| commit | 7c395b30a33a617c5cc2cdd419300af71277b79a | [log] [tgz] |
|---|---|---|
| author | Josh Boyer <jwboyer@fedoraproject.org> | Thu Aug 03 16:17:46 2017 +0100 |
| committer | David Howells <dhowells@redhat.com> | Thu Aug 03 16:17:46 2017 +0100 |
| tree | 11fd54af0e2838fd58c6ca0071947adf10bbfb06 | |
| parent | 4c2d71675fba6c81338bbd087014a4e2f75b776c [diff] |
MODSIGN: Allow the "db" UEFI variable to be suppressed If a user tells shim to not use the certs/hashes in the UEFI db variable for verification purposes, shim will set a UEFI variable called MokIgnoreDB. Have the uefi import code look for this and ignore the db variable if it is found. Signed-off-by: Josh Boyer <jwboyer@fedoraproject.org> Signed-off-by: David Howells <dhowells@redhat.com>