ckauhaus has joined #nixos-systemd
<arianvp> Yaau
<arianvp> flokli: I've been working in veritysetup yesterday night too
<arianvp> For sd image builder
<arianvp> And the cloud image builders
<flokli> cool :-)
<Mic92> arianvp: something like secureboot for aarch64?
<ajs124> we also have this https://gist.github.com/ajs124/be252602e401299765bebfb2c78e519b for integritysetup. it's quite simple, but works well enough.
<Mic92> Does this allow read-write?
<ajs124> yep. it's a "dumb" checksum, though. so no cryptographic protection (aka authentication). luks2 can do that iirc, but there were some issues with it, from what I remember.
<Mic92> I assume this is also some sort of merkel tree?
<hexa-> ah yeeah, the angela merkel tree
<flokli> (-_-)
<flokli> -<>-
<hexa-> yeah, that's her!
ckauhaus has quit [Quit: WeeChat 2.7.1]
<arianvp> Mic92: measured boot; not secureboot