[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Secure boot



Hi!

On Wed, May 19, 2021 at 04:18:03PM -0400, Polyna-Maude Racicot-Summerside wrote:
>
>Is it possible for myself to build a secure linux kernel and use it with
>Debian ?
>Or does the list of key signing authority fixed inside the EFI bios ?

If you're using shim-signed (as is the default on Debian UEFI
systems), then you can add Machine Owner Keys (MOK) - see

  https://wiki.debian.org/SecureBoot#MOK_-_Machine_Owner_Key 

for more details on that.

-- 
Steve McIntyre, Cambridge, UK.                                steve@einval.com
“Rarely is anyone thanked for the work they did to prevent the
 disaster that didn’t happen.”
   -- Mikko Hypponen (https://twitter.com/mikko/)


Reply to: