Re: [RFC PATCH 00/18 v3] Signature verification of hibernate snapshot

From: Florian Weimer
Date: Wed Aug 28 2013 - 17:21:44 EST


* Chun-Yi Lee:

> + EFI bootloader must generate RSA key-pair when system boot:
> - Bootloader store the public key to EFI boottime variable by itself
> - Bootloader put The private key to S4SignKey EFI variable for forward to
> kernel.

Is the UEFI NVRAM really suited for such regular updates?
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/