[Bug 1870955] Re: MokManager - Only DER encoded certificate (*.cer/der/crt) is supported

Steve Langasek steve.langasek at canonical.com
Sat Apr 11 03:58:12 UTC 2020


What were the steps you took to try to manually add the certificate?

The /var/lib/shim-signed/mok/MOK.der file that we populate is certainly
a DER-encoded certificate, and users have been successfully registering
these certificates through MokManager.

What version of the shim-signed package do you have installed?

** Changed in: shim-signed (Ubuntu)
       Status: New => Incomplete

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to shim-signed in Ubuntu.
https://bugs.launchpad.net/bugs/1870955

Title:
  MokManager - Only DER encoded certificate (*.cer/der/crt) is supported

Status in shim-signed package in Ubuntu:
  Incomplete

Bug description:
  Installation of VirtualBox requires signing kernel modules.
  During installation a certificate is generated. It should be automatically added during system reboot. However, this is not happening.

  Manual attempt to add a certificate:
  After selecting the generated certificate the following error occurs:
  "Only DER encoded certificate (*.cer/der/crt) is supported".
  I managed to establish that it was MokManager's fault. It does not allow adding ANY certificate.

  Laptop: Acer Aspire 7 A715-74G-78PH
  UEFI:   Vendor: Insyde Corp.
  	Version: V1.23
  	Release Date: 10/25/2019

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/shim-signed/+bug/1870955/+subscriptions



More information about the foundations-bugs mailing list