Re: UEFI Secure Boot - the plan for stretch
- To: Ben Hutchings <ben@decadent.org.uk>
- Cc: Steve McIntyre <steve@einval.com>, debian-efi@lists.debian.org, Colin Watson <cjwatson@debian.org>, micah anderson <micah@debian.org>, Steve Langasek <vorlon@debian.org>, pabs@debian.org, lfaraone@debian.org, debian-admin@lists.debian.org, ftpmaster@debian.org
- Subject: Re: UEFI Secure Boot - the plan for stretch
- From: Tollef Fog Heen <tfheen@err.no>
- Date: Tue, 05 Apr 2016 13:29:29 +0200
- Message-id: <[🔎] m2a8l8jnty.fsf@rahvafeir.err.no>
- Mail-followup-to: Ben Hutchings <ben@decadent.org.uk>, Steve McIntyre <steve@einval.com>, debian-efi@lists.debian.org, Colin Watson <cjwatson@debian.org>, micah anderson <micah@debian.org>, Steve Langasek <vorlon@debian.org>, pabs@debian.org, lfaraone@debian.org, debian-admin@lists.debian.org, ftpmaster@debian.org
- In-reply-to: <[🔎] 1459823761.23351.27.camel@decadent.org.uk> (Ben Hutchings's message of "Tue, 05 Apr 2016 03:36:01 +0100")
- References: <[🔎] 20160401133517.GC31407@einval.com> <[🔎] 1459823761.23351.27.camel@decadent.org.uk>
]] Ben Hutchings
> > Tollef was organising an HSM (Yubikey $thing) to make this more
> > secure. Exact details on key management are yet TBD - we had
> > discussions about an N-of-M keyholder scheme similar-ish to what
> > Ubuntu do.
>
> Does this require a bug report?
debian-admin uses RT, not the BTS. I don't see a big point in having a
tracking ticket for it, but it's not like it's a problem to have it
either, so.
--
Tollef Fog Heen
UNIX is user friendly, it's just picky about who its friends are
Reply to: