LWN.net Logo

Another approach to UEFI secure boot

Another approach to UEFI secure boot

Posted Oct 18, 2012 12:59 UTC (Thu) by and (subscriber, #2883)
Parent article: Another approach to UEFI secure boot

Would it not be easy to extend shim to detect if setup-mode is enabled and place the keys into the UEFI key database in this case, otherwise just keep useing the MOK?

this way, we could get the best of both solutions: people who only want their own keys in the database can have it, the rest of us does not get annoyed too much with the boot process...


(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds