On Tue, 09 Jan 2018 15:00:39 +0100, Ludwig Nussel wrote:
Hi,
In bug https://bugzilla.opensuse.org/show_bug.cgi?id=1075051#c3 Steffen suspects different settings for kexec with secure boot enabled in Leap 15 vs TW. Is that that case? If so, intentional?
SLE and Leap contain more secure boot patches than TW. It's because the lock-down patches are still not accepted by upstream. And, one of them is indeed to disable kexec_load syscall in secure boot. But note that the kexec_load_file syscall is still allowed in secure boot mode. So if kexec loads the kernel with -s option, it should work on SLE/Leap, too. Adding Joey who have better clue on this to Cc. Takashi -- To unsubscribe, e-mail: opensuse-kernel+unsubscribe@opensuse.org To contact the owner, e-mail: opensuse-kernel+owner@opensuse.org