Re: [vfio-users] OVMF secureboot question.

2017-08-11 Thread Hagbard Celine
2017-08-11 16:57 GMT+01:00, Laszlo Ersek : > On 08/11/17 17:05, Hagbard Celine wrote: >> 2017-08-11 13:28 GMT+01:00, Laszlo Ersek : --shortening a bit >>> Some time after the implementation of SMM in all of KVM, QEMU (q35 >>> only), and OVMF, all of the OVMF builds that I have any connection to >>>

Re: [vfio-users] OVMF secureboot question.

2017-08-11 Thread Laszlo Ersek
On 08/11/17 17:05, Hagbard Celine wrote: > 2017-08-11 13:28 GMT+01:00, Laszlo Ersek : >> On 08/11/17 12:50, Hagbard Celine wrote: >>> Hi, I used to update at every new version form kraxel.org, but at one >>> point I had to stop updating due to secure-boot changes. As far as I >>> could see, Q35 was

Re: [vfio-users] OVMF secureboot question.

2017-08-11 Thread Hagbard Celine
2017-08-11 13:28 GMT+01:00, Laszlo Ersek : > On 08/11/17 12:50, Hagbard Celine wrote: >> Hi, I used to update at every new version form kraxel.org, but at one >> point I had to stop updating due to secure-boot changes. As far as I >> could see, Q35 was needed for secure-boot on newer versions due t

Re: [vfio-users] OVMF secureboot question.

2017-08-11 Thread Laszlo Ersek
On 08/11/17 12:50, Hagbard Celine wrote: > Hi, I used to update at every new version form kraxel.org, but at one > point I had to stop updating due to secure-boot changes. As far as I > could see, Q35 was needed for secure-boot on newer versions due to > i440FX not emulating SMM. > > Today I did a