Re: [RFC] Second attempt at kernel secure boot support

From: Alan Cox
Date: Mon Nov 05 2012 - 08:39:32 EST


On Mon, 5 Nov 2012 12:38:58 +0000
Matthew Garrett <mjg59@xxxxxxxxxxxxx> wrote:

> On Sun, Nov 04, 2012 at 11:24:17PM -0800, Eric W. Biederman wrote:
> > "H. Peter Anvin" <hpa@xxxxxxxxx> writes:
> > >
> > > That is a hugely different thing from needing a console.
> >
> > Not at all.
> >
> > In the general case user intereaction is required to tell the system to
> > boot off of your choosen boot media instead of the local hard drive.
>
> No, in the general case the system will do that once it fails to find a
> bootable OS on the drive.

So your "secure" system can be wiped by a random Windows 8 install media.
Ooh thats good stuff 8)
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/