Secure Boot is being tested on Debian Sid [News]

Message
Author
User avatar
Stevo
Developer
Posts: 12774
Joined: Fri Dec 15, 2006 8:07 pm

Re: Secure Boot is being tested on Debian Sid [News]

#11 Post by Stevo »

So, I was backporting the latest 4.19.16 kernel from Sid, and happened to look through the Debian lockdown set of patches for Secure Boot. They

A: disable hibernation, since there is currently no way to sign the hibernated image. I like hibernating! :frown:
B: disable Intel CPU undervolting by disabling writes to the MSR registers, which would also be a big loss to me. :mad:
C: disable loading of unsigned kernel driver modules, which we already knew. That cuts out those users that need to build their own wi-fi, etc. drivers from source if the driver's not in the kernel. :frown:
D: But adds a magic key combo "SysRq + x" to turn off lockdown, if I read the patch right.

User avatar
Mauser
Posts: 1350
Joined: Mon Jun 27, 2016 7:32 pm

Re: Secure Boot is being tested on Debian Sid [News]

#12 Post by Mauser »

So based on post #11 by Stevo it looks like a failure. I will continue in Legacy mode.
I am command line illiterate. :confused: I copy & paste to the terminal. Liars, Wiseguys, Trolls, and those without manners will be added to my ignore list. :mad:

User avatar
oops
Posts: 1602
Joined: Tue Apr 10, 2018 5:07 pm

Re: Secure Boot is being tested on Debian Sid [News]

#13 Post by oops »

... It's too early, for me, to have prejudices, goods or bads ... wait and see ...
Pour les nouveaux utilisateurs: Alt+F1 pour le manuel, ou FAQS, MX MANUEL, et Conseils Debian - Info. système “quick-system-info-mx” (QSI) ... Ici: System: MX-19_x64 & antiX19_x32

User avatar
Stevo
Developer
Posts: 12774
Joined: Fri Dec 15, 2006 8:07 pm

Re: Secure Boot is being tested on Debian Sid [News]

#14 Post by Stevo »

I have Secure Boot disabled, but am running fine with UEFI on two machines. No Legacy mode required here.

User avatar
Paul..
Posts: 1777
Joined: Sun Mar 18, 2007 6:34 pm

Re: Secure Boot is being tested on Debian Sid [News]

#15 Post by Paul.. »

Stevo wrote: Sat Jan 19, 2019 3:35 pm I have Secure Boot disabled, but am running fine with UEFI on two machines. No Legacy mode required here.
Same here...UEFI works fine without Secure Boot.

Asus Prime X570-Pro | AMD Ryzen 7 3700X
16 Gig DDR4 3600 | Radeon RX 5600 XT Graphics
Samsung 860 500GB SSDs (2)

Post Reply

Return to “General”