查看bootctl 状态 sudo bootctl status System: Firmware: UEFI 2.31 (American Megatrends 4.653) Secure Boot: disabled Setup Mode: user Boot into FW: supported Current Boot Loader: Product: systemd-boot 247.3-1-arch Features: ✓ Boot counting ✓ Menu timeout control ✓ One-shot menu timeout...
systemd Secure boot integration sicher*boot automatically installs systemd-boot and kernels for it into the ESP, signed with keys generated by it. SECURITY The signing keys are stored unencrypted and only protected by the file system permissions. Thus, you should make sure that the file system ...
GRUB has to do the decrypt, and it's slow AF. It's a price of encrypted kernel and initramfs. IMO (or should I say Lennart Poettering's opinion, which I share) secure boot should be the responsible
> > especially as secure boot signing is not yet available. > > > > After it's been in the testing image like this for a while, and after > > we have secure boot integration finished up, would it be ok to show a > > question in the non-expert install too? GRUB would still be...
we have secure boot integration finished up, would it be ok to show a question in the non-expert install too? GRUB would still be the default of course, the question would select it by default, and allow to switch to sd-boot if chosen. Where would be the best place to add this?
1. Systemladerspezifikation https://systemd.io/BOOT_LOADER_SPECIFICATION 2. UEFI-Spezifikation https://uefi.org/specifications 3. EDK2-Dokumentation https://edk2-docs.gitbook.io/understanding-the-uefi-secure-boot-chain/secure_boot_chain_in_uefi/uefi_secure_boot 4. Sicherer Systemstart und Op...
Secure Boot: disabled (setup) TPM2 Support: no Boot into FW: supported Current Boot Loader: Product: systemd-boot 253-1589-gf6e94c5 Features: ✓ Boot counting ✓ Menu timeout control ✓ One-shot menu timeout control ✓ Default entry control ...
Bug Report Description I picked up an Ampere Altra motherboard + CPU combo and am trying to install Talos on it. When I boot off of the Secure Boot installer, the systemd-boot menu only has the "Reboot Into Firmware Interface" option - t...
This also fails on the autobuilders: ERROR: systemd-1_255.6-r0 do_patch: Applying patch '0001-basic-add-PIDFS-magic-31709.patch' on target directory '/home/pokybuild/yocto-worker/qemux86-alt/build/build/tmp/work/core2-32-poky-linux/systemd/255.6/git' CmdError('quilt --quiltrc /home/...
systemd-boot-native_255.4.bb > > b/meta/recipes-core/systemd/systemd-boot-native_255.6.bb > > similarity index 100% > > rename from meta/recipes-core/systemd/systemd-boot-native_255.4.bb > > rename to meta/recipes-core/systemd/systemd-boot-native_255.6.bb > > diff --git a/meta/...