** Changed in: linux (Ubuntu)
Assignee: Tim Gardner (timg-tpi) => Petro (petrolerouxubuntu)
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1566221
Title:
linux: Enforce signed module loading whe
** Tags added: bot-stop-nagging
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1566221
Title:
linux: Enforce signed module loading when UEFI secure boot
To manage notifications about this bug go to:
** Tags removed: verification-needed-trusty
** Tags added: verification-done-xenial
** Tags added: verification-done-trusty
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1566221
Title:
linux: Enfor
This bug is awaiting verification that the kernel in -proposed solves
the problem. Please test the kernel and update this bug with the
results. If the problem is solved, change the tag 'verification-needed-
trusty' to 'verification-done-trusty'.
If verification is not done by 5 working days from t
** Tags removed: verification-done-trusty
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1566221
Title:
linux: Enforce signed module loading when UEFI secure boot
To manage notifications about this
** Changed in: linux (Ubuntu Trusty)
Status: In Progress => Fix Released
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1566221
Title:
linux: Enforce signed module loading when UEFI secure boo
** Changed in: linux (Ubuntu Trusty)
Status: Fix Released => In Progress
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1566221
Title:
linux: Enforce signed module loading when UEFI secure boo
This bug was fixed in the package linux - 3.13.0-92.139
---
linux (3.13.0-92.139) trusty; urgency=low
[ Kamal Mostafa ]
* Release Tracking Bug
- LP: #1597060
[ Josh Boyer ]
* SAUCE: UEFI: acpi: Ignore acpi_rsdp kernel parameter when module
loading is restricted
This bug was fixed in the package linux - 3.13.0-92.139
---
linux (3.13.0-92.139) trusty; urgency=low
[ Kamal Mostafa ]
* Release Tracking Bug
- LP: #1597060
[ Josh Boyer ]
* SAUCE: UEFI: acpi: Ignore acpi_rsdp kernel parameter when module
loading is restricted
This bug was fixed in the package linux - 3.19.0-65.73
---
linux (3.19.0-65.73) vivid; urgency=low
[ Ben Romer ]
* Release Tracking Bug
- LP: #1596631
[ Josh Boyer ]
* SAUCE: UEFI: acpi: Ignore acpi_rsdp kernel parameter when module
loading is restricted
- LP: #
This bug was fixed in the package linux - 3.19.0-65.73
---
linux (3.19.0-65.73) vivid; urgency=low
[ Ben Romer ]
* Release Tracking Bug
- LP: #1596631
[ Josh Boyer ]
* SAUCE: UEFI: acpi: Ignore acpi_rsdp kernel parameter when module
loading is restricted
- LP: #
This bug was fixed in the package linux - 4.2.0-42.49
---
linux (4.2.0-42.49) wily; urgency=low
[ Ben Romer ]
* Release Tracking Bug
- LP: #1597053
[ Josh Boyer ]
* SAUCE: UEFI: acpi: Ignore acpi_rsdp kernel parameter when module
loading is restricted
- LP: #156
This bug was fixed in the package linux - 4.2.0-42.49
---
linux (4.2.0-42.49) wily; urgency=low
[ Ben Romer ]
* Release Tracking Bug
- LP: #1597053
[ Josh Boyer ]
* SAUCE: UEFI: acpi: Ignore acpi_rsdp kernel parameter when module
loading is restricted
- LP: #156
** Tags removed: verification-needed-wily
** Tags added: verification-done-wily
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1566221
Title:
linux: Enforce signed module loading when UEFI secure boo
** Tags removed: verification-needed-vivid
** Tags added: verification-done-vivid
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1566221
Title:
linux: Enforce signed module loading when UEFI secure b
** Tags removed: verification-needed-trusty
** Tags added: verification-done-trusty
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1566221
Title:
linux: Enforce signed module loading when UEFI secure
This bug is awaiting verification that the kernel in -proposed solves
the problem. Please test the kernel and update this bug with the
results. If the problem is solved, change the tag 'verification-needed-
trusty' to 'verification-done-trusty'.
If verification is not done by 5 working days from t
This bug is awaiting verification that the kernel in -proposed solves
the problem. Please test the kernel and update this bug with the
results. If the problem is solved, change the tag 'verification-needed-
vivid' to 'verification-done-vivid'.
If verification is not done by 5 working days from tod
This bug is awaiting verification that the kernel in -proposed solves
the problem. Please test the kernel and update this bug with the
results. If the problem is solved, change the tag 'verification-needed-
wily' to 'verification-done-wily'.
If verification is not done by 5 working days from today
For completeness the userspace changes needed for this are being tracked
under Bug #1574727.
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1566221
Title:
linux: Enforce signed module loading when UE
lts-utopic and trusty tested in QEMU/OVMF with signed kernel, with and
without MokSBState enabled.
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1566221
Title:
linux: Enforce signed module loading w
Vivid tested in QEMU/OVMF with signed kernel, with and without
MokSBState enabled.
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1566221
Title:
linux: Enforce signed module loading when UEFI secure
Wily tested in QEMU/OVMF with signed kernel, with and without MokSBState
enabled.
** Description changed:
Add code to implement secure boot checks. Unsigned or incorrectly signed
modules will continue to install while tainting the kernel _until_
EFI_SECURE_BOOT_SIG_ENFORCE is enabled.
+
+
** Also affects: linux (Ubuntu Yakkety)
Importance: Undecided
Assignee: Tim Gardner (timg-tpi)
Status: Fix Released
** Also affects: linux (Ubuntu Trusty)
Importance: Undecided
Status: New
** Also affects: linux (Ubuntu Wily)
Importance: Undecided
Status: New
*
This bug was fixed in the package linux - 4.4.0-21.37
---
linux (4.4.0-21.37) xenial; urgency=low
[ Tim Gardner ]
* Release Tracking Bug
- LP: #1571791
* linux: MokSBState is ignored (LP: #1571691)
- SAUCE: (noup) MODSIGN: Import certificates from UEFI Secure Boot
Ok, scratch that. I had an external monitor connected and didn't realize
a configure dialog appeared on reboot. After disabling validation the
vboxdrv module now loads as expected.
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https:
Thanks, I just gave this a shot after installing 4.4.0-21-generic #37
from -proposed but after running 'sudo mokutil --disable-validation' and
rebooting I still have the same 'Required key not available' error when
I 'sudo modprobe vboxdrv'.
--
You received this bug notification because you are a
linux 4.4.0-21.37 supports MOKSBState wherein you can disable secure
boot in order to allow DKMS drivers. It should be released from
-proposed within a day or so. If you aren't prompted to change your
secure boot setting, then you can run 'sudo mokutil --disable-
validation' before rebooting.
--
I'm not sure if this is the right venue for discussion, but ever since
this change was implemented in 4.4.0-18 I have been unable to load the
VirtualBox vboxdrv kernel module built through dkms (fails with
'required key not available'). I understand this is probably the
intended behavior but becaus
CONFIG_EFI_SECURE_BOOT_SIG_ENFORCE=y
** Changed in: linux (Ubuntu Xenial)
Status: Fix Released => In Progress
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1566221
Title:
linux: Enforce sign
This bug was fixed in the package linux - 4.4.0-18.34
---
linux (4.4.0-18.34) xenial; urgency=low
[ Tim Gardner ]
* Release Tracking Bug
- LP: #1566868
* [i915_bpo] Fix RC6 on SKL GT3 & GT4 (LP: #1564759)
- SAUCE: i915_bpo: drm/i915/skl: Fix rc6 based gpu/system hang
** Description changed:
- Add code to implement secure boot checks.
+ Add code to implement secure boot checks. Unsigned or incorrectly signed
+ modules will continue to install while tainting the kernel _until_
+ EFI_SECURE_BOOT_SIG_ENFORCE is enabled.
--
You received this bug notification beca
32 matches
Mail list logo