-
Notifications
You must be signed in to change notification settings - Fork 131
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Meta: Signing memtest86+ v6.10 #314
Comments
Any news? Has it been internally discussed or something like that? |
FYI, this makes it harder to use Debian Live as an effective troubleshooting/rescue OS tool, because the included memtest86+ will refuse to run out-of-the-box with grub-efi showing an "error: bad shim signature." message. |
Having memtest86+ signed for secure boot would be a really valuable step towards universal adoption of secure boot, since this is quite a valuable debugging tool for systems which is broadly deployed across linux distributions. Any chance of getting someone with the means to facilitate signing to pick this up? |
Hi, upstream auxiliary maintainer here. |
I think what you want to do is to self-audit and write an audit report. "This is blah, this is what we do, here's why we believe this is safe meow". |
I see this with secure boot on. Using Debian 12 (Bookworm).
|
As talked in #debian-efi:
memtest86+ v6.10 now finally supports Secure Boot.
@Fantu and me, the Debian Maintainers of it, would like to get it officially signed by the Debian CA.
And probable it would be useful for other distributions too.
So what needs to be done to get it signed?
Can Fantu and I do anything? Or does upstream of memtest86+ needs to do anything first?
The text was updated successfully, but these errors were encountered: