Hi Sahil,

You are right, noefi kernel argument here is to make sure kernel doesn't use 
EFI runtime services after measured launch.

Regards,
-Ning

Intel Open Source Technology Center
Intel Corporation
3621 Juliette Lane
Santa Clara, CA  95054
www.intel.com<http://www.intel.com>


From: Sahil Rihan [mailto:sri...@fb.com]
Sent: Tuesday, May 26, 2015 2:30 PM
To: tboot-devel@lists.sourceforge.net
Subject: [tboot-devel] noefi kernel argument

Hi,

I noticed that tboot grub2 scripts add the noefi kernel argument when 
generating a grub2 config. There doesn't seem to be anything in the tboot 
change logs explaining the need for this argument.

I suspect that this was added to ensure the kernel doesn't make use of EFI 
runtime services after dynamic launch, since EFI code isn't being measured. 
Would be great if someone can confirm.

Thanks,
Sahil
------------------------------------------------------------------------------
_______________________________________________
tboot-devel mailing list
tboot-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/tboot-devel

Reply via email to