Skip to content
#

boot-security

Here are 2 public repositories matching this topic...

TPM-backed predictive re-enrollment for LUKS disk encryption. Predicts and prevents lockouts caused by security updates that change TPM PCR measurements, and adds a device identity certificate check as a fourth gate before automatic re-enrollment. Includes an interactive demo explaining the full system.

  • Updated Sep 15, 2026
  • HTML

Add this topic to your repo

To associate your repository with the boot-security topic, visit your repo's landing page and select "manage topics."

Learn more