Mailinglist Archive: opensuse-bugs (5243 mails)

< Previous Next >
[Bug 809038] EFI problems - cannot boot windows with secure boot

https://bugzilla.novell.com/show_bug.cgi?id=809038

https://bugzilla.novell.com/show_bug.cgi?id=809038#c42


--- Comment #42 from Michael Chang <mchang@xxxxxxxx> 2013-03-25 11:55:08 UTC ---
Hi Andrey,

I just submitted grub2 package which includes grub.der to verify the signed
image

srid #160916

Hi Neil,

If Andrey and you agree to go this way, follow the instruction below to test ..

$ update package from andrey's repo
- This step will install grub.efi signed by andrey's home project, you need
to enroll his keys(cert.der) to MOK, ref to steps below to enroll it
- If your uefi firmware supports custom mode, better use it instead of MOK,
just point your firmware it path of grub.der to load it
- You can re-install grub2 package in 12.3 DVD to have SUSE signed loader
again

$ cp /usr/lib64/efi/grub.der /boot/efi
$ reboot
$ disable secure boot setting in bios menu
$ save settings and reboot
$ in grub menu press 'c' key
$ type

chainloader (hd0,gpt1)/EFI/opensuse/MokManager.efi
boot

$ select "Enroll key from disk"
$ navigate to the cert.cer file and press enter
$ follow the instructions to enroll the key. Normally this should be pressing
'0' and then 'y' to confirm
$ reboot
$ enable secure boot setting in bios menu
$ save settings
$ test

--
Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.

< Previous Next >
References