Re: [DNG] booting devuan minimal live on MSI laptop

2022-04-23 Thread Gregory Nowak via Dng
On Sat, Apr 23, 2022 at 11:25:49AM -0400, fsmithred via Dng wrote:
> Here's a devuan chimaera minimal-live iso with grub-efi-amd64-signed.
> Please let me know if it works with secure boot. Thanks.

Thanks fsmithred. The image you provided has the same issue as the
previous image "secure boot violation." I suspect the grub signature
isn't the problem. If it were, I'm 90% sure the USB drive wouldn't
show as boot media in the boot menu. I suspect the problem is the UEFI
expects something signed by Microsoft.

I was able to sort of solve my problem by creating a windows system
image from within windows itself. It not only restores in a virtual
machine, but also boots. Everything in the restored system seems to be
as it was when I created the system image, including the recovery
partition. Thanks for your help fsmithred.

Greg


-- 
web site: http://www.gregn.net
gpg public key: http://www.gregn.net/pubkey.asc
skype: gregn1
(authorization required, add me to your contacts list first)
If we haven't been in touch before, e-mail me before adding me to your contacts.

--
Free domains: http://www.eu.org/ or mail dns-mana...@eu.org
___
Dng mailing list
Dng@lists.dyne.org
https://mailinglists.dyne.org/cgi-bin/mailman/listinfo/dng


Re: [DNG] booting devuan minimal live on MSI laptop

2022-04-23 Thread fsmithred via Dng
Here's a devuan chimaera minimal-live iso with grub-efi-amd64-signed.
Please let me know if it works with secure boot. Thanks.

fsmithred

https://get.refracta.org/files/experimental/devuan_chimaera_4.0.0-signed_amd64_minimal-live.iso

___
Dng mailing list
Dng@lists.dyne.org
https://mailinglists.dyne.org/cgi-bin/mailman/listinfo/dng


Re: [DNG] booting devuan minimal live on MSI laptop

2022-04-23 Thread fsmithred via Dng
On 4/20/22 20:55, Gregory Nowak via Dng wrote:
> So, remastering the minimal live image to have a valid secure boot
> signature seems the simplest way forward. Any help on figuring out on
> how to get a valid signature, and remastering the iso image would be
> much appreciated.

Sorry, I just saw this today. I have no experience with secure boot, but I
can make a minimal-live iso that has the signed version of grub-efi-amd64
and post the link for you. You can let me know if it works.

Thanks,
fsmithred

___
Dng mailing list
Dng@lists.dyne.org
https://mailinglists.dyne.org/cgi-bin/mailman/listinfo/dng


[DNG] booting devuan minimal live on MSI laptop

2022-04-20 Thread Gregory Nowak via Dng
Hello everyone.

I need to backup a windows 10 laptop which I don't use, but need to
provide support for. This is a UEFI machine with secure boot enabled.

When I plug in a custom devuan install I have on a pen drive which
I've setup for such things, the system doesn't even recognize the
drive is plugged in when in the boot menu. This is most likely because this
is a system with grub2 booting from MBR which works for my other use
cases. So, I decided to dd the devuan Chimaera minimal live amd64 UEFI
iso to a pen drive. When I try to boot with the minimal live drive
attached, the drive is
recognized, but I get a message about invalid signature, secure boot
violation. Pressing enter on that just takes me back to the boot
menu.

Is there some way for me to get a valid signature from the existing
windows 10 install on that machine, and remaster the minimal live iso
to include that?

Removing the MVME drive and just backing it up on another system is
something else I've considered. However, to do so, I need to remove a
sticker over one of the screw holes in the case, which would void the
warranty. This is something I don't want to do, and I also don't look
forward to cracking open this thin laptop case.

I also hesitate to disable secure boot. Even if I could do that on
this laptop, I would need someone else to read the UEFI screens to me
while I did that. From what I've read, disabling and enabling secure
boot isn't just a simple toggle operation. I also don't want to make
the existing windows install unbootable before I backup the machine.

So, remastering the minimal live image to have a valid secure boot
signature seems the simplest way forward. Any help on figuring out on
how to get a valid signature, and remastering the iso image would be
much appreciated. Pointers to web pages are good enough. This is my
first time dealing with secure boot, so please excuse me if I'm slow
on the uptake. In case it matters, the machine in question is an MSI
GF63 Thin 10SCXR-222. Thanks in advance for any help.

Greg


-- 
web site: http://www.gregn.net
gpg public key: http://www.gregn.net/pubkey.asc
skype: gregn1
(authorization required, add me to your contacts list first)
If we haven't been in touch before, e-mail me before adding me to your contacts.

--
Free domains: http://www.eu.org/ or mail dns-mana...@eu.org
___
Dng mailing list
Dng@lists.dyne.org
https://mailinglists.dyne.org/cgi-bin/mailman/listinfo/dng