[Bug 1184297] Re: Secure boot failed, claiming boot is against security policy
Petter Reinholdtsen
pere at hungry.com
Wed May 29 08:17:03 UTC 2013
[Steve Langasek]
> So http://mjg59.dreamwidth.org/24869.html explains why you needed to
> pull the hard drive.
Yeah. This really suck!
> It does not explain why you would get an error about security
> policy. Can you attach the output of the following three commands
> on the affected machine:
>
> sudo efibootmgr -v
> od -tx1 /sys/firmware/efi/efivars/SecureBoot-8be4df61-93ca-11d2-aa0d-00e098032b8c
> od -tx1 /sys/firmware/efi/efivars/SecureBootEnforce-59d1c24f-50f1-401a-b101-f33e0daed443
>
> It is also potentially useful to have the contents of these files attached:
> /sys/firmware/efi/efivars/KEK-8be4df61-93ca-11d2-aa0d-00e098032b8c
> /sys/firmware/efi/efivars/db-d719b2cb-3d3a-4596-a3bc-dad00e67656f
Sure.
root at mariwan-EasyNote-LV11HC:~# efibootmgr -v
BootCurrent: 0000
Timeout: 2 seconds
BootOrder: 0000
Boot0000* HDD1: HD(1,800,5f000,da6c4276-2f04-4eab-a3e2-4c2be0e3aa63)File(\EFI\ubuntu\grubx64.efi)RC
Boot0001* Atheros Boot Agent BIOS(80,0,95)........................{..............................................
Boot0004* MATSHITA DVD-RAM UJ8E1 BIOS(3,500,da)................-...........A......#...................................
Boot0005* ST500LT012-9WS142 BIOS(2,500,1f)................-...........A......2...................................
root at mariwan-EasyNote-LV11HC:~# od -tx1 /sys/firmware/efi/efivars/SecureBoot-8be4df61-93ca-11d2-aa0d-00e098032b8c
0000000 17 00 00 00 00
0000005
root at mariwan-EasyNote-LV11HC:~# od -tx1 /sys/firmware/efi/efivars/SecureBootEnforce-59d1c24f-50f1-401a-b101-f33e0daed443
0000000 17 00 00 00 00
0000005
root at mariwan-EasyNote-LV11HC:~#
--
Happy hacking
Petter Reinholdtsen
** Attachment added: "KEK-8be4df61-93ca-11d2-aa0d-00e098032b8c"
https://bugs.launchpad.net/bugs/1184297/+attachment/3689540/+files/KEK-8be4df61-93ca-11d2-aa0d-00e098032b8c
** Attachment added: "db-d719b2cb-3d3a-4596-a3bc-dad00e67656f"
https://bugs.launchpad.net/bugs/1184297/+attachment/3689541/+files/db-d719b2cb-3d3a-4596-a3bc-dad00e67656f
--
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to shim in Ubuntu.
https://bugs.launchpad.net/bugs/1184297
Title:
Secure boot failed, claiming boot is against security policy
Status in “shim” package in Ubuntu:
Incomplete
Bug description:
I've struggled to install Linux on a Packard Bell EasyNote LV11HC,
without having to accept the Windows 8 license, and my progress is
documented in http://www.linlap.com/packard_bell_easynote_lv . Had to
pull the hard drive and install to a USB stick to be able to get into
the firmware menu and enable the F12 boot menu. After finally being
able to install Ubuntu 13.04 on the hard drive, the UEFI firmware
refused to boot the hard drive, claiming it was against the security
policy. I was able to boot Ubuntu by powering on again and using F12
to pick the hard drive.
No idea what is wrong, but can help with debugging the next few days
before I switch to legacy BIOS and put it into production.
ProblemType: Bug
DistroRelease: Ubuntu 13.04
Package: shim 0~20120906.bcd0a4e8-0ubuntu4
ProcVersionSignature: Ubuntu 3.8.0-22.33-generic 3.8.11
Uname: Linux 3.8.0-22-generic x86_64
ApportVersion: 2.9.2-0ubuntu8
Architecture: amd64
Date: Sun May 26 11:14:38 2013
Dependencies:
InstallationDate: Installed on 2013-05-26 (0 days ago)
InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130424)
MarkForUpload: True
SourcePackage: shim
UpgradeStatus: No upgrade log present (probably fresh install)
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/shim/+bug/1184297/+subscriptions
More information about the foundations-bugs
mailing list