What is Linux kernel keystore and why you should use it in your next application - Ignat Korchagin

This talk was recorded at NDC Techtown in Kongsberg, Norway. #ndctechtown #ndcconferences #linux #security #softwaredeveloper Attend the next NDC conference near you: https://ndcconferences.com https://ndctechtown.com/ Subscribe to our YouTube channel and learn every day: /‪@NDC‬ Did you know that Linux has a full-featured keystore ready to be used by any application or service it runs? Applications can securely store and share credentials, secrets and cryptographic keys, sign and encrypt data, negotiate a common encryption key - all this by never touching a single byte of the underlying cryptographic material. This is especially useful in the post-heartbleed and cloud-native environments, where services authenticate and securely talk to each other using some kind of credentials. But if a network-facing service also has some secret in its process address space, it sets itself up for a security failure as any potential out-of-bounds memory access vulnerability may allow the secret to be leaked. Imagine a world where you don’t have to run an SSH agent just to protect your SSH keys. On top of keeping your secrets secret Linux keystore nicely integrates with specialized security hardware, like TPMs and HSMs and may provide a single entry point on the system for applications to obtain their secrets. Thus Linux keystore is a very useful building block for a corporate key management system.

An engineer's guide to Linux Kernel upgrades - Ignat Korchagin - NDC TechTown 2023
▶︎

An engineer's guide to Linux Kernel upgrades - Ignat Korchagin - NDC TechTown 2023

Keynote: After the AI Hype – What’s Real, and What’s Next - Richard Campbell - 2026
▶︎

Keynote: After the AI Hype – What’s Real, and What’s Next - Richard Campbell - 2026

Zig 2026: No-AI Policy, $670K Foundation, Left GitHub & Why Zig Isn’t 1.0 - Andrew Kelley Explains
▶︎

Zig 2026: No-AI Policy, $670K Foundation, Left GitHub & Why Zig Isn’t 1.0 - Andrew Kelley Explains

Secure development with C++ - Lessons and techniques - Helge Penne - NDC TechTown 2023
▶︎

Secure development with C++ - Lessons and techniques - Helge Penne - NDC TechTown 2023

Inside UVVM: Architecture and Design of Custom Verification Components (Markus Leiter)
▶︎

Inside UVVM: Architecture and Design of Custom Verification Components (Markus Leiter)

Linus Torvalds: AI Is Changing Linux Fast
▶︎

Linus Torvalds: AI Is Changing Linux Fast

Attacking AI - Jason Haddix - NDC Security 2026
▶︎

Attacking AI - Jason Haddix - NDC Security 2026

Introduction to eBPF - Martin Ertsås - NDC TechTown 2024
▶︎

Introduction to eBPF - Martin Ertsås - NDC TechTown 2024

Getting started with Yocto Project - Chris Simmons - NDC TechTown 2022
▶︎

Getting started with Yocto Project - Chris Simmons - NDC TechTown 2022

The Mind Behind Linux | Linus Torvalds | TED
▶︎

The Mind Behind Linux | Linus Torvalds | TED

NVIDIA CEO Jensen Huang's Vision for the Future
▶︎

NVIDIA CEO Jensen Huang's Vision for the Future

Linux user namespaces: a blessing and a curse - Ignat Korchagin - NDC TechTown 2024
▶︎

Linux user namespaces: a blessing and a curse - Ignat Korchagin - NDC TechTown 2024

Creator of C++: Bell Labs, Negative Overhead Abstraction, Mistakes | Bjarne Stroustrup
▶︎

Creator of C++: Bell Labs, Negative Overhead Abstraction, Mistakes | Bjarne Stroustrup

Linux Full Course for Beginners | Learn Linux System Administration
▶︎

Linux Full Course for Beginners | Learn Linux System Administration

Demystifying Process Address Space: Heap, Stack, and Beyond - Piotr Wierciński - NDC TechTown 2024
▶︎

Demystifying Process Address Space: Heap, Stack, and Beyond - Piotr Wierciński - NDC TechTown 2024

.NET AI Community Standup - Semantic Kernel: What's New & Cool!
▶︎

.NET AI Community Standup - Semantic Kernel: What's New & Cool!

20% of Linux Commands You'll Use 80% of the Time (Real-World Example)
▶︎

20% of Linux Commands You'll Use 80% of the Time (Real-World Example)

Getting Started with Embedded Linux Security - Simon Goda - NDC TechTown 2024
▶︎

Getting Started with Embedded Linux Security - Simon Goda - NDC TechTown 2024

Inside Anthropic, the $965 Billion AI Juggernaut | The Circuit
▶︎

Inside Anthropic, the $965 Billion AI Juggernaut | The Circuit

Building the PERFECT Linux PC with Linus Torvalds
▶︎

Building the PERFECT Linux PC with Linus Torvalds