Skip to main content

Questions tagged [secure-boot]

Questions for UEFI Secure-Boot, Secure-Boot Key Signing and Management

1 vote
1 answer
75 views

My colleague created a Rocky Linux 10 USB drive to replace Windows 11. However, he can't boot from it because it only seems to accept UEFI 'secure' boot options. He had disabled secure booting in the ...
Hari's user avatar
  • 113
2 votes
0 answers
84 views

I am trying to understand Secure Boot and what it is doing on my system. I am using systemd-boot as my bootloader, not shim or GRUB, and Secure Boot is reported as enabled: running mokutil --sb-state ...
Eclogite's user avatar
0 votes
0 answers
99 views

I've backed up a Fedora 42 installation using tar, and now I am trying to restore the backup to a different drive on the same system, basically cloning the original installation. The original ...
bsdinis's user avatar
0 votes
0 answers
208 views

The goal is to sign the mender yocto image and run it on secure boot enabled raspberry pi. I have raspberrypi-4 and the yocto image from mender (open source OTA platform). To give a quick try here is ...
URegal's user avatar
  • 1
1 vote
1 answer
70 views

How likely is it that disabling Secure Boot on a home computer running Linux would suffer from the advertised threat of unauthorized code—such as bootkits and rootkits—from being executed during the ...
Steve Cohen's user avatar
0 votes
1 answer
105 views

Apologies in advance if I have incorrect assumptions in the post. I'm still getting the hang of DPDK. Basically, I am trying to utilize DPDK on a Generation 2 Hyper-V VM that has Secure Boot enabled. ...
ctap18's user avatar
  • 1
2 votes
1 answer
1k views

Two common ways to do Secure Boot are: EFI -> shim -> grub -> kernel EFI -> UKI I want to keep grub, but discard all third party keys and use my own. One option would be to recompile ...
Fadeway's user avatar
  • 183
0 votes
1 answer
156 views

I made a custom live system using the Debian FAI service. I can't boot it with secure boot as my laptop is not recognizing the signature somehow. But I can still boot my currently installed Debian ...
td211's user avatar
  • 883
2 votes
0 answers
111 views

I am trying to build a tool to allow people to create network-bootable Linux environments. The primary use case is for mass deployment and configuration of end user devices. Most of these devices have ...
9072997's user avatar
  • 121
2 votes
1 answer
257 views

I am trying to boot a Linux kernel with efi stub enabled using Red Hat's Shim https://github.com/rhboot/shim. I can boot the system if I enroll the hash of my efi stub (selecting GRUBX64.EFI), but ...
Jan Sommer's user avatar
1 vote
0 answers
666 views

I wanted to ask about something happening on my Debian 12 machine. When I run journalctl as root I get this message: "Kernel is locked down from EFI Secure Boot; see man kernel_lockdown.7" I ...
user615860's user avatar
2 votes
1 answer
2k views

Good evening, after searching on google I didn't find the answer to my question. When installing a distribution such as Ubuntu with secure boot activated, the installer creates a MOK key in the NVRAM ...
user avatar
1 vote
1 answer
356 views

It’s a piece of cake to enable secure boot in a virtual machine, but I’m struggling to do the same with OpenSUSE on my 2012 vintage computer which refuses to boot in secure boot mode even in the ...
Bogey Jammer's user avatar
6 votes
5 answers
21k views

I'm having this issue for a few months now...I was using fedora for a long time but it broke after an update and since then I can't install or run a live environment of almost no distro...so far only ...
strangeattractor's user avatar
0 votes
0 answers
117 views

I need to install an custom OS to many similar/identical laptops. Would it work to live boot a laptop and dd the disk from a template laptop to the new one? Is it possible to trigger secure boot key ...
johndue's user avatar
  • 61

15 30 50 per page
1
2 3 4 5
9