankfurt Hahn (which is way off).
 * Train: tickets on bahn.de/bahn.com. Search for Trip from FRA to FD, you should find "Savings fare" and a return ticket for around 50€. Just ensure to leave enough time between your planned flight arrival/departure and the train times, as you MUST take the selected train with such a ticket. Also, don't bother with regional trains, select the ICE with no change, runs once every hour.
Line 35: Line 58:
== Food alternatives == === Flights booked ===
Line 37: Line 60:
 * Linux Hotel ||'''Person'''||'''Inbound''' ||'''Return''' ||
|| Sledge || BA0904 Wed 4 Apr 11:00 LHR ---> 13:45 FRA || BA0913 Sun 8 Apr 19:45 FRA ---> 20:30 LHR ||
|| Koike || JJ8070 Tue 3 Apr 23:10 GRU ---> Wed 4 15:05 FRA || JJ8071 Sun 8 Apr 21:50 FRA ---> 04:50 GRU ||


== Hotel alternatives ==

 * [[http://www.wiesenmuehle.de//|Wiesenmuehle]]
 * [[http://hotel-am-dom-fulda.de/|Hotel am Dom in Fulda]]
 * [[http://www.hotel-am-schloss-fulda.de/|Hotel am Schloss]]
 * [[http://www.hotel-rosenbad-fulda.de/preiswertes-hotel-fulda.html/|Hotel am Rosenbad]]

Secure Boot 2018 Sprint

Date, Location

Participants

Please fill in the table below with your details.

#

Name

E-Mail

Nick

Arrival

Departure

Confirmed

(Long) PGP ID

Thu

Fri

Sat

Sun

Need travel sponsor?

Need accomodation sponsor?

Need food sponsor?

Notes

01

Helen Koike

helen.koike@collabora.com

koike

-

02

Chris Lamb

lamby@debian.org

lamby

If need be

03

Luke Faraone

lfaraone@debian.org

lfaraone

-

-

04

SteveMcIntyre

93sam@debian.org

Sledge

Wed pm

Sun evening

587979573442684E

05

Philipp Hahn

pmhahn@debian.org

pmhahn

Thu 09:00

Sun

-

-

-

06

BenHutchings

benh@debian.org

bwh

Wed evening

Sun evening

E7BFC8EC95861109

-

07

Ansgar Burchardt

ansgar@debian.org

ansgar

Wed

Sun

08

Agenda

  • Secure Boot goal
  • Current state
  • Signing infrastructure proposals
  • Integration with Dak and potential issues
  • Integration with Buildd, concerns with the NEW queue and other potential issues
  • Potential issues with embargoes packages / security uploads
  • Potential issues with binNMU uploads
  • Signing duration time concerns, resource management
  • Reproducible builds
  • Revocation process
  • Manual process vs automated (security concerns)
  • Signing box, extending beyond secure boot (should everything be signed in the ideal future?)
  • Packages to be signed (grub, kernel, fwupdate)
  • Architectures (amd64, i386, arm64, ...?)
  • Credentials, who can upload files to be signed, update shim, access the signing key?

Reports

Acknowledgements

the sprint has been possible thanks to:

Transport

  • Flight: ensure you go to FRA (Frankfurt am Main), not Frankfurt Hahn (which is way off).
  • Train: tickets on bahn.de/bahn.com. Search for Trip from FRA to FD, you should find "Savings fare" and a return ticket for around 50€. Just ensure to leave enough time between your planned flight arrival/departure and the train times, as you MUST take the selected train with such a ticket. Also, don't bother with regional trains, select the ICE with no change, runs once every hour.

Flights booked

Person

Inbound

Return

Sledge

BA0904 Wed 4 Apr 11:00 LHR ---> 13:45 FRA

BA0913 Sun 8 Apr 19:45 FRA ---> 20:30 LHR

Koike

JJ8070 Tue 3 Apr 23:10 GRU ---> Wed 4 15:05 FRA

JJ8071 Sun 8 Apr 21:50 FRA ---> 04:50 GRU

Hotel alternatives


CategorySprint