awesome-repositories.com
Blog
awesome-repositories.com

Descoperă cele mai bune repository-uri open source cu căutare AI.

ExploreazăCăutări recomandateAlternative open-sourceSoftware self-hostedBlogHartă site
ProiectDespreCum realizăm clasamentulPresăServer MCP
LegalConfidențialitateTermeni
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
lfit avatar

lfit/itpol

0
View on GitHub↗
4,891 stele·340 fork-uri·7 vizualizări

Itpol

itpol is a framework for cryptographic key management, digital signature policies, and security hardening. It provides an IT policy template library and infrastructure access frameworks to establish organizational security guidelines and governance.

The project focuses on cryptographic identity management through the use of PGP and SSH keys, alongside a security hardening guide for workstations. It defines standards for software supply chain security, specifically regarding the signing of code commits and software releases to ensure provenance.

The system covers a broad range of security capabilities, including the implementation of multi-factor authentication, disk encryption, and bootloader security. It also addresses secure communication workflows for encrypted messaging and email, as well as the management of hardware security modules and zero-knowledge backup strategies.

Features

  • Cryptographic Key Management - Establishes a comprehensive system for generating and protecting PGP and SSH keys to manage digital identities.
  • Workstation Hardening - Provides a detailed hardening guide for workstations encompassing OS configuration, bootloader protection, and hardware isolation.
  • Infrastructure Governance Policies - Defines generalized IT policy templates and best practice checklists to unify infrastructure and security guidelines.
  • Release Commit Signing - Creates detached signatures and signed tags for software releases to ensure code provenance and integrity.
  • Commit Signing - Defines a policy for cryptographically signing Git commits and tags to verify code provenance.
  • Cryptographic Identity Proofs - Provides mechanisms to link hardware tokens and digital keys to real-world identities for authenticated communications.
  • Signature Policies - Defines digital signature policies for code commits and software releases to ensure provenance.
  • Git Commit Signature Verification - Provides guidelines for verifying PGP signatures on Git commits and tags to prevent malicious alterations.
  • Governance and Policy Frameworks - Provides organizational guidelines and compliance standards for establishing infrastructure and security policies.
  • PGP-SSH Integrations - Integrates PGP keys with SSH agents to provide two-factor authentication for remote server sessions.
  • Identity & Key Management - Provides a standardized framework for managing cryptographic identities using PGP, SSH, and hardware tokens.
  • IT Policy Templates - Provides a library of standardized IT policy templates and checklists for organizational security governance.
  • Workstation Security Hardening - Provides a detailed security hardening guide for workstations, including bootloader protection and full disk encryption.
  • Hardware Key Isolation - Implements the isolation of private keys within hardware modules to prevent theft from the host operating system.
  • PGP - Manages PGP certification keys and handles identity expiration and revocation to establish verifiable digital identities.
  • Secure Communication Workflows - Sign and encrypt emails using cryptographic standards to ensure message authenticity and confidentiality between team members.
  • Linux Security Hardening - Provides comprehensive hardening checklists and configuration guidelines specifically for securing Linux workstations.
  • Access Control - Provides a framework for defining organizational access control rules, including multi-factor authentication and privilege management.
  • Software Supply Chain Security - Defines standards for software supply chain security by requiring cryptographic signatures on all code commits and releases.
  • Governance Template Libraries - Provides a comprehensive library of IT policy templates and security checklists for organizational governance.
  • Encrypted Communications - Implements secure communication workflows using encrypted messaging and signed email protocols.
  • Data Backup Solutions - Establishes requirements and standards for encrypted local backups and zero-knowledge off-site storage.
  • Zero-Knowledge Storage - Implements encrypted storage strategies where the service provider cannot access the decryption keys.
  • Real-time Messaging - Establishes security protocols for real-time messaging, including point-to-point encryption and identity verification.
  • Reusable Policy Templates - Uses standardized templates and checklists to ensure consistency across organizational security and infrastructure guidelines.
  • Access Provisioning - Provisions server and VPN access through the exchange of public keys via signed channels.
  • Offline Storage Strategies - Implements strategies for backing up private keys to hardcopy and offline encrypted storage.
  • Full Disk Encryption - Specifies requirements for encrypting full disks and swap partitions to protect data at rest.
  • Hardware Security Module Integrations - Specifies the use of smartcards and hardware security modules to isolate private keys from the operating system.
  • Bootloader Password Protection - Defines security standards for UEFI configuration and bootloader password protection.
  • Multi-Factor Authentication - Secures accounts using hardware tokens and time-based one-time passwords to prevent credential theft.
  • Password Management - Sets standards for the use of password managers and the generation of unique credentials.
  • Privileged Access Management - Sets rules for user privilege management and password complexity to reduce the system attack surface.
  • Public-Key Access Control - Establishes a framework for provisioning infrastructure access, such as VPNs and servers, via signed public key exchanges.
  • Public Key Infrastructure - Facilitates the exchange and verification of signed cryptographic keys for secure server access and team communication.
  • Web of Trust Verifications - Implements a Web of Trust model to validate team identities through mutual cryptographic signatures.
  • Linux Security - Security policies and configurations for Linux workstations.

Istoric stele

Graficul istoricului de stele pentru lfit/itpolGraficul istoricului de stele pentru lfit/itpol

Căutare AI

Explorează mai multe repository-uri excelente

Descrie ce ai nevoie în limbaj simplu — AI-ul sortează mii de proiecte open source selectate în funcție de relevanță.

Start searching with AI

Alternative open-source pentru Itpol

Proiecte open-source similare, clasificate după numărul de funcționalități comune cu Itpol.
  • kanidm/kanidmAvatar kanidm

    kanidm/kanidm

    4,595Vezi pe GitHub↗

    Kanidm is a centralized identity management server designed to handle authentication, authorization, and directory services across distributed infrastructure. It provides a comprehensive framework for managing human and service accounts, utilizing a schema-driven database to store identity records, group memberships, and system attributes. The platform supports a wide range of authentication methods, including passkeys, passwords, and standard protocols like OAuth2, OIDC, LDAP, and RADIUS. The system distinguishes itself through a granular access control engine that enforces security policies

    Rustauthenticationiamidentity
    Vezi pe GitHub↗4,595
  • drduh/yubikey-guideAvatar drduh

    drduh/YubiKey-Guide

    12,377Vezi pe GitHub↗

    This project is a comprehensive hardware security guide for using YubiKey tokens to manage encryption, digital signatures, and secure authentication. It provides technical instructions for configuring hardware security modules to handle digital identity and cryptographic materials. The documentation focuses on the implementation of OpenPGP and SSH workflows, specifically covering the creation of master key hierarchies, the rotation of subkeys, and the use of hardware-backed keys for secure shell connections. It also details methods for verifying code authorship through signed Git commits and

    HTML
    Vezi pe GitHub↗12,377
  • microsoftdocs/azure-docsAvatar MicrosoftDocs

    MicrosoftDocs/azure-docs

    10,894Vezi pe GitHub↗

    Azure Docs is the official technical documentation repository for Microsoft Azure, the cloud computing platform. It provides comprehensive guidance on the full spectrum of Azure services, covering everything from core infrastructure components like virtual machines, Kubernetes clusters, and serverless computing to platform services for AI, machine learning, data analytics, and storage. The documentation details how to provision, manage, and govern cloud resources at scale, including policy enforcement, identity management, and cost optimization. The documentation distinguishes Azure through i

    Markdownskilling
    Vezi pe GitHub↗10,894
  • lissy93/awesome-privacyAvatar Lissy93

    Lissy93/awesome-privacy

    9,500Vezi pe GitHub↗

    This project is a curated directory and catalog of privacy-respecting software and security-focused services. It serves as a structured resource for finding alternatives to corporate services, focusing on tools that prioritize data sovereignty, end-to-end encryption, and user anonymity. The directory is maintained as a markdown-based resource list and rendered via a static site generator. It further extends its utility through a CORS-enabled public API and a JSON-based data schema, allowing the curated catalog of tools and providers to be retrieved programmatically. The collection covers a w

    Astro
    Vezi pe GitHub↗9,500
Vezi toate cele 30 alternative pentru Itpol→

Întrebări frecvente

Ce face lfit/itpol?

itpol is a framework for cryptographic key management, digital signature policies, and security hardening. It provides an IT policy template library and infrastructure access frameworks to establish organizational security guidelines and governance.

Care sunt principalele funcționalități ale lfit/itpol?

Principalele funcționalități ale lfit/itpol sunt: Cryptographic Key Management, Workstation Hardening, Infrastructure Governance Policies, Release Commit Signing, Commit Signing, Cryptographic Identity Proofs, Signature Policies, Git Commit Signature Verification.

Care sunt câteva alternative open-source pentru lfit/itpol?

Alternativele open-source pentru lfit/itpol includ: kanidm/kanidm — Kanidm is a centralized identity management server designed to handle authentication, authorization, and directory… drduh/yubikey-guide — This project is a comprehensive hardware security guide for using YubiKey tokens to manage encryption, digital… microsoftdocs/azure-docs — Azure Docs is the official technical documentation repository for Microsoft Azure, the cloud computing platform. It… lissy93/awesome-privacy — This project is a curated directory and catalog of privacy-respecting software and security-focused services. It… linkedin/school-of-sre — This project is a comprehensive educational resource and curriculum focused on site reliability engineering,… stellar/stellar-core — Stellar Core is the primary software implementation of the Stellar blockchain network, serving as a distributed ledger…