awesome-repositories.com
Blog
awesome-repositories.com

Entdecke die besten Open-Source-Repositories mit KI-gestützter Suche.

EntdeckenKuratierte SuchenOpen-Source-AlternativenSelf-hosted SoftwareBlogSitemap
ProjektÜber unsRanking-MethodikPresseMCP-Server
RechtlichesDatenschutzAGB
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
lfit avatar

lfit/itpol

0
View on GitHub↗
4,891 Stars·340 Forks·7 Aufrufe

Itpol

itpol ist ein Framework für kryptografisches Key-Management, digitale Signaturrichtlinien und Security-Hardening. Es bietet eine IT-Richtlinien-Vorlagenbibliothek und Infrastruktur-Zugriffs-Frameworks, um organisatorische Sicherheitsrichtlinien und Governance zu etablieren.

Das Projekt konzentriert sich auf kryptografisches Identitätsmanagement durch die Verwendung von PGP- und SSH-Schlüsseln, neben einem Security-Hardening-Leitfaden für Workstations. Es definiert Standards für die Sicherheit der Software-Lieferkette, insbesondere bezüglich der Signierung von Code-Commits und Software-Releases zur Sicherstellung der Provenienz.

Das System deckt ein breites Spektrum an Sicherheitsfunktionen ab, einschließlich der Implementierung von Multi-Faktor-Authentifizierung, Festplattenverschlüsselung und Bootloader-Sicherheit. Es adressiert zudem sichere Kommunikations-Workflows für verschlüsseltes Messaging und E-Mail sowie die Verwaltung von Hardware-Sicherheitsmodulen und Zero-Knowledge-Backup-Strategien.

Features

  • Cryptographic Key Management - Establishes a comprehensive system for generating and protecting PGP and SSH keys to manage digital identities.
  • Workstation Hardening - Provides a detailed hardening guide for workstations encompassing OS configuration, bootloader protection, and hardware isolation.
  • Infrastructure Governance Policies - Defines generalized IT policy templates and best practice checklists to unify infrastructure and security guidelines.
  • Release Commit Signing - Creates detached signatures and signed tags for software releases to ensure code provenance and integrity.
  • Commit Signing - Defines a policy for cryptographically signing Git commits and tags to verify code provenance.
  • Cryptographic Identity Proofs - Provides mechanisms to link hardware tokens and digital keys to real-world identities for authenticated communications.
  • Signature Policies - Defines digital signature policies for code commits and software releases to ensure provenance.
  • Git Commit Signature Verification - Provides guidelines for verifying PGP signatures on Git commits and tags to prevent malicious alterations.
  • Governance and Policy Frameworks - Provides organizational guidelines and compliance standards for establishing infrastructure and security policies.
  • PGP-SSH Integrations - Integrates PGP keys with SSH agents to provide two-factor authentication for remote server sessions.
  • Identity & Key Management - Provides a standardized framework for managing cryptographic identities using PGP, SSH, and hardware tokens.
  • IT Policy Templates - Provides a library of standardized IT policy templates and checklists for organizational security governance.
  • Workstation Security Hardening - Provides a detailed security hardening guide for workstations, including bootloader protection and full disk encryption.
  • Hardware Key Isolation - Implements the isolation of private keys within hardware modules to prevent theft from the host operating system.
  • PGP - Manages PGP certification keys and handles identity expiration and revocation to establish verifiable digital identities.
  • Secure Communication Workflows - Sign and encrypt emails using cryptographic standards to ensure message authenticity and confidentiality between team members.
  • Linux Security Hardening - Provides comprehensive hardening checklists and configuration guidelines specifically for securing Linux workstations.
  • Access Control - Provides a framework for defining organizational access control rules, including multi-factor authentication and privilege management.
  • Software Supply Chain Security - Defines standards for software supply chain security by requiring cryptographic signatures on all code commits and releases.
  • Governance Template Libraries - Provides a comprehensive library of IT policy templates and security checklists for organizational governance.
  • Encrypted Communications - Implements secure communication workflows using encrypted messaging and signed email protocols.
  • Data Backup Solutions - Establishes requirements and standards for encrypted local backups and zero-knowledge off-site storage.
  • Zero-Knowledge Storage - Implements encrypted storage strategies where the service provider cannot access the decryption keys.
  • Real-time Messaging - Establishes security protocols for real-time messaging, including point-to-point encryption and identity verification.
  • Reusable Policy Templates - Uses standardized templates and checklists to ensure consistency across organizational security and infrastructure guidelines.
  • Access Provisioning - Provisions server and VPN access through the exchange of public keys via signed channels.
  • Offline Storage Strategies - Implements strategies for backing up private keys to hardcopy and offline encrypted storage.
  • Full Disk Encryption - Specifies requirements for encrypting full disks and swap partitions to protect data at rest.
  • Hardware Security Module Integrations - Specifies the use of smartcards and hardware security modules to isolate private keys from the operating system.
  • Bootloader Password Protection - Defines security standards for UEFI configuration and bootloader password protection.
  • Multi-Factor Authentication - Secures accounts using hardware tokens and time-based one-time passwords to prevent credential theft.
  • Password Management - Sets standards for the use of password managers and the generation of unique credentials.
  • Privileged Access Management - Sets rules for user privilege management and password complexity to reduce the system attack surface.
  • Public-Key Access Control - Establishes a framework for provisioning infrastructure access, such as VPNs and servers, via signed public key exchanges.
  • Public Key Infrastructure - Facilitates the exchange and verification of signed cryptographic keys for secure server access and team communication.
  • Web of Trust Verifications - Implements a Web of Trust model to validate team identities through mutual cryptographic signatures.
  • Linux Security - Security policies and configurations for Linux workstations.

Star-Verlauf

Star-Verlauf für lfit/itpolStar-Verlauf für lfit/itpol

KI-Suche

Entdecke weitere awesome Repositories

Beschreibe in einfachen Worten, was du brauchst — die KI bewertet tausende kuratierte Open-Source-Projekte nach Relevanz.

Start searching with AI

Häufig gestellte Fragen

Was macht lfit/itpol?

itpol ist ein Framework für kryptografisches Key-Management, digitale Signaturrichtlinien und Security-Hardening. Es bietet eine IT-Richtlinien-Vorlagenbibliothek und Infrastruktur-Zugriffs-Frameworks, um organisatorische Sicherheitsrichtlinien und Governance zu etablieren.

Was sind die Hauptfunktionen von lfit/itpol?

Die Hauptfunktionen von lfit/itpol sind: Cryptographic Key Management, Workstation Hardening, Infrastructure Governance Policies, Release Commit Signing, Commit Signing, Cryptographic Identity Proofs, Signature Policies, Git Commit Signature Verification.

Welche Open-Source-Alternativen gibt es zu lfit/itpol?

Open-Source-Alternativen zu lfit/itpol sind unter anderem: kanidm/kanidm — Kanidm is a centralized identity management server designed to handle authentication, authorization, and directory… drduh/yubikey-guide — This project is a comprehensive hardware security guide for using YubiKey tokens to manage encryption, digital… microsoftdocs/azure-docs — Azure Docs is the official technical documentation repository for Microsoft Azure, the cloud computing platform. It… lissy93/awesome-privacy — This project is a curated directory and catalog of privacy-respecting software and security-focused services. It… linkedin/school-of-sre — This project is a comprehensive educational resource and curriculum focused on site reliability engineering,… stellar/stellar-core — Stellar Core is the primary software implementation of the Stellar blockchain network, serving as a distributed ledger…

Open-Source-Alternativen zu Itpol

Ähnliche Open-Source-Projekte, sortiert nach der Anzahl der gemeinsamen Funktionen mit Itpol.
  • kanidm/kanidmAvatar von kanidm

    kanidm/kanidm

    4,595Auf GitHub ansehen↗

    Kanidm is a centralized identity management server designed to handle authentication, authorization, and directory services across distributed infrastructure. It provides a comprehensive framework for managing human and service accounts, utilizing a schema-driven database to store identity records, group memberships, and system attributes. The platform supports a wide range of authentication methods, including passkeys, passwords, and standard protocols like OAuth2, OIDC, LDAP, and RADIUS. The system distinguishes itself through a granular access control engine that enforces security policies

    Rustauthenticationiamidentity
    Auf GitHub ansehen↗4,595
  • drduh/yubikey-guideAvatar von drduh

    drduh/YubiKey-Guide

    12,377Auf GitHub ansehen↗

    This project is a comprehensive hardware security guide for using YubiKey tokens to manage encryption, digital signatures, and secure authentication. It provides technical instructions for configuring hardware security modules to handle digital identity and cryptographic materials. The documentation focuses on the implementation of OpenPGP and SSH workflows, specifically covering the creation of master key hierarchies, the rotation of subkeys, and the use of hardware-backed keys for secure shell connections. It also details methods for verifying code authorship through signed Git commits and

    HTML
    Auf GitHub ansehen↗12,377
  • microsoftdocs/azure-docsAvatar von MicrosoftDocs

    MicrosoftDocs/azure-docs

    10,894Auf GitHub ansehen↗

    Azure Docs is the official technical documentation repository for Microsoft Azure, the cloud computing platform. It provides comprehensive guidance on the full spectrum of Azure services, covering everything from core infrastructure components like virtual machines, Kubernetes clusters, and serverless computing to platform services for AI, machine learning, data analytics, and storage. The documentation details how to provision, manage, and govern cloud resources at scale, including policy enforcement, identity management, and cost optimization. The documentation distinguishes Azure through i

    Markdownskilling
    Auf GitHub ansehen↗10,894
  • lissy93/awesome-privacyAvatar von Lissy93

    Lissy93/awesome-privacy

    9,500Auf GitHub ansehen↗

    This project is a curated directory and catalog of privacy-respecting software and security-focused services. It serves as a structured resource for finding alternatives to corporate services, focusing on tools that prioritize data sovereignty, end-to-end encryption, and user anonymity. The directory is maintained as a markdown-based resource list and rendered via a static site generator. It further extends its utility through a CORS-enabled public API and a JSON-based data schema, allowing the curated catalog of tools and providers to be retrieved programmatically. The collection covers a w

    Astro
    Auf GitHub ansehen↗9,500
  • Alle 30 Alternativen zu Itpol anzeigen→