[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Running mokutil during installation process

x-port debian-boot, debian-cd (not sure which is correct)


I'm creating the /root/mok.der key (in Sid dkms changed to /root/dkms.der) and
try to register it with mokutil during a custom installation. I tried the
preseed/late_command and I also tried a script with simple-cdd. But in all
cases I get on UEFI systems (real hardware included):

EFI variables are not supported on this system

and have to enroll it after the first boot. Only then the modules built and
signed are loaded.

I tried loading the efivarfs module via preseed/early_command and I can confirm
that /sys/firmware/efi/efivars/ is actually there (but epmty).

I'd really appreciate to enroll the key *during* installation, while the Debian
installer is running. Is there any way I can do this?

Regards, Daniel
Daniel Leidert <dleidert@debian.org> | https://www.wgdd.de/
GPG-Key RSA4096 / BEED4DED5544A4C03E283DC74BCD0567C296D05D
GPG-Key ED25519 / BD3C132D8B3805D1808123AB7ACE00941E338C78


Attachment: signature.asc
Description: This is a digitally signed message part

Reply to: