[systemd-devel] why systemd-boot (seems as everyone else) does not check the signatures of initramfs?
Andrea Pappacoda
andrea at pappacoda.it
Thu May 25 08:08:20 UTC 2023
Il giorno mer 24 mag 2023 alle 14:35:05 +02:00:00, Lennart Poettering
<lennart at poettering.net> ha scritto:
> Note that in systemd git main there's already support for generating
> UKIs dynamically when a kernel RPM/DEB is installed (as long as the
> "kernel-install" infra is in use). It can be signed with a local key,
> that can be enrolled with MOK.
This sounds really interesting! Could you please point to some
documentation about this feature? I'd like to try it out on my Debian
system, if possible.
Thanks!
More information about the systemd-devel
mailing list