Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.kernel > #59614

State of SecureBoot for Debian GNU/Linux?

From Philipp Hahn <hahn@univention.de>
Newsgroups linux.debian.kernel
Subject State of SecureBoot for Debian GNU/Linux?
Date 2017-12-11 18:20 +0100
Message-ID <uVzUe-85t-7@gated-at.bofh.it> (permalink)
Organization Univention GmbH

Show all headers | View raw


Hello fellow DDs,

I'm employed by Univention and we ship our Debian based distribution
"Univention Corporate Server" with UEFI support. Currently we're
building our own Linux kernel and have our own signed version of shim
and grub.

For our next release, which will be based von Debian-Stretch, we're
considering to switch to the Debian provided kernel.

If read <https://wiki.debian.org/SecureBoot> and
<https://bugs.debian.org/820036>, but what's the current state of Secure
Boot in Debian?

We have successfully gone through the Microsoft SHIM review process once
and are currently waiting for the review of our SHIM-13 be the
shim-review list, so we have an EV certificate and I also have some
knowledge of the process myself.

Can I (we) help with improving the situation of Secure-Boot in Debian?

Sincerely
Philipp
-- 
Philipp Hahn
Open Source Software Engineer

Univention GmbH
be open.
Mary-Somerville-Str. 1
D-28359 Bremen
Tel.: +49 421 22232-0
Fax : +49 421 22232-99
hahn@univention.de

http://www.univention.de/
Geschäftsführer: Peter H. Ganten
HRB 20755 Amtsgericht Bremen
Steuer-Nr.: 71-597-02876

Back to linux.debian.kernel | Previous | NextNext in thread | Find similar | Unroll thread


Thread

State of SecureBoot for Debian GNU/Linux? Philipp Hahn <hahn@univention.de> - 2017-12-11 18:20 +0100
  Re: State of SecureBoot for Debian GNU/Linux? Ben Hutchings <ben@decadent.org.uk> - 2017-12-12 01:50 +0100

csiph-web