Comment on Secure Boot is completely broken on 200+ models from 5 big device makers

<- View Parent
cmnybo@discuss.tchncs.de ⁨2⁩ ⁨months⁩ ago

To use secure boot correctly, you need disable or delete the keys that come preinstalled and add your own keys. Then you have to sign the kernel and any drivers yourself. It is possible to automate the signing the kernel and kernel modules though. Just make sure the private key is kept secure. If someone else gets a hold of it, they can create code that your computer will trust.

source
Sort:hotnewtop