Missing KEK and DB variables with secure boot disabled

IvanHu ivan.hu at canonical.com
Mon Sep 29 01:45:52 UTC 2014


On 09/26/2014 06:06 PM, Matt Fleming wrote:
> On Fri, 26 Sep, at 09:53:35AM, Colin Ian King wrote:
>> On 26/09/14 09:48, Matt Fleming wrote:
>>> And
>>> do people think it would be reasonable to relax this test in non-secure
>>> mode?
>>>
>>
>> +1 on that.
>>
>> I've file a bug, https://bugs.launchpad.net/fwts/+bug/1374351
>>
>> Ivan, do you mind looking at at this? Thanks!
>
> Thanks for the quick response guys.
>

Hi Matt,

Thanks for your suggestion. Actually, this test was made to check if the 
machine already ready for the secureboot enabled or not. So if there are 
no DB and KEK, the platform should not say it's ready for the 
secureboot. Indeed, your concern also good to take. I'll review the test 
and send out the modified patches.

Cheers,
Ivan



More information about the fwts-devel mailing list