help-grub
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Verify the signature of OSes (for SB)


From: Federico Angelilli
Subject: Re: Verify the signature of OSes (for SB)
Date: Thu, 23 Nov 2023 17:22:36 +0100
User-agent: K-9 Mail for Android

Even then, shim can verify against machine owner keys which are different from 
the platform keys of the uefi

On November 22, 2023 2:34:18 PM GMT+01:00, Andrei Borzenkov 
<arvidjaar@gmail.com> wrote:
>On Wed, Nov 22, 2023 at 3:47 PM Federico Angelilli <list@fedang.net> wrote:
>>
>> By bootable disk I ment something you can boot from grub (a kernel or 
>> initramfs or windows).
>>
>> The "shim" doesn't seem like a grub module, rather it seems like another 
>> bootloader that immediately runs grub and is mostly useful for the first 
>> stage, that is being verified by the uefi. Unless grub can use the shim even 
>> after taking over
>
>Yes, it can.
>


reply via email to

[Prev in Thread] Current Thread [Next in Thread]