Linux Foundation approach to Secure Boot
Oct. 10th, 2012 05:47 pm![[personal profile]](https://www.dreamwidth.org/img/silk/identity/user.png)
James Bottomley just published a description of the Linux Foundation's Secure Boot plan, which is pretty much as I outlined in the second point here - it's a bootloader that will boot untrusted images as long as a physically present end-user hits a key on every boot, and if a user switches their machine to setup mode it'll enrol the hash of the bootloader in order to avoid prompting again. In other words, it's less useful than shim. Just use shim instead.
no subject
Date: 2012-10-11 05:24 pm (UTC)I like Freedom and using a Shim is taking some of that away.
Date: 2012-10-11 11:20 pm (UTC)c) Ask me which mode to run
Re: I like Freedom and using a Shim is taking some of that away.
Date: 2012-10-11 11:43 pm (UTC)no subject
Date: 2012-10-12 03:06 am (UTC)no subject
Date: 2012-10-12 03:07 am (UTC)no subject
Date: 2012-10-12 05:55 pm (UTC)