[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Secure boot


On Wed, May 19, 2021 at 04:18:03PM -0400, Polyna-Maude Racicot-Summerside wrote:
>Is it possible for myself to build a secure linux kernel and use it with
>Debian ?
>Or does the list of key signing authority fixed inside the EFI bios ?

If you're using shim-signed (as is the default on Debian UEFI
systems), then you can add Machine Owner Keys (MOK) - see


for more details on that.

Steve McIntyre, Cambridge, UK.                                steve@einval.com
“Rarely is anyone thanked for the work they did to prevent the
 disaster that didn’t happen.”
   -- Mikko Hypponen (https://twitter.com/mikko/)

Reply to: