From patchwork Mon Jan 20 18:27:30 2025 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Gokhan Cetin X-Patchwork-Id: 4014 Return-Path: Received: from shymkent.ilbers.de ([unix socket]) by shymkent (Cyrus 2.5.10-Debian-2.5.10-3+deb9u2) with LMTPA; Mon, 20 Jan 2025 20:14:33 +0100 X-Sieve: CMU Sieve 2.4 Received: from mail-qk1-f191.google.com (mail-qk1-f191.google.com [209.85.222.191]) by shymkent.ilbers.de (8.15.2/8.15.2/Debian-8+deb9u1) with ESMTPS id 50KJEVQW022533 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT) for ; Mon, 20 Jan 2025 20:14:32 +0100 Received: by mail-qk1-f191.google.com with SMTP id af79cd13be357-7b6ee0af16dsf702059885a.3 for ; Mon, 20 Jan 2025 11:14:32 -0800 (PST) ARC-Seal: i=3; a=rsa-sha256; t=1737400466; cv=pass; d=google.com; s=arc-20240605; b=c5rONLyTmVYh7Q9+o6n4briEEMLWCOQYFPc+XPefu8qtVnLswr/cRFXc2je+8/r983 YggS+YmlwpvpUEITNVGQIXEkffDRWsoA9xwBobztaFhGquw9zvuK1g5lC0nJ5GkwC/Az fVgbQfQ+bWDilIAFLgkVHIQz+fKtKoflex2j4lKgapwPNFb+d5RLKeAtJcP1xJBvL9SV oZXUmzP0LzZuyoSeACvnHkWAOvV7l5CxKeuB1LLiV4k6JeMyT5hMBjg05YNUvkxfYm9Q YppMichpBIDu6Bh/GEybZKgDNyOp/Yd+eBLJA4RhzI/u3RozDb7YlQffGPe8K8uyXgfH 8QVQ== ARC-Message-Signature: i=3; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to:mime-version:msip_labels :content-language:accept-language:message-id:date:thread-index :thread-topic:subject:cc:to:from:dkim-signature; bh=yRcMlURAIJFQ0EzX5RPEK/nM1HpHwR9LfG6BOjZp/3o=; fh=D8cK+5sIRhHT47o5vX2EXv1nEnjnKINVSA4nKF6fdos=; b=HOppL0guugDSWhl5Vxh4ZvYaLxMg8MiwmJdM3TlmtE/cMTFYZHZwqp7EoH8EeERltD Esy9PlzXsQ+f/Q5Fag/40U+bLeh/ZIfzJmx8OWX2Ckhdqh0p/cj7zw0Scuw01MXDz3ev OxHlnkm8m8Zq6CzWMEOm7m8yLmzNy0GCR+R2CaS4Y5MyRsqqOGxbfUOT8dfgQiKZDv6S hI1YKCb6O6daEvpXrb+9nQcE/9js1dvbA5lrvkzAfzl0oJ4hujOjht4G2udTA9MOUD7H pFcXQtWHmkOO/ykNNHyJSM/tKVFCRZgwTJzWZjbLMr9uhRMtB7ZDZ49xoxBb2pciZtDa 9S6w==; darn=isar-build.org ARC-Authentication-Results: i=3; gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=selector2 header.b=Djn2zHp+; arc=pass (i=1 spf=pass spfdomain=siemens.com dkim=pass dkdomain=siemens.com dmarc=pass fromdomain=siemens.com); spf=pass (google.com: domain of gokhan.cetin@siemens.com designates 2a01:111:f403:2612::62e as permitted sender) smtp.mailfrom=gokhan.cetin@siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=googlegroups.com; s=20230601; t=1737400466; x=1738005266; darn=isar-build.org; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to :x-original-authentication-results:x-original-sender:mime-version :msip_labels:content-language:accept-language:message-id:date :thread-index:thread-topic:subject:cc:to:from:from:to:cc:subject :date:message-id:reply-to; bh=yRcMlURAIJFQ0EzX5RPEK/nM1HpHwR9LfG6BOjZp/3o=; b=s4cKHoqhR3nj+GR8H82e+Ij/d/LtNVGNqpUYMSEeIzfKtwfYt0r8D2qolXFhCEKCu7 lf2iW3/jCplfNcWt0VdMZ4W/9cvmSW+JcPHMVXOPvvc+c0YH+EwlQWoEfms6bGo/31nM VyCSKOHOXXfB7CAw+ymf+DffsTD7ykhus2pIJB7N/CNBpW8/wdJ456HUM8/sseZYwpgR L/9VQrKNzs+vwRl+MzsSfV1CvduViAg1Y4342+3g5zfcCFlUH5RsIAL5/2Vhf7rc/hKS aWtbtD01iR37JHbnopETCMpz1wmEFP/qQOSWDxWyYqAp295aGh2wsbgR6IuvhvBhixL2 daFg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1737400466; x=1738005266; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to :x-original-authentication-results:x-original-sender:mime-version :msip_labels:content-language:accept-language:message-id:date :thread-index:thread-topic:subject:cc:to:from:x-beenthere :x-gm-message-state:from:to:cc:subject:date:message-id:reply-to; bh=yRcMlURAIJFQ0EzX5RPEK/nM1HpHwR9LfG6BOjZp/3o=; b=cI6bUNpFnCfFwbrYNGj+w01pb7ljDmhsFuN3IiF5Fs3qKHVqgplZrvTtQjgvx6t82o XARmEDwKF4hPPRsaUqTve9YIIAR2qA0AWWQb03CnzvhdVfKQs0M3Z9XryEoLKwz76n7J u34Yx16xR5Aic29IeQEkpN36LkmWk2j+uY++Rcd8LSr97IshnczSzL77oksKkGTxHi5K 8mnmffn6WOQ2fcAA6Rd/8Bw9dDQvtRozf8kfzPZxaok0NG0xs2rfUwMgghe/T8hBJmQM 4YZ7IDjc/+9Gh4OMG50pHe0C1bSrZPU5nfjB2iW6ZQcqCbEwr8lHviXInW/kHCRgWO5T ljvA== X-Forwarded-Encrypted: i=3; AJvYcCXp/TnS6jso/4C3Q/rURyTRy1Ydzf7kRlFIr6Q+WuvHc1xEp1BWX7t4AnUCWrLr/bUhkoF2HuM=@isar-build.org X-Gm-Message-State: AOJu0YyTHpwAKtIKSPpBZTlxgE0s+6N/yzL7wz1wy/bypRrnLN6coLsf 4r+txrD1m/Zm4IKjG35hCnQ6HwSh3/zf7Pqvzb1kped35PUqHTTV X-Google-Smtp-Source: AGHT+IHJVbZ1BZXSuka1pDKtwYaAiUepJBAO1pNFnWSwwsq5mwD0ejSjrQccIaLF+RmEXGceKFurCw== X-Received: by 2002:a05:6214:3008:b0:6d8:a5da:3aba with SMTP id 6a1803df08f44-6e1b217ea11mr223998296d6.20.1737400466242; Mon, 20 Jan 2025 11:14:26 -0800 (PST) X-BeenThere: isar-users@googlegroups.com Received: by 2002:ad4:5481:0:b0:6d9:832:c74c with SMTP id 6a1803df08f44-6e1a103ca10ls8094666d6.1.-pod-prod-03-us; Mon, 20 Jan 2025 11:14:25 -0800 (PST) X-Received: by 2002:a05:620a:2849:b0:7b6:c2bf:3eeb with SMTP id af79cd13be357-7be6318021bmr2243442985a.0.1737400465800; Mon, 20 Jan 2025 11:14:25 -0800 (PST) Received: by 2002:a05:620a:5690:b0:7b6:67a8:4fcd with SMTP id af79cd13be357-7be633e0fbbms85a; Mon, 20 Jan 2025 10:27:32 -0800 (PST) X-Received: by 2002:a05:622a:1311:b0:467:5eb6:5153 with SMTP id d75a77b69052e-46e12a3f746mr226822811cf.19.1737397652389; Mon, 20 Jan 2025 10:27:32 -0800 (PST) ARC-Seal: i=2; a=rsa-sha256; t=1737397652; cv=pass; d=google.com; s=arc-20240605; b=b3jCkCwlY9649zvaTlTzNEh94R3RF8x4+cVxciRTTNOq3G/rKP1HVvWjU19yKzUk0d J4XXXsLR+vEdOkxh57AYu8tFqzG14DAMiU8h8oilRCT7SbGwYseKrTtEPkzzHEVS+kOG dPwPhZxEskzPXxamXRV+990PB2bR/Roi+RQ39e2KWw73rnI6/zR899t0Rg2/21wK7M87 fUXyXlqUdWsrod1wFFYg1frXRoXqXq/UMKAoddT4XwLbD0FAjSUxtIEgarJWLuEXQ8NY ZL0PG75eGiEZkzvc0OC1GZD89KqfoQ77UvwRXbzjHqOrF6cKO9jWVyIophIXTZcbn/ak Peiw== ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=mime-version:content-transfer-encoding:msip_labels:content-language :accept-language:message-id:date:thread-index:thread-topic:subject :cc:to:from:dkim-signature; bh=9eGxQK9TRD9TwGvrIEqaqUwDR/4Mlaoijk8EuovaVx0=; fh=32ILd9dLkmWLyibCKlF3Us4sR9gO6hcYIW3qO0b1hsw=; b=W/jUJOBtrw+BA2Jn2eoHGnqCMer8uaPIlVO14JzSrtSfuxusW9AoFSTqRfjW0HmVnl WBM+KPyPytlYFIWA39AVrgUt8qP+c1joI0A9ZijTsWGdZRL+FnXOOZqyDc3PhmHI4Z3r XyLSOIId2jRqc6PgtNzS4w5DEYKqhfw5AMrcXqwBOdeDwOhtAj1oYgkQYfnqOjlPe9Yz AXX8jXxqpkeoWAWc9I+H3R9KEzPKAZSZN24g2Y/VIQLeiPiGb7wUhZhLrZNW4bq981k1 SXGTLuBkHJ7GgzxmbDn96oOIzHI4XFF7WnKWbWLuR3+DMAyOVksRjqSKjzW0ezVrnqsP 9ewQ==; dara=google.com ARC-Authentication-Results: i=2; gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=selector2 header.b=Djn2zHp+; arc=pass (i=1 spf=pass spfdomain=siemens.com dkim=pass dkdomain=siemens.com dmarc=pass fromdomain=siemens.com); spf=pass (google.com: domain of gokhan.cetin@siemens.com designates 2a01:111:f403:2612::62e as permitted sender) smtp.mailfrom=gokhan.cetin@siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com Received: from EUR05-AM6-obe.outbound.protection.outlook.com (mail-am6eur05on2062e.outbound.protection.outlook.com. [2a01:111:f403:2612::62e]) by gmr-mx.google.com with ESMTPS id d75a77b69052e-46e102fb21csi3142591cf.2.2025.01.20.10.27.32 for (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Mon, 20 Jan 2025 10:27:32 -0800 (PST) Received-SPF: pass (google.com: domain of gokhan.cetin@siemens.com designates 2a01:111:f403:2612::62e as permitted sender) client-ip=2a01:111:f403:2612::62e; ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=lHYUvsvK8FWR0g1SSY+YDK8XZljiEHptXAelAjgfi5UsAdVIBq+WaPHwO/XhuWYuRB7KZYuD4DPxX78I4r3vkH+WkR1Uvn1n9kAcr8FNVweW1EKg8h4TelH/f72wyYTluVkLylKC0808uNBt3frYWh69DeCgOzQiR251Rs9FSnZ1mQvKHjNsUsuLskaj4kHTeBAqYWhG7jlZ8UUNNBz6a6FvT/mleo/OkTesxQ2tVkoqK8vR1DeiI1t6UJECEzFLeCrBHrikSpcLsuPA7df28gfPzVWNT+pv8kPqV1koTR1hF5jpcdCHmaPbahfCzJv7NKcft4eW7pnclSgpI4327w== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=9eGxQK9TRD9TwGvrIEqaqUwDR/4Mlaoijk8EuovaVx0=; b=J/ZK0QVmzP+nsqg6NJDBNZD6hY57DEmO3rByAao0IeNjT2IJ5KT8wmKGHm4qjhCGdR952llkh1R0LMDuBJa8UXaEoirv7O1A6G/tP+ikBeTsOjtHd9DAxVsoTz4LxGO3KRsgIWgbPpeGX/jX/svwogu8p12Nel0TwLz0iBnuf8xxKFLhKJn+Z9UW1+8enmRICNsl/dZk4xDNTBM3ya62GskrOoMJ54/e8yRhETxMrVaGteJvG6Vnq3+lEnhy49MVjQlAlQMm+eAXcWjFxKfUkOCpW/RhGfdkDVSS26OLvzoS/JBDABaUB6FOtXl1KBPZeKlIo1WP16rw5Oqz7Yd6tg== ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=siemens.com; dmarc=pass action=none header.from=siemens.com; dkim=pass header.d=siemens.com; arc=none Received: from PRAPR10MB5422.EURPRD10.PROD.OUTLOOK.COM (2603:10a6:102:27a::6) by PA1PR10MB8738.EURPRD10.PROD.OUTLOOK.COM (2603:10a6:102:440::12) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.8377.13; Mon, 20 Jan 2025 18:27:30 +0000 Received: from PRAPR10MB5422.EURPRD10.PROD.OUTLOOK.COM ([fe80::1432:b18b:182c:9158]) by PRAPR10MB5422.EURPRD10.PROD.OUTLOOK.COM ([fe80::1432:b18b:182c:9158%7]) with mapi id 15.20.8377.009; Mon, 20 Jan 2025 18:27:30 +0000 X-Patchwork-Original-From: "'Cetin, Gokhan' via isar-users" From: Gokhan Cetin To: "isar-users@googlegroups.com" CC: "quirin.gylstorff@siemens.com" , "MOESSBAUER, Felix" Subject: [PATCH] doc/user_manual: mention EFI variable access and platform keyring for module signing Thread-Topic: [PATCH] doc/user_manual: mention EFI variable access and platform keyring for module signing Thread-Index: AdtraJv0FHbSMJixTxaMdB9tJ2n+hA== Date: Mon, 20 Jan 2025 18:27:30 +0000 Message-ID: Accept-Language: en-US Content-Language: en-US X-MS-Has-Attach: X-MS-TNEF-Correlator: msip_labels: MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_ActionId=9ad310eb-9475-42a1-8a16-94ad1f12b076;MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_ContentBits=0;MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_Enabled=true;MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_Method=Standard;MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_Name=restricted;MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_SetDate=2025-01-20T18:24:00Z;MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_SiteId=38ae3bcd-9579-4fd4-adda-b42e1495d55a; x-ms-publictraffictype: Email x-ms-traffictypediagnostic: PRAPR10MB5422:EE_|PA1PR10MB8738:EE_ x-ms-office365-filtering-correlation-id: 18e4921e-702a-495e-55f9-08dd39801969 x-ms-exchange-atpmessageproperties: SA x-ms-exchange-senderadcheck: 1 x-ms-exchange-antispam-relay: 0 x-microsoft-antispam: BCL:0;ARA:13230040|1800799024|376014|366016|38070700018; x-microsoft-antispam-message-info: =?iso-8859-1?q?ySz+JRvcxDInhYcivfEwvWFLNG?= =?iso-8859-1?q?HOOAqPk6bqUqdMcVODevpAMh5ZIsEsaWv5qtjTo6k1wdjuc/CE2DWTairDIO?= =?iso-8859-1?q?ab77JwzD/lb9ed7dUYG1KhyA5Qjxbo4eZ2YX/pMMrYbqTO+0XRjHHrl1A6WY?= =?iso-8859-1?q?OSvh13wGBreM9Eg89dbA9XJxNGBy1tti+Nbkg6yabyjQxFo55n3fv5GWqli6?= =?iso-8859-1?q?8Gyn4PpmmqUCfD8nXFxw6yQ31j3e47rXJfnZmh+2Lpd1Jj9eLFDnK7reUev9?= =?iso-8859-1?q?WEDhovLVDqZoH0Mkf5eYHZX8qOHH3Nkga3SGr6AOaw5o4QK8G+rm2FMhrvZJ?= =?iso-8859-1?q?8Hhl32h0JtZL9l8FU4uvRtfRQ4RCYyQNgP5vn3v4WuGGSn1UAVYz5SUX3OcY?= =?iso-8859-1?q?mtFeuXsy3AjDfQ5pRdsKgj1OhSDB3IQRmw9uTWn0DAkJsimYEzMfD9Njqrt5?= =?iso-8859-1?q?P7ivbBwFtguE/Bbc8TL6z45wTqhFZ6Mv5u2XYOeN993A2nEjAZqSoVY6SPYc?= =?iso-8859-1?q?rcHseEB+T51jp8pmeL1TPK1kaq6U17REyV6y19TNYsGka2Nsl6JX9qlYOOJa?= =?iso-8859-1?q?rv+tDcpRyTzmoyf678yqkdxb93a4Hx6PWVxRlYEQyoWENpu3eStBu6G/Wu42?= =?iso-8859-1?q?yvdQehpaSxOIZyiBOlvkAcqu0okyDeoFsuchXKoot8xIp+YW7+siXDqRu1DL?= =?iso-8859-1?q?0vEH5yOQnr/tr4B7vyU35sVzBthjCdmsIXGFpdvp/JY+hYXb6kpYFvJL9zJT?= =?iso-8859-1?q?d5bNNuvAlM+OONMUYEc8K/MQn1Fc5PMQgTPPteWjurNFz7u8cY4ACYWpoZGi?= =?iso-8859-1?q?HcySSVkaU2nKzkgt182Q00Blh4IDMIvQU+gZz+4htIMuZf1qdlkgTu/S8lC/?= =?iso-8859-1?q?YTtlUPTGSipwbRa0STIbNPZZg6H2w/w2kIfLn3bnOMkHoZ5Cb8CyW2mpsT70?= =?iso-8859-1?q?j6ZBvvlgDCXfiF2AmrIGRTOVaDf+iS7u/4XaXejZnQinllIA09Glwb2tRqrK?= =?iso-8859-1?q?GcJSzbNwJ8Lf28VgjWeMWOvHPLp8kchqswKrQrSd/XV+1TZwW1PHqhiauo0u?= =?iso-8859-1?q?E9t/Nu4G4eZDeOpmxwGMq6UP4gr9caaqBvdPv21NmvVnRMQX0ppGivF2BmB/?= =?iso-8859-1?q?RfB+VLxG87RpNTqM9KPrKW9nDB+KIIJcKL+oGDXPDfydp4A4oTEwCm2J4XEu?= =?iso-8859-1?q?ec82b0Wk1/kFwz6KGJtJ0gyiGkzxu2Q7+52/sb8L3o3js0HhgXcnOtnVlqth?= =?iso-8859-1?q?BAKmrZ2y5B/sUWo+yhs1La9mvgREc0ioZTnbvUT5M2u17MkCpLJXu/YdnFzo?= =?iso-8859-1?q?9Rktvfu7dK3VZGh/zsj7dARC9UeByZD8e4YoS2112PC6lFp7KktaqKnwGeW1?= =?iso-8859-1?q?16DKeCSf9CwBaDhkGuBIZZDWM8IZ5rRp1WR5lYpziyX7BZlO+wan19R3wbTg?= =?iso-8859-1?q?ioE2RRuRSlLepBxUzd2I5UwfUvo589LO9jhyMkFjw3dP7wllYug+vxmZjpsI?= =?iso-8859-1?q?LMG60V?= x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:PRAPR10MB5422.EURPRD10.PROD.OUTLOOK.COM;PTR:;CAT:NONE;SFS:(13230040)(1800799024)(376014)(366016)(38070700018);DIR:OUT;SFP:1101; x-ms-exchange-antispam-messagedata-chunkcount: 1 x-ms-exchange-antispam-messagedata-0: =?iso-8859-1?q?hHRAmKuDdq22AlDYeAhafLX?= =?iso-8859-1?q?pbYeEBf9Yrv8K0IkBENZfnUgvp+T+7HQRatcE71ToIQ7hKhSuw0HCGpp07sY?= =?iso-8859-1?q?LJZnEaC7utobZxn67y+xonXIU/+7Bh1g6pilzKD4hV/dvtKVpegLqKD831wZ?= =?iso-8859-1?q?Si2Cfuse4RT5sq1UH8VRfBMpKWITklfJiwup05QJ1zsSLxWARjW75Oi8mLWf?= =?iso-8859-1?q?boquuiyGLtLX1QJR6xva1UEwtyuEALqaarbngMJxQ/2xpR0lhSmLeVYtJChf?= =?iso-8859-1?q?cWTIUq+qAEh5+zWB/oJXWUd12CiHxrQXILJvt31bmdfkEODMixLLo7A4uSBF?= =?iso-8859-1?q?4Dpxi6iVbX8v6VgLSTAZRcfd6CCyzbxWyzIbFInzlGKF2rkVQ9h7sPk9Zx83?= =?iso-8859-1?q?61DSTq3KRUzh5SVBCnCSMZMq2v75wfXaWoPTD8KyhiqWBDGtQJlKao7isW55?= =?iso-8859-1?q?rKb4oNa30PL+IcwJZJLKBAmmonDczI2phgb1J4MdKMoxB6/96dr7/eD1QhIa?= =?iso-8859-1?q?HCmqXQBAGLFENxa7peoxZ3sHnlIflMb0QJjxnNPZJifJnS3vFIeylw2F4kBb?= =?iso-8859-1?q?xfLbNY/QWrvNzsIWJAErEMxvE5FaGuWMuTtoDPM2cDoyf4gFzoRBOMEHka5X?= =?iso-8859-1?q?k3e1FfFBhVYPqW2KGd5k61aJf1B0Kq/cYLRBsmNVUSa+zjkald3KzrWQDc2c?= =?iso-8859-1?q?S9xMjzKQWM/OD1O5G3P4zKofNXm5b44gGS0Ga4RdOKjxv6Asap0aZkOfBUV8?= =?iso-8859-1?q?2WCvBF6YDPDHgdYH6JH8eR3iqeoS9QxatpBur2wyN1H7JYo5SlpY4ZXfkrGn?= =?iso-8859-1?q?1lxwP84vqYdIKopMKTPTq4zJwFxdVe2D6a0C5C6W3oEt2QRtAIgFbMXGp9bv?= =?iso-8859-1?q?p2nQelQGSjMauAEhqDKcjUN2tEC7YC5qlGG0crIDfHRNkcPSKi+hiRbLGs2s?= =?iso-8859-1?q?E19crlyoprDDr9YKVypOeMYA4+Hk1GhIR696KQlpKS0cVTxuVWHC4oOkJiDW?= =?iso-8859-1?q?vjwLJuSKSurovWTS2eu73nKzGQ6uRJUEEjBTkSiFgGdP9r6xVB7hklh8Tnxa?= =?iso-8859-1?q?eHeY+MSQx6no5UaRaAXm5DsfkM/XHKZ5g2apj3K4lduRWp2IUZ8uemx++eQu?= =?iso-8859-1?q?kACikiGNvJQ70cYZ036Kasncum/9L2WhnC21HbhbyhrgIQ+jDzn8ax4UJ4fV?= =?iso-8859-1?q?xyMC3Bjg4rBslS9KvRPzdgfixHb/5EFTgvrMr02FS7KBJ8e7lB6qHnl6+IFW?= =?iso-8859-1?q?e2vmwu8fTrY5YouCeoIvam4nGKimrFea3ceBuiXwejN6s+Ug06NXdZDqIs0c?= =?iso-8859-1?q?T9AMRVhRFiCusDaynNpbdNKfOpgkqY6DIHBgQSCIgYljgc9QJjXNNYRzp12l?= =?iso-8859-1?q?2XmLXVskoLSgoV7OPmAOqTysN6a3IO2kEdtrDg5NdedJGpKnxZyNRmjCvlMf?= =?iso-8859-1?q?292O9IobkvuBi8bM17BVBO/TT32IA5N8GzSBKeKqDldpCU+3IglVPxqX+a8e?= =?iso-8859-1?q?rb+5Retm5OePY5D/ID0Z/J66QcnYCFxiuO9+qwnPK5yRZ32UOAD99hG6OU3B?= =?iso-8859-1?q?yRx0fOE3AJtL0My/KB/Ys8yKTOYrRwrc5lmS4ngwMnGw7yd+7zzupemspNus?= =?iso-8859-1?q?prGc4JIMkDuxX7kWm?= MIME-Version: 1.0 X-OriginatorOrg: siemens.com X-MS-Exchange-CrossTenant-AuthAs: Internal X-MS-Exchange-CrossTenant-AuthSource: PRAPR10MB5422.EURPRD10.PROD.OUTLOOK.COM X-MS-Exchange-CrossTenant-Network-Message-Id: 18e4921e-702a-495e-55f9-08dd39801969 X-MS-Exchange-CrossTenant-originalarrivaltime: 20 Jan 2025 18:27:30.1350 (UTC) X-MS-Exchange-CrossTenant-fromentityheader: Hosted X-MS-Exchange-CrossTenant-id: 38ae3bcd-9579-4fd4-adda-b42e1495d55a X-MS-Exchange-CrossTenant-mailboxtype: HOSTED X-MS-Exchange-CrossTenant-userprincipalname: Bsvn5gsOrVDL6LwVwc7NEhlb3dArAa51WC6MTryrTaeeuGZRG1KX21tjdV4OmS7yZkSIlUsA5WLQk6PdMsG5blh1TOTL9P7pyc/maw6e9NM= X-MS-Exchange-Transport-CrossTenantHeadersStamped: PA1PR10MB8738 X-Original-Sender: gokhan.cetin@siemens.com X-Original-Authentication-Results: gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=selector2 header.b=Djn2zHp+; arc=pass (i=1 spf=pass spfdomain=siemens.com dkim=pass dkdomain=siemens.com dmarc=pass fromdomain=siemens.com); spf=pass (google.com: domain of gokhan.cetin@siemens.com designates 2a01:111:f403:2612::62e as permitted sender) smtp.mailfrom=gokhan.cetin@siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com X-Original-From: "Cetin, Gokhan" Reply-To: "Cetin, Gokhan" Precedence: list Mailing-list: list isar-users@googlegroups.com; contact isar-users+owners@googlegroups.com List-ID: X-Google-Group-Id: 914930254986 List-Post: , List-Help: , List-Archive: , List-Unsubscribe: , X-Spam-Status: No, score=-4.9 required=5.0 tests=DKIMWL_WL_MED,DKIM_SIGNED, DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF,MAILING_LIST_MULTI, RCVD_IN_DNSWL_BLOCKED,RCVD_IN_MSPIKE_H2,RCVD_IN_RP_CERTIFIED, RCVD_IN_RP_RNBL,RCVD_IN_RP_SAFE,SPF_PASS autolearn=unavailable autolearn_force=no version=3.4.2 X-Spam-Checker-Version: SpamAssassin 3.4.2 (2018-09-13) on shymkent.ilbers.de X-getmail-retrieved-from-mailbox: =?utf-8?q?INBOX?= Enrolling MOK or importing platform keys is not possible without access to EFI variables. Signed-off-by: Gokhan Cetin --- doc/user_manual.md | 10 +++++++++- 1 file changed, 9 insertions(+), 1 deletion(-) diff --git a/doc/user_manual.md b/doc/user_manual.md index 62d16c8c..bb8eb21b 100644 --- a/doc/user_manual.md +++ b/doc/user_manual.md @@ -1127,7 +1127,15 @@ modprobe example-module mokutil --import /etc/sb-mok-keys/MOK/MOK.der ``` -Use the previously definded password to enroll the key, then reboot. +Use the previously defined password to enroll the key, then reboot. + +If EFI variable access is disabled on kernel (due to high latencies under RT kernel), +enrolling will result in failure `EFI variables are not supported on this system`. +EFI variable access can be enabled by passing `efi=runtime` kernel parameter. + +Similarly, in cases where EFI variables are not supported, the system will not be able +to import the keys defined on the platform in the kernel platform keyring. This will also +result in kernel modules not being verified if they are signed with one of these platform keys. **Boot self-signed image**: