[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: How to use uefi secure boot in a virtual machine in Debian Buster 10



On Mon, Sep 2, 2019 at 5:33 PM adrian15 adrian15 <adrian15sgd@gmail.com> wrote:
>
>
>
> El mar., 3 sept. 2019 a las 0:54, dann frazier (<dannf@dannf.org>) escribió:
>>
>> On Sat, Aug 31, 2019 at 4:07 PM adrian15 adrian15 <adrian15sgd@gmail.com> wrote:
>> >
>> > (...)
>> > TO DO
>> > Debian only method with secureboot images
>> > If Debian ovmf package provides:
>> >
>> > OVMF_CODE.secboot.fd
>> > OVMF_VARS.secboot.fd
>> > in the future just install Debian ovmf package instead and use them instead.
>>
>> hey Adrian,
>>   Thanks for documenting this. fyi, Debian's ovmf does provide
>> secureboot images in testing/unstable. The vars file w/ prebaked
>> Microsoft keys is OVMF_VARS.ms.fd.
>>
>>   -dann
>
> Do you know if these images include only the Microsoft CA?
> Or do you they include both the Microsoft CA and the Debian CA?

It includes a Debian-specific PK/KEK-1. See:
  https://lists.debian.org/debian-efi/2019/07/msg00071.html

 -dann

> I might update the howto with those images in the next days or weeks.
>
> Thank you!
>
> adrian15
> --
> Support free software. Donate to Super Grub Disk. Apoya el software libre. Dona a Super Grub Disk. http://www.supergrubdisk.org/index.php?pid=10


Reply to: