Discover the power of Linux Kernel Keystore in this 41-minute conference talk from SREcon23 Asia/Pacific. Learn how applications can securely store and share credentials, sign and encrypt data, and negotiate common secrets without directly handling cryptographic material. Explore the benefits of using this built-in keystore for cloud-native environments, enhancing security by preventing secret leaks from memory access vulnerabilities. Understand how Linux keystore integrates with security hardware like TPMs and HSMs, providing a unified entry point for applications to access secrets. Gain insights into creating more secure applications and services, potentially eliminating the need for separate SSH agents to protect SSH keys.
Overview
Syllabus
SREcon23 Asia/Pacific - What Is Linux Kernel Keystore and Why You Should Use It in Your Next...
Taught by
USENIX