I trust myself. I would not even trust red hat with a forced global key. At least with the repository PGP keys it is my choice to install them. They don't come pre-installed.
PC suppliers, and the commercial impact of secure boot on them
Posted Jun 20, 2012 18:35 UTC (Wed) by BenHutchings (subscriber, #37955)
[Link]
You can't install an OS you don't trust and somehow configure it into an OS you do trust. How can you know it really follows your configuration, and doesn't have a secret backdoor?