
20 May
2022
20 May
'22
10:44 a.m.
At 2022-05-20 14:34:18, "Heinrich Schuchardt" xypron.glpk@gmx.de wrote:
Am 20. Mai 2022 04:58:46 MESZ schrieb Rover Mo myzmzz@126.com:
Having EFI_SECURE_BOOT=y is not enough to use secure boot. You must also supply variables PK, KEK, db, dbx.
Furthermore you would have to disable a whole lot more commands to secure the device.
Currently we have patches in review to provide a bootmenu with optionally no access to the console. This is a better approach.
Thank you for your explanation.
Please forget my patches.
Best regards, Rover Mo