Garrett: Secure Boot and Restricted Boot
Garrett: Secure Boot and Restricted Boot
Posted Mar 27, 2013 16:58 UTC (Wed) by tshow (subscriber, #6411)In reply to: Garrett: Secure Boot and Restricted Boot by drag
Parent article: Garrett: Secure Boot and Restricted Boot
Google a bit for BIOS and ACPI bugs. The people who wrote those are going to be the people implementing user loadable keys. If the past is any indication, you can be sure that something microsoft signed will boot, because it will have been tested by the OEM. Or, if the board is going to apple, it will have been tested booting something apple signed. Third party keys? Probably not so much.
That's (for me) the major worry here; the OEMs will either have slipshod implementation of user loadable keys, or they'll leave it out entirely, because why bother with the work for a fraction of the market?
The problem with the microsoft signed solution is that it gives the OEMs an out. It makes it easier for them to say "well, just use the $(corporation)-signed bootloader" and not fix/implement user keys.
