Secure Boot 2018 Sprint
Date, Location
- when: April 5th-8th, 2018 (Final dates)
where: Office Factory, Fulda
Participants
Please fill in the table below with your details.
# |
Name |
Nick |
Arrival |
Departure |
Confirmed |
(Long) PGP ID |
Thu |
Fri |
Sat |
Sun |
Need travel sponsor? |
Need accomodation sponsor? |
Need food sponsor? |
Notes |
||
01 |
Helen Koike |
koike |
|
|
|
|
✓ |
✓ |
✓ |
✓ |
✓ |
✓ |
✓ |
|
||
02 |
Chris Lamb |
lamby |
|
|
If need be |
|
|
|
|
|
|
|
|
|
|
|
03 |
Luke Faraone |
lfaraone |
|
|
|
|
|
|
|
|
✓ |
|
|
|
||
04 |
Sledge |
|
|
|
|
|
|
|
|
|
|
|
|
|||
05 |
Philipp Hahn |
pmhahn |
|
|
|
|
|
|
|
|
- |
- |
- |
|
||
06 |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Agenda
- Secure Boot goal
- Current state
- Signing infrastructure proposals
- Integration with Dak and potential issues
- Integration with Buildd, concerns with the NEW queue and other potential issues
- Potential issues with embargoes packages / security uploads
- Potential issues with binNMU uploads
- Signing duration time concerns, resource management
- Reproducible builds
- Revocation process
- Manual process vs automated (security concerns)
- Signing box, extending beyond secure boot (should everything be signed in the ideal future?)
- Packages to be signed (grub, kernel, fwupdate)
- Architectures (amd64, i386, arm64, ...?)
- Credentials, who can upload files to be signed, update shim, access the signing key?
Reports
sprint: Secure Boot Sprint
- announcement: Secure Boot Sprint Mar 2018 Announcement
- report: Secure Boot Sprint 2018-03 Report
Acknowledgements
the sprint has been possible thanks to:
donations to the Debian project
Hosting alternatives
- Linuxhotel (Essen)
- Office Factory (Fulda)
Food alternatives
- Linuxhotel, Unperfecthaus
- Office Factory
Transport
- Flight: ensure you go to FRA (Frankfurt am Main), not Frankfurt Hahn (which is way off).
- Train: tickets on bahn.de/bahn.com. Search for Trip from FRA to FD, you should find "Savings fare" and a return ticket for around 50€. Just ensure to leave enough time between your planned flight arrival/departure and the train times, as you MUST take the selected train with such a ticket. Also, don't bother with regional trains, select the ICE with no change, runs once every hour.