Using GnuK with DFU bootloader

Peter Lebbing peter at digitalbrains.com
Thu Dec 13 09:51:20 CET 2018


On 13/12/2018 01:00, NIIBE Yutaka wrote:
> I will have a look at this.

Do note it is not actually working :-).

> I think that if you want to do that, in the first stage, flash ROM
> should not be protected.

That is my interpretation also, but the DFU doesn't engage protection.
Running GnuK with a DFU bootloader present is completely not an option,
since both SWD and the DFU bootloader can readily hand you a copy of the
encrypted private keys on the GnuK. You would subsequently need to wipe
the DFU and after that engage readout locks. Which can all theoretically
be done by GnuK and reGNUal in concert.

Cheers,

Peter.

-- 
I use the GNU Privacy Guard (GnuPG) in combination with Enigmail.
You can send me encrypted mail if you want some privacy.
My key is available at <http://digitalbrains.com/2012/openpgp-key-peter>

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 488 bytes
Desc: OpenPGP digital signature
URL: <https://lists.gnupg.org/pipermail/gnuk-users/attachments/20181213/7b860b96/attachment.sig>


More information about the Gnuk-users mailing list