Fedora's grub2 currently calls back into shim in order to perform the key validation, since otherwise the code would need to exist in both. The easiest thing to do is just to use shim, but sign it yourself.
Power management, mobile and firmware developer on Linux. Security developer at Aurora. Ex-biologist. mjg59 on Twitter. Content here should not be interpreted as the opinion of my employer. Also on Mastodon.
no subject
Date: 2012-12-10 04:31 pm (UTC)