xenial 16.04 (4.4.0-21) UEFI secure boot developing signing module issue.

박영준 her0gyu at naver.com
Tue Jun 20 08:00:06 UTC 2023


Our company signed a module for distribution
simplely using mokutil mechnism.
But, I found a signed module not loaded 4.4.0-21
I found the reson is 
4.4.0.-21 kernel not support compilation feature 

CONFIG_IMA_TRUSTED_KEYRING=y
CONFIG_IMA_MOK_KEYRING=y

The commit including compilation feature is included on Ubuntu-4.4.0-22.38
root at ubuntu:/src/xenial# git describe --contains c926114774bf3
Ubuntu-4.4.0-22.38~356

In this situation, How we load the module using our certification without mokutil mechanism?


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.ubuntu.com/archives/ubuntu-devel-discuss/attachments/20230620/d982dfb2/attachment.html>


More information about the Ubuntu-devel-discuss mailing list