[Bug 1201066] kernel upgrade fails with Failed to enroll new keys
https://bugzilla.suse.com/show_bug.cgi?id=1201066 https://bugzilla.suse.com/show_bug.cgi?id=1201066#c17 --- Comment #17 from Chester Lin <chester.lin@suse.com> --- IIRC, uboot can only support UEFI SecureBoot in a special manner, which needs to specifically install the PK, KEK and db via the u-boot shell. See: https://github.com/u-boot/u-boot/blob/v2022.04/doc/develop/uefi/uefi.rst#con... BTW, MokUtil shouldn't be able to create any EFI variable to uboot because uboot has not yet supported SetVariable [EFI_RT_SUPPORTED_SET_VARIABLE, 0x0040] in its real-time services table. See: https://github.com/u-boot/u-boot/blob/v2022.04/lib/efi_loader/efi_runtime.c#... -- You are receiving this mail because: You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@suse.com