[prev in list] [next in list] [prev in thread] [next in thread] 

List:       ubuntu-devel
Subject:    Re: Possibility of accepting a network-based installer of Ubuntu as an official flavor?
From:       Aaron Rainbolt <arraybolt3 () ubuntu ! com>
Date:       2023-02-24 21:02:37
Message-ID: bd4995f2-3322-6983-5e33-d96c6d6182cb () ubuntu ! com
[Download RAW message or body]

This is an OpenPGP/MIME signed message (RFC 4880 and 3156)
[Attachment #2 (multipart/mixed)]

[Attachment #4 (multipart/mixed)]

[Attachment #6 (text/plain)]

Huh. TIL. That's awesome.

On 2/24/23 14:33, Steve Langasek wrote:
> On Fri, Feb 24, 2023 at 02:20:25PM -0600, Aaron Rainbolt wrote:
>> This makes good sense to me. The concern I'm noticing here is that Secure
>> Boot activates a kernel lockdown mode that prohibits kexec.
> Incorrect.  It disables the old kexec syscall which doesn't have an
> interface for doing signature verification of the payload.  It does not
> disable the use of kexec as a feature.
>
-- 
Aaron Rainbolt
Lubuntu Developer
https://github.com/ArrayBolt3
https://launchpad.net/~arraybolt3
@arraybolt3:lubuntu.me on Matrix, arraybolt3 on irc.libera.chat


["OpenPGP_0x6169B9B4248C0464.asc" (application/pgp-keys)]
["OpenPGP_signature.asc" (application/pgp-signature)]
[Attachment #9 (unknown)]

-- 
ubuntu-devel mailing list
ubuntu-devel@lists.ubuntu.com
Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-devel


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic