* have "sign" make target that creates/signs hash manifest of all targets * compile against musl * fix kernel cache misses that result in re-pull/rebuild on every build * harden aws kernel to Kernel Self Protection Project guidelines * get nitro init binary to return attestation cert from amazon * re-write c init in rust