On 07/22/2013 09:03 AM, baban devkate wrote:
> Hello,
>
> Unable to load cer/der/crt certificates generated using Openssl/makecert
> in db, KEK and PK  on ASUS P8H61-M LX2 R2.0 system.
>
> Any insertion is failing with 'failed!' error.

As a workaround, consider using the efitools package:

http://blog.hansenpartnership.com/efitools-1-4-with-linux-key-manipulation-utilities-released/

Note that the page to which I linked refers to adding keys from Linux, 
but you need to use another set of tools provided with that package. 
Specifically, there's an EFI application called LockDown.efi that, when 
run in EFI's setup mode, will install your own keys. I describe the 
process here:

http://www.rodsbooks.com/efi-bootloaders/secureboot.html#add_keys

You will need a Linux system on which to build the binaries. (It's 
conceivable you could do it on some other platform that supports 
GNU-EFI, though.)

Good luck!

-- 
Rod Smith
rodsm...@rodsbooks.com
http://www.rodsbooks.com

------------------------------------------------------------------------------
See everything from the browser to the database with AppDynamics
Get end-to-end visibility with application monitoring from AppDynamics
Isolate bottlenecks and diagnose root cause in seconds.
Start your free trial of AppDynamics Pro today!
http://pubads.g.doubleclick.net/gampad/clk?id=48808831&iu=/4140/ostg.clktrk
_______________________________________________
edk2-devel mailing list
edk2-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/edk2-devel

Reply via email to