RPi Zero vs Armory: Convince me to use Armory in an air-gapped, secure environment

225 views
Skip to first unread message

Eric Duncan

unread,
Jan 2, 2019, 9:50:50 PM1/2/19
to USB armory
I have an use-case: I am creating an air-gapped environment to issue my expiring PGP sub-keys and internal certs.

All I need an encrypted sdcard running ArchLinux, just the basics.  The attack vector on the unencrypted /boot is fine I think for my use case.

I did originally buy the Armory to do secure booting with certs for tell if it has been tampered with.  But I think that's overkill, and I think I read an exploit in the CPU hardware that makes it mute.

Now I'm wondering why not use a $5 Raspberry Pi Zero I have laying around for the same thing?  And then use the Armory for pen testing and other fun shenanigans.

Maybe I'm missing what other security features I can leverage of the Armory in my air-gapped environment?

Note: the setup will be locked in a safe for 99% of its life, used every few months to issue new sub-keys.

Thanks!


Message has been deleted

SemanticBeeng

unread,
Sep 20, 2023, 1:42:04 PM9/20/23
to USB armory
Do not have an answer and much too late.

Tamago runs on Raspberry Pi 2 model B (https://github.com/usbarmory/tamago) so if you get a a  Raspberry Pi then that is a consideration. Tamago is cool.

Also, usb armory has a secure element.

Wondering if tamago runs on Raspberry Pi 4 model B.
Use case: Share USB Devices Over Network with Raspberry Pi https://www.youtube.com/watch?v=gBCNLs_5pwM
 
Maybe usb armory can be shared through rasberry pi for better safety and flexibility.
Reply all
Reply to author
Forward
0 new messages