Lennart Poettering on Nostr: … your SB keys might also disable certain extension card firmwares, which is ...
… your SB keys might also disable certain extension card firmwares, which is typically less than ideal.
However, it is really useful if you know your hardware well, which for example is very much the case in VM environments.
What was missing so far is a tool to actually place the keys in the right drop-in dir in the right format. With systemd v257 we made "bootctl" that tool. It gained a new switch --secure-boot-auto-enroll=yes for installing keys like that.
However, it is really useful if you know your hardware well, which for example is very much the case in VM environments.
What was missing so far is a tool to actually place the keys in the right drop-in dir in the right format. With systemd v257 we made "bootctl" that tool. It gained a new switch --secure-boot-auto-enroll=yes for installing keys like that.