Re: [PATCH 7/7] efi: Print the secure boot status in x86 setup_arch() [ver #7]

From: David Howells
Date: Fri Feb 03 2017 - 11:29:23 EST


David Howells <dhowells@xxxxxxxxxx> wrote:

> Ard Biesheuvel <ard.biesheuvel@xxxxxxxxxx> wrote:
>
> > Yes, but only if you are booting via UEFI, no?
>
> Why limit it so? Even if you don't boot via UEFI, the bootloader/kexec can
> always set the secure-boot state on.
>
> > So perhaps use efi_enabled(EFI_BOOT) instead?
>
> I've no objection to that, given it incorporates a test of CONFIG_EFI.

Feel free to just go ahead and change it in the patch. We can always take the
check out later.

David