Thank you for the feedback, that helps a lot. I'll try to capture that in a doc update patch soon-ish.
Sincerely, Andrew On Mon, Aug 25, 2025 at 9:53 AM Leo Sandoval via Grub-devel <grub-devel@gnu.org> wrote: > > > > On Sat, Aug 23, 2025 at 9:36 AM Andrew Hamilton <adham...@gmail.com> wrote: >> >> Hello, >> >> I'm taking a pass through updating the GRUB docs prior to the 2.14 and >> wanted to make sure the Security section was as complete as possible. >> >> I had some questions I was wondering if anyone knew - >> 1. I see an option for stack protector during the configure stage, is this >> officially supported / known to work? > > > my 2 cents: I recently worked on 1 and on strong protection and it seems to > be working fine for UEFI systems. By working I mean the > -fstack-protector-strong gcc flag is there when > --enable-stack-protector=strong is indicated on the configuration step > >> >> 2. There were some additions to support NX over the last couple years, is >> that officially working / supported - and any special things needed to >> enable it on a supported platform? >> 3. Any other new security topics I should try to cover (recent TPM related >> improvements already appear to be captured)? >> >> >> Thanks! >> Andrew >> _______________________________________________ >> Grub-devel mailing list >> Grub-devel@gnu.org >> https://lists.gnu.org/mailman/listinfo/grub-devel > > _______________________________________________ > Grub-devel mailing list > Grub-devel@gnu.org > https://lists.gnu.org/mailman/listinfo/grub-devel _______________________________________________ Grub-devel mailing list Grub-devel@gnu.org https://lists.gnu.org/mailman/listinfo/grub-devel