[Bug 848797] New: active Secure Boot, System not booting RC2 (13.1)
https://bugzilla.novell.com/show_bug.cgi?id=848797 https://bugzilla.novell.com/show_bug.cgi?id=848797#c0 Summary: active Secure Boot, System not booting RC2 (13.1) Classification: openSUSE Product: openSUSE 13.1 Version: RC 2 Platform: x86-64 OS/Version: Other Status: NEW Severity: Critical Priority: P5 - None Component: Installation AssignedTo: bnc-team-screening@forge.provo.novell.com ReportedBy: gjn@gjn.priv.at QAContact: jsrain@suse.com Found By: --- Blocker: --- Created an attachment (id=565971) --> (http://bugzilla.novell.com/attachment.cgi?id=565971) The Yast Logs from RC2 13.1 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:24.0) Gecko/20100101 Firefox/24.0 Hello, on my system it is not possible to install from DVD or boot with active secure Boot. ASUS P8C WS with Xeon v2. My Test, on my system is installed a windows 8 with secure boot, when I like to install oS the only possible start is without uEFI. when I switch the Bios to only start uEFI Drives the uEFI is not found on the DVD. without secure Boot it is possible to install uEFI oS, but it is booting only sometime in uEFI mode. When the System is Installed without secure Boot (uEFI) and I activate Secure Boot in YaST2 and Bios the System is not starting. Only when I switch back the Bios, the system (grub2-efi) is coming up. techz:/boot # efibootmgr -v BootCurrent: 0000 Timeout: 0 seconds BootOrder: 0000,0001,0002,0008,0009 Boot0000* opensuse HD(2,96800,32000,7df6df22-9010-493d-8808-dc97218f544d)File(\EFI\opensuse\grubx64.efi) Boot0001* Windows Boot Manager HD(2,96800,32000,7df6df22-9010-493d-8808-dc97218f544d)File(\EFI\Microsoft\Boot\bootmgfw.efi)WINDOWS.........x...B.C.D.O.B.J.E.C.T.=.{.9.d.e.a.8.6.2.c.-.5.c.d.d.-.4.e.7.0.-.a.c.c.1.-.f.3.2.b.3.4.4.d.4.7.9.5.}...s................ Boot0002* opensuse-secureboot HD(2,96800,32000,7df6df22-9010-493d-8808-dc97218f544d)File(\EFI\opensuse\shim.efi) Boot0008* CD/DVD Drive BIOS(3,0,00)AMGOAMNO........o.A.T.A.P.I. . . i.H.A.S.1.2.4. . . W....................A...........................>..Gd-.;.A..MQ..L.5.3.4.2.0.6. 2.D.2.3.8.6.1.0.5.5.8.7.0......AMBO Boot0009* Hard Drive BIOS(2,0,00)AMGOAMNO........o.W.D.C. W.D.1.0.0.2.F.A.E.X.-.0.0.Z.3.A.0....................A...........................>..Gd-.;.A..MQ..L. . . .W. .-.D.C.W.T.A.C.R.5.3.4.6.1.8......AMBO Reproducible: Always Steps to Reproduce: 1. 2. 3. -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c1
--- Comment #1 from Günther J. Niederwimmer
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c2
--- Comment #2 from Günther J. Niederwimmer
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c
Günther J. Niederwimmer
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c3
--- Comment #3 from Günther J. Niederwimmer
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c4
--- Comment #4 from Gary Ching-Pang Lin
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c
zhang jiajun
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c
Gary Ching-Pang Lin
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c5
--- Comment #5 from Günther J. Niederwimmer
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c6
--- Comment #6 from Gary Ching-Pang Lin
This is the last Bios for this System, but it do not work on other new ASUS Boards like ASUSE P9D WS ...
Have all ASUS Boards this Problem ?
ASUS is using AMI's BIOS. I've tested shim.efi on several AMI development boards, and it worked well in the end. I'm confident the signatures in shim are valid. Please also report the issue to ASUS if possible.
I do this from the Mail,
// Could you try the following instructions?
1. open "yast bootloader" and make sure that "Enable Secure Boot Support" is checked
2. replace shim.efi $ dd if=/usr/lib64/efi/shim.efi of=shim.efi bs=1 count=1378256 $ sudo mv shim.efi /boot/efi/EFI/opensuse/shim.efi
3. reboot and enable secure boot in UEFI
4. boot the system Please make sure UEFI boot the bootentry "opensuse-secureboot" instead of "opensuse" //
But this is not working ? Step2 striped the openSUSE signature and left only MS signature. If the BIOS has problem to verify, it's an issue in the BIOS :-\
-- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c7
Jeffrey Cheung
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c8
Günther J. Niederwimmer
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c9
--- Comment #9 from Gary Ching-Pang Lin
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c10
--- Comment #10 from Günther J. Niederwimmer
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c11
--- Comment #11 from Gary Ching-Pang Lin
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c12
--- Comment #12 from Günther J. Niederwimmer
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c13
--- Comment #13 from Gary Ching-Pang Lin
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c14
Jeffrey Cheung
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c15
--- Comment #15 from Gary Ching-Pang Lin
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c16
--- Comment #16 from Günther J. Niederwimmer
https://bugzilla.novell.com/show_bug.cgi?id=848797
https://bugzilla.novell.com/show_bug.cgi?id=848797#c17
--- Comment #17 from Gary Ching-Pang Lin
Hello Gary,
before thank's for your work!
But I have found this Procedure is not permanent on my system, after a shutdown power off, I have the same Problem then before ;) No Secure Boot possible.
But now the good News ;)
ASUS have make a New Bios "28.04.2014" for my P8C WS Bord, after many many .... EMails ;)
Now the Bios is correct and works with Secure Boot I test it with SLES Beta :-))
I'm very glad to know that they finally fixed the problem :)
Thank you again....
Thanks for your testing :) -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@novell.com