On 12/18/24 9:56 AM, Sudhakar Kuppusamy wrote:
If secure boot is enabled with PKS, it will read secure boot variables
such as db and dbx from PKS and extract certificates from ESL.
It would be saved in the platform keystore buffer, and

What is 'it'. The certificates would be saved ... ?

the appendedsig (module) would read it later to extract
the certificate's details.

certifcates' ?


In the following scenarios, static key mode will be activated:
  1. When secure boot is enabled with static

static keys ?

  2. When SB Version is unavailable but Secure Boot is enabled
  3. When PKS support is unavailable but secure boot is enabled

Secure Boot


Note:-

SB Version - secure boot mode

Secure Boot

1 - PKS
0 - static key (embeded key)

_______________________________________________
Grub-devel mailing list
Grub-devel@gnu.org
https://lists.gnu.org/mailman/listinfo/grub-devel

Reply via email to