On Sat, Jun 02, 2012 at 07:36:51PM -0400, Michael Mol wrote > The BIOS will only load a signed bootloader. The signed bootloader > will only load a signed kernel.
OK, so I sign LILO. What code is in there that prevents LILO from loading whatever kernel I've compiled? > The signed kernel will...do whatever you tell it to do. Define "kernel"... no... seriously. 1) Could it actually be a hypervisor? 2) Or maybe another copy of LILO which proceeds to load the actual kernel? -- Walter Dnes <waltd...@waltdnes.org>