Re: Secure Boot

2017-01-14 Thread Jan Dušátko
ndard and the Intel TXT. Shim is only part of secure boot, because can be easily defeated without the rest. https://www.kernel.org/doc/Documentation/intel_txt.txt https://software.intel.com/en-us/blogs/2012/09/25/how-to-enable-an-intel-trusted-execution-technology-capable-server http://www.intel.

Re: Secure Boot

2017-01-14 Thread Simon J. Gerraty
Johannes Lundberg wrote: > https://wiki.freebsd.org/SecureBoot > Interested in this too - though for proprietary systems where we have control over BIOS. The design should hopefully accommodate both. In particular any plan for how the loader would verify kernel and any

Secure Boot

2017-01-14 Thread Johannes Lundberg
Hi It's been almost a year since the Secure Boot wiki has been updated. https://wiki.freebsd.org/SecureBoot What is the current status and roadmap? Thanks! ___ freebsd-current@freebsd.org mailing list https://lists.freebsd.org/mailman/listinfo