Possibility of accepting a network-based installer of Ubuntu as an official flavor?

Steve Langasek steve.langasek at ubuntu.com
Fri Feb 24 20:33:55 UTC 2023


On Fri, Feb 24, 2023 at 02:20:25PM -0600, Aaron Rainbolt wrote:
> This makes good sense to me. The concern I'm noticing here is that Secure
> Boot activates a kernel lockdown mode that prohibits kexec.

Incorrect.  It disables the old kexec syscall which doesn't have an
interface for doing signature verification of the payload.  It does not
disable the use of kexec as a feature.

-- 
Steve Langasek                   Give me a lever long enough and a Free OS
Debian Developer                   to set it on, and I can move the world.
Ubuntu Developer                                   https://www.debian.org/
slangasek at ubuntu.com                                     vorlon at debian.org
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: not available
URL: <https://lists.ubuntu.com/archives/ubuntu-devel/attachments/20230224/5a352a3d/attachment.sig>


More information about the ubuntu-devel mailing list