LWN.net Logo

Implementing UEFI Secure Boot in Fedora

Implementing UEFI Secure Boot in Fedora

Posted Jun 1, 2012 2:35 UTC (Fri) by jk (subscriber, #31383)
In reply to: Implementing UEFI Secure Boot in Fedora by slashdot
Parent article: Implementing UEFI Secure Boot in Fedora

There is indeed a revocation system: software is able to add blacklist entries, which may be a hash of a binary, or a key (revoking access to all binaries relying on that key).

However, updating the revocation lists requires your updates to be signed with a key that is already present in firmware.


(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds