[arch-general] UEFI secure boot

Lukáš Jirkovský l.jirkovsky at gmail.com
Tue Jun 5 12:30:18 EDT 2012


On 5 June 2012 17:25, Calvin Morrison <mutantturkey at gmail.com> wrote:
>
> Just wondering - why does it have to be Microsoft's Key to used?

It doesn't. You can sign boot loader using your own key. But then you
need to store this key in UEFI firmware.

This is actually what I'm suggesting – that we should create an Arch
Linux bootloader signing key that will be used for signing boot stuff.
Users would have to store this key in their UEFI prior installing Arch
Linux.


More information about the arch-general mailing list