This repo documents my process and related scripts for setting up an airgapped system as a trust anchor for GPG / x509 / etc.
The various sections are sorted into subdirs and are expected to be followed roughly sequentially, though I'd recommend reading through all the steps before beginning. A clever individual might discover there are parts that lend themselves to parallelization.
- Shopping
- Prepare
- Setup
- Yubikey