From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from shymkent.ilbers.de ([unix socket]) by shymkent (Cyrus 2.5.10-Debian-2.5.10-3+deb9u2) with LMTPA; Tue, 21 Jan 2025 10:41:07 +0100 X-Sieve: CMU Sieve 2.4 Received: from mail-oa1-f61.google.com (mail-oa1-f61.google.com [209.85.160.61]) by shymkent.ilbers.de (8.15.2/8.15.2/Debian-8+deb9u1) with ESMTPS id 50L9f4vK025592 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT) for ; Tue, 21 Jan 2025 10:41:05 +0100 Received: by mail-oa1-f61.google.com with SMTP id 586e51a60fabf-29e2bd938a1sf8453378fac.3 for ; Tue, 21 Jan 2025 01:41:05 -0800 (PST) ARC-Seal: i=3; a=rsa-sha256; t=1737452459; cv=pass; d=google.com; s=arc-20240605; b=dREHu1Dv1qUywv17qYTjAgUuGQeydoJgJcXMvb2qADyLUtUwPQG0iR7JG8TA8LAGGk 6D5PhAWBTR7XnDuVejP1dGhIaixyiXD5q5uWmDmr9Gv7U3s2fKispZNqLYoKG6uLUR41 BkbJILfmeAVqEjYoVvrvqVArGSmp0tbNk5dqIjoc3xjUO5zrQw+Dx4lCOHzX4yvTu0vm hlIXzd8ITwVbrGlGucklPfPzTlnise0sregUvI/oIAOKNsTJiRaYn1IqpzeOCXQIm/vK WAGePPeBZ7r3scLiipZVEAa7FmmiEsXju9Scw7SePscHaQXY7W0aso+m5yKPA19UMFlE UFmw== ARC-Message-Signature: i=3; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to:mime-version:in-reply-to :autocrypt:content-language:from:references:cc:to:subject:user-agent :date:message-id:dkim-signature; bh=bxGBQH/39206uHW5dMhTq8s06tqbyEZ23MoDNnOt8rk=; fh=2CaZWhJzzGoShLw5z1n+aFIlGHFVmau/JpsyY0Sgiok=; b=ZCoYXW9/MV1MaoDOHegFBsx7D0UtDj/SJUIK0l3Ra99eVAMsMW7xwN/wBKTFKL+17f sjj5pRsl+2tFoS7BH3vbQJTvxefB1Yg0s3VbOfTMmBP3G24GDAInKQzDAFDTa7GGGKJH /8tCRz7SddxWQwCZK3yf8znF5kGLu3WgAbujmyGOsV3BSP5tKXYozoFMTd36M/Fkq46q O43fitzEA2Ng1V7ezrJSvVuSq5O+gJiHjurz7fdnXErLSibWv9NYEW+6xDALW6AHbNjT sxsDVLYTb8Zg0Fy6ZKaanxqcVdudo3HBQO6tfFFBPwrcONc/g7lgOy6SkUA7/U7dHUow KuiQ==; darn=ilbers.de ARC-Authentication-Results: i=3; gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=selector2 header.b=IL781I6u; arc=pass (i=1 spf=pass spfdomain=siemens.com dkim=pass dkdomain=siemens.com dmarc=pass fromdomain=siemens.com); spf=pass (google.com: domain of jan.kiszka@siemens.com designates 2a01:111:f403:c200::3 as permitted sender) smtp.mailfrom=jan.kiszka@siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=googlegroups.com; s=20230601; t=1737452459; x=1738057259; darn=ilbers.de; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to :x-original-authentication-results:x-original-sender:mime-version :in-reply-to:autocrypt:content-language:from:references:cc:to :subject:user-agent:date:message-id:from:to:cc:subject:date :message-id:reply-to; bh=bxGBQH/39206uHW5dMhTq8s06tqbyEZ23MoDNnOt8rk=; b=tDdRUOkfIecOIvs/B4QADuWR6hNB+kUPud5YHudBx4Gytjy+ZC8emCPSL6132CnLh8 w5xoEMML/sBTNhs+ysaJoW8fosA3jsUTEU+Qju99MY/6JYGZGxEvH4YAtnmlf5bonus4 RNOIKs2S8jzWxDtJvr7FSovwjaOiVgk9RTYT2fHhPaa/na+kBBD2Oic/10RdvKvX9X2L v5cqiZ20ETMbVjhL5NqHQ6ZQyNyFM21NtjuloBZ6nTHuJL0ayz2YQprzQK6lwwSz7Q99 gy58UhwDk2l0tTwsMxfmLfhVHPdgrN1pVbybOWQwXgn+MiX/fT3ra81LEXKo4UXC89Xc 504g== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1737452459; x=1738057259; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :x-spam-checked-in-group:list-id:mailing-list:precedence:reply-to :x-original-authentication-results:x-original-sender:mime-version :in-reply-to:autocrypt:content-language:from:references:cc:to :subject:user-agent:date:message-id:x-beenthere:x-gm-message-state :from:to:cc:subject:date:message-id:reply-to; bh=bxGBQH/39206uHW5dMhTq8s06tqbyEZ23MoDNnOt8rk=; b=k8S1IPp+moB4Jja92NDhDOlIBE/b+z8VItMY93RX77NzfDqJ0T+xcSV9xJTjfgMjvR +ivvmB2D7UJhuFHjBbJA/tU4XCIPiLPY+/5DBpl7RvmmIxdz4BgpdrrBIqeFRowRjtbN VswugCoRFXRC7F4zLHIOzJLqglUBhoq9c9gIlB0H5eUu8U9lJsxZpTZ/Jp2rOeSa0XVx czkLCIXvO5ZKqx689eyK9kixPHp/eo8qgmAQVgZ/sYBtLDVkWpeb+4//XglS3HPBDuii oIQXIUK061QCfoYWc1KZ/QZaMOyhsFOm3vBx+G45l9Vo2Uo/VzthDlW0XsVRZAlSH6Vp Eabw== X-Forwarded-Encrypted: i=3; AJvYcCU+k5JU7rLoQnTnMtiuFQs7xWI7h/tjr8Axaibd+Z3WpVkvyPqBHI1hCvo13pN3z8F+fAU2@ilbers.de X-Gm-Message-State: AOJu0Yy8o2w4mrmfbtsOxWkFjlsaJYYar5AOcg+iPodlOw3g6pX/wkA+ 3H2I8O09Gui/QoKPL7pIBZr7fXCgf0wd8HY7LeNa2izCgqO4hpT0 X-Google-Smtp-Source: AGHT+IEavaUGcz/CA+DWPS1n4uqzwMLVUJlRENTksdws1+fduRLn/ib0fAHSls0q4IFckjbk4t/agw== X-Received: by 2002:a05:6870:6e82:b0:29e:671b:6019 with SMTP id 586e51a60fabf-2b1c0bf6535mr9893784fac.31.1737452459194; Tue, 21 Jan 2025 01:40:59 -0800 (PST) X-BeenThere: isar-users@googlegroups.com Received: by 2002:a05:6870:e07:b0:2a0:1e92:8674 with SMTP id 586e51a60fabf-2b1a0b4929els1938064fac.1.-pod-prod-08-us; Tue, 21 Jan 2025 01:40:58 -0800 (PST) X-Forwarded-Encrypted: i=3; AJvYcCWkhpj7KD5x72icOZefpwFbuTlBAnon0d8IXa4ITyHJv8mJzmX7wZWawcfop97qBJtBIyKhP2O3cqRk@googlegroups.com X-Received: by 2002:a05:6871:210b:b0:29e:62e5:9b55 with SMTP id 586e51a60fabf-2b1c0ab0ce2mr9287824fac.20.1737452458246; Tue, 21 Jan 2025 01:40:58 -0800 (PST) ARC-Seal: i=2; a=rsa-sha256; t=1737452458; cv=pass; d=google.com; s=arc-20240605; b=FJEMacNfidEbrp2Wli+MTBSz/5aQdq4/AA49FhhO4LmcSNxR3UP5nIKM/0WsDZyhAF 2joCB4xuY616KdIVnLuwmMu813zHEBT7lhkkbQtOIyuQI8rCew3wmTd489msVzQqtdCl kkM0QMG1W6xbvx9XYAn2uBaL9LwrgeDOfmqvrDzCYZ+ZxBtt6CP1XTWrXynt51JXLWOq vzB2mNfnI4YNSMYQa5szfitH8sNG63uJZbv0zEudb0eX90UktJZps5lwLiYg6SHSrrEt 2c5IRlhuwR32urOs/Fse48HQdq3IU3K9K2nZw5s1AIjkH+U7ZMAfIofoKpk5Kuln+w7r 5EKw== ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=mime-version:content-transfer-encoding:in-reply-to:autocrypt :content-language:from:references:cc:to:subject:user-agent:date :message-id:dkim-signature; bh=yz10nnoUqTM5LuOYAJEcsPZ7S1JXrjKCtUKZkEXPkOQ=; fh=RnqMGIIZ/yfUE8NqKrCUN9vWf7Z3uqcVhgaZa4tcVIQ=; b=anoyB0rFxoiePBbhcsqkgPAPesu1g0j724hjfHzG2winTtRMZ9aOy0fvk7RLfOTfEd 3MRkRZ5S+6YDgS7rd7LZBpCuRe7g37S8n+z0Pvye5FXsunM/gw47gizBLRo2mZY3T47b l5dIL8beOrH0VJ46yhKcgrkkMIO8dUoCcHTrA7aO+UvSVEjbF8+Cdou4EHfyTjqg6ysU z5pVThcqcCw9fdQiHAKujqexMe9bFRxJFnIWJdJdVAgt2ATKTr9/Ckl/8SxLz4W5u+dj 9dXeoficZLstS7NIENzcGT1r4SV9Akzl7v2MbMewGp1ldBmBEbsIU2KIXHJiz9JecMGF 622A==; dara=google.com ARC-Authentication-Results: i=2; gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=selector2 header.b=IL781I6u; arc=pass (i=1 spf=pass spfdomain=siemens.com dkim=pass dkdomain=siemens.com dmarc=pass fromdomain=siemens.com); spf=pass (google.com: domain of jan.kiszka@siemens.com designates 2a01:111:f403:c200::3 as permitted sender) smtp.mailfrom=jan.kiszka@siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com Received: from DU2PR03CU002.outbound.protection.outlook.com (mail-northeuropeazlp170120003.outbound.protection.outlook.com. [2a01:111:f403:c200::3]) by gmr-mx.google.com with ESMTPS id 586e51a60fabf-2b1b8f5d6d0si527402fac.4.2025.01.21.01.40.57 for (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Tue, 21 Jan 2025 01:40:57 -0800 (PST) Received-SPF: pass (google.com: domain of jan.kiszka@siemens.com designates 2a01:111:f403:c200::3 as permitted sender) client-ip=2a01:111:f403:c200::3; ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=O4S92oSDaWsSfGtx6NsnuTlXIM2ZV/d2m+wtrGDZbAtLn0Tst351DOv09k19L6vYV7i12EXOK9A67x5pm7f5yxoSz7GSEkLmIxnxngXx4boL8tD8xXR5DmFofEDdttZIWyZ8gSvSJuCPg1rRZzY8BjeoacsAIhEP/nKaKKql5ynvZ98wl1TsBdlQRadj2ltZQfC/PzBKW8thQyaYnPD2j5FyYk6s0kKtf9D3xdLs7OH//jpdWaYgyPcjksICYCKxGhNNYEwxlFJUTn64fqUFTZ35zxAtO/DiR8rji+gNMSzWg1odIRNBdX/hLUELw1xHYE4cvmXj18BajqMUijPS9w== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=yz10nnoUqTM5LuOYAJEcsPZ7S1JXrjKCtUKZkEXPkOQ=; b=fhm8jpJJ/kG1mR9xvHV6xJBg5ApsZS6LUznHIv66SE95bYd8OTSrT0Ovo+c+BVTqB54LaTV1uIyHdXDpmOglTEOw1V3t+YAAq3eK+UVwlbPNvXAppks8tjROXaeKm/Cu8R391kz7I6UTJmISwuM0l7pHnNdt4bcDF8eZlF5gqgXVNArFeVh7j28/col7G7zQsP3MbnE7rstymOdA0hOb7wBE6w8xQMcqacOXEanh7Sux6hH7xD7OtHHZgMmBDSW137mEOSVfCD3rUSM6iXgV7fQtYb+1p00XLY60tY3cWRby0F07iI+jX8xJhVninS1K5hJkDYd5drqi5+S3/3NW2A== ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=siemens.com; dmarc=pass action=none header.from=siemens.com; dkim=pass header.d=siemens.com; arc=none Received: from AS4PR10MB6181.EURPRD10.PROD.OUTLOOK.COM (2603:10a6:20b:588::19) by VI1PR10MB3343.EURPRD10.PROD.OUTLOOK.COM (2603:10a6:803:13e::11) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.8377.15; Tue, 21 Jan 2025 09:40:55 +0000 Received: from AS4PR10MB6181.EURPRD10.PROD.OUTLOOK.COM ([fe80::8fe1:7e71:cf4a:7408]) by AS4PR10MB6181.EURPRD10.PROD.OUTLOOK.COM ([fe80::8fe1:7e71:cf4a:7408%6]) with mapi id 15.20.8377.009; Tue, 21 Jan 2025 09:40:55 +0000 Message-ID: Date: Tue, 21 Jan 2025 10:40:54 +0100 User-Agent: Mozilla Thunderbird Subject: Re: [PATCH] doc/user_manual: mention EFI variable access and platform keyring for module signing To: "Cetin, Gokhan" , "isar-users@googlegroups.com" , "MOESSBAUER, Felix" Cc: "quirin.gylstorff@siemens.com" , Florian Bezdeka References: From: "'Jan Kiszka' via isar-users" Content-Language: en-US Autocrypt: addr=jan.kiszka@siemens.com; keydata= xsFNBGZY+hkBEACkdtFD81AUVtTVX+UEiUFs7ZQPQsdFpzVmr6R3D059f+lzr4Mlg6KKAcNZ uNUqthIkgLGWzKugodvkcCK8Wbyw+1vxcl4Lw56WezLsOTfu7oi7Z0vp1XkrLcM0tofTbClW xMA964mgUlBT2m/J/ybZd945D0wU57k/smGzDAxkpJgHBrYE/iJWcu46jkGZaLjK4xcMoBWB I6hW9Njxx3Ek0fpLO3876bszc8KjcHOulKreK+ezyJ01Hvbx85s68XWN6N2ulLGtk7E/sXlb 79hylHy5QuU9mZdsRjjRGJb0H9Buzfuz0XrcwOTMJq7e7fbN0QakjivAXsmXim+s5dlKlZjr L3ILWte4ah7cGgqc06nFb5jOhnGnZwnKJlpuod3pc/BFaFGtVHvyoRgxJ9tmDZnjzMfu8YrA +MVv6muwbHnEAeh/f8e9O+oeouqTBzgcaWTq81IyS56/UD6U5GHet9Pz1MB15nnzVcyZXIoC roIhgCUkcl+5m2Z9G56bkiUcFq0IcACzjcRPWvwA09ZbRHXAK/ao/+vPAIMnU6OTx3ejsbHn oh6VpHD3tucIt+xA4/l3LlkZMt5FZjFdkZUuAVU6kBAwElNBCYcrrLYZBRkSGPGDGYZmXAW/ VkNUVTJkRg6MGIeqZmpeoaV2xaIGHBSTDX8+b0c0hT/Bgzjv8QARAQABzSNKYW4gS2lzemth IDxqYW4ua2lzemthQHNpZW1lbnMuY29tPsLBlAQTAQoAPhYhBABMZH11cs99cr20+2mdhQqf QXvYBQJmWPvXAhsDBQkFo5qABQsJCAcCBhUKCQgLAgQWAgMBAh4BAheAAAoJEGmdhQqfQXvY zPAP/jGiVJ2VgPcRWt2P8FbByfrJJAPCsos+SZpncRi7tl9yTEpS+t57h7myEKPdB3L+kxzg K3dt1UhYp4FeIHA3jpJYaFvD7kNZJZ1cU55QXrJI3xu/xfB6VhCs+VAUlt7XhOsOmTQqCpH7 pRcZ5juxZCOxXG2fTQTQo0gfF5+PQwQYUp0NdTbVox5PTx5RK3KfPqmAJsBKdwEaIkuY9FbM 9lGg8XBNzD2R/13cCd4hRrZDtyegrtocpBAruVqOZhsMb/h7Wd0TGoJ/zJr3w3WnDM08c+RA 5LHMbiA29MXq1KxlnsYDfWB8ts3HIJ3ROBvagA20mbOm26ddeFjLdGcBTrzbHbzCReEtN++s gZneKsYiueFDTxXjUOJgp8JDdVPM+++axSMo2js8TwVefTfCYt0oWMEqlQqSqgQwIuzpRO6I ik7HAFq8fssy2cY8Imofbj77uKz0BNZC/1nGG1OI9cU2jHrqsn1i95KaS6fPu4EN6XP/Gi/O 0DxND+HEyzVqhUJkvXUhTsOzgzWAvW9BlkKRiVizKM6PLsVm/XmeapGs4ir/U8OzKI+SM3R8 VMW8eovWgXNUQ9F2vS1dHO8eRn2UqDKBZSo+qCRWLRtsqNzmU4N0zuGqZSaDCvkMwF6kIRkD ZkDjjYQtoftPGchLBTUzeUa2gfOr1T4xSQUHhPL8zsFNBGZY+hkBEADb5quW4M0eaWPIjqY6 aC/vHCmpELmS/HMa5zlA0dWlxCPEjkchN8W4PB+NMOXFEJuKLLFs6+s5/KlNok/kGKg4fITf Vcd+BQd/YRks3qFifckU+kxoXpTc2bksTtLuiPkcyFmjBph/BGms35mvOA0OaEO6fQbauiHa QnYrgUQM+YD4uFoQOLnWTPmBjccoPuiJDafzLxwj4r+JH4fA/4zzDa5OFbfVq3ieYGqiBrtj tBFv5epVvGK1zoQ+Rc+h5+dCWPwC2i3cXTUVf0woepF8mUXFcNhY+Eh8vvh1lxfD35z2CJeY txMcA44Lp06kArpWDjGJddd+OTmUkFWeYtAdaCpj/GItuJcQZkaaTeiHqPPrbvXM361rtvaw XFUzUlvoW1Sb7/SeE/BtWoxkeZOgsqouXPTjlFLapvLu5g9MPNimjkYqukASq/+e8MMKP+EE v3BAFVFGvNE3UlNRh+ppBqBUZiqkzg4q2hfeTjnivgChzXlvfTx9M6BJmuDnYAho4BA6vRh4 Dr7LYTLIwGjguIuuQcP2ENN+l32nidy154zCEp5/Rv4K8SYdVegrQ7rWiULgDz9VQWo2zAjo TgFKg3AE3ujDy4V2VndtkMRYpwwuilCDQ+Bpb5ixfbFyZ4oVGs6F3jhtWN5Uu43FhHSCqUv8 FCzl44AyGulVYU7hTQARAQABwsF8BBgBCgAmFiEEAExkfXVyz31yvbT7aZ2FCp9Be9gFAmZY +hkCGwwFCQWjmoAACgkQaZ2FCp9Be9hN3g/8CdNqlOfBZGCFNZ8Kf4tpRpeN3TGmekGRpohU bBMvHYiWW8SvmCgEuBokS+Lx3pyPJQCYZDXLCq47gsLdnhVcQ2ZKNCrr9yhrj6kHxe1Sqv1S MhxD8dBqW6CFe/mbiK9wEMDIqys7L0Xy/lgCFxZswlBW3eU2Zacdo0fDzLiJm9I0C9iPZzkJ gITjoqsiIi/5c3eCY2s2OENL9VPXiH1GPQfHZ23ouiMf+ojVZ7kycLjz+nFr5A14w/B7uHjz uL6tnA+AtGCredDne66LSK3HD0vC7569sZ/j8kGKjlUtC+zm0j03iPI6gi8YeCn9b4F8sLpB lBdlqo9BB+uqoM6F8zMfIfDsqjB0r/q7WeJaI8NKfFwNOGPuo93N+WUyBi2yYCXMOgBUifm0 T6Hbf3SHQpbA56wcKPWJqAC2iFaxNDowcJij9LtEqOlToCMtDBekDwchRvqrWN1mDXLg+av8 qH4kDzsqKX8zzTzfAWFxrkXA/kFpR3JsMzNmvextkN2kOLCCHkym0zz5Y3vxaYtbXG2wTrqJ 8WpkWIE8STUhQa9AkezgucXN7r6uSrzW8IQXxBInZwFIyBgM0f/fzyNqzThFT15QMrYUqhhW ZffO4PeNJOUYfXdH13A6rbU0y6xE7Okuoa01EqNi9yqyLA8gPgg/DhOpGtK8KokCsdYsTbk= In-Reply-To: Content-Type: text/plain; charset="UTF-8" X-ClientProxiedBy: AS4P195CA0002.EURP195.PROD.OUTLOOK.COM (2603:10a6:20b:5e2::6) To AS4PR10MB6181.EURPRD10.PROD.OUTLOOK.COM (2603:10a6:20b:588::19) MIME-Version: 1.0 X-MS-PublicTrafficType: Email X-MS-TrafficTypeDiagnostic: AS4PR10MB6181:EE_|VI1PR10MB3343:EE_ X-MS-Office365-Filtering-Correlation-Id: d96280cf-739d-4f79-579c-08dd39ffb3e3 X-MS-Exchange-AtpMessageProperties: SA X-MS-Exchange-SenderADCheck: 1 X-MS-Exchange-AntiSpam-Relay: 0 X-Microsoft-Antispam: BCL:0;ARA:13230040|1800799024|366016|376014; X-Microsoft-Antispam-Message-Info: =?utf-8?B?LzZEL1hHSDBodzVmVFM2S29GQS8yNDhJb3hKQldzdzZhQm1JUUUwK0JaY1FG?= =?utf-8?B?bHNETWxrTGdMb3Z5eW5DOE9oMVdzR3MwR0FJMnNwWUxaNEV5Z1VEODhCMWdC?= =?utf-8?B?eHI0RFovM29iQkN1YTFqYThYNzNvOXVBZzl0WGdFWkxIRVEwWmx2U3lNRDVa?= =?utf-8?B?V291a3h2TWp0aXR3TnV3MGJySkZMdFdXQXdCajNLd1hYejJZM3p0TXpCai8w?= =?utf-8?B?dmhnQ3YyeGlFc3FSWEs2QjNPQ0ttSWU0S0NFM3pHQnVOdFN3dlJUZkdWUHQ4?= =?utf-8?B?aEYrWGlvazd5SldacUlSMXpNa1hMYVcyQzVpaTQ0aWEvV0o1eTVMVE54eDdS?= =?utf-8?B?Ukw0dFhBM1pxTXNKTWpmb1ZjZFBKaWl0TjRlNGdvN2Q3eDNibnFWMkErN2hp?= =?utf-8?B?TjhDc2dLbUdQU0MyY2xNM014SjRjY2VWcGFza0R5Z3BiQXZhZFdvQytJdTdW?= =?utf-8?B?dVQyMnRDSWF3NUs2VDhYakZDWllmQjhvU0RNZWF5NWNOeVkyVXh4NmpXVWVz?= =?utf-8?B?RlVkKzRmZ2MzQ1dHcTZadFBxS1ljSmloTUJLOWdrRkVLM3pmMnpqTVU3VzZW?= =?utf-8?B?QUtSbXJDZUlhZytuczlyUm05aDE3TU4wRnRkOWFES1VHVE5scEhKT2VIQUNF?= =?utf-8?B?L3NJOWRHdTFBVUdVZmhhUDYyMTNKamFDNHlzZjh5OHpsYzlaYVBwejdWMEU5?= =?utf-8?B?YXJzaUxaSEZKbndUbXlSSEN0cm1hSno5Zk9MYXRZNFdYUmh4ZjJHUUxGZ1Ux?= =?utf-8?B?amM4a0hwRUtZWTMyakVqT2k4VllWTHNheXZtOE9kRjUwejg5anAycU5GekVr?= =?utf-8?B?bnVzdGVtZVovTDR3Tjk5SkNGUldUUExFS3p5TlpUbGtRWDhZVWV4eDFyblNk?= =?utf-8?B?QTZzak10b0xRMC91SFh4YjJlRTJqYysyVHVNQUVqMnk0ZjJrR3ZZL2M0UG1r?= =?utf-8?B?TkpsdTAzVVdQL1J1MlBlbFJHOWlRQUoycTk1Y3czYUlFek5MZXR4bldYbEx4?= =?utf-8?B?QjJtY092WUtxeE1RSE1SUDNSTDkvZ1Y2NHJUZUdGNXE3ZGN3RjBqSDlUTDg3?= =?utf-8?B?WVhyOG9jempVMGMwZmR5TDludm5yTHY3RUwwSVA2WDh0VXVaNHpzNnkzT1Rt?= =?utf-8?B?d0t2UkxhTG9waWJKWFBWMUVsQ3pNZUtRWFJYaU9JMk1lalZ5NGpnVFQwVVV4?= =?utf-8?B?aDNXZUpuWDBXQmR5TGZKTjIrQ3dqZXNZOElSRUpYWG9saHhrUWtBZ295dnVW?= =?utf-8?B?VThrWmtNOVUrSG81OGlwQkhLRzg0ektQcWZ0STNObXEvbXgzTG1xbVNjNVBh?= =?utf-8?B?amNYQjl6MW9taENoUFloZWhpbmdmZUp3VEpEK3FtTmIyZ0FtN3dLeDViQkw5?= =?utf-8?B?SVI1UGQ3Q2FQeWNRNEZ5YWNtRHBoQ3JPVUxxckp0YkNDVEM2UmNxOS9YV2lE?= =?utf-8?B?a3YwSDgxUGZhdFZSbUtUQnZEYmtSQ3JLRW9RcUxwNU1nVVJvUk1OZjNaOHRm?= =?utf-8?B?bXN0WDRvd2MzMllkTXU2Y1lmaFlNVWY5elk4RmUyc0doZjYxUnZiT0ljYkg3?= =?utf-8?B?bU9FVXZXcHM2NTRIdXZENFdPdkorS1JNaE9zL2F5MS9ldmRuS3NMazZFclpy?= =?utf-8?B?aVNPUkE4M0orNkM5VVVNd2d1WlVzcWx6NnNXcTBmSERmYnU2elMvREhLWG9y?= =?utf-8?B?aE1ZVHd4WnAxRU5nUnpDWWVzQ2FGcnpFeGxRM0s3OVRLZnVpTzU0emFUR0Z1?= =?utf-8?B?RXRFNncvRGFDNjVvL1RzQVFKRTRDWFRpTzVyVFRMM0RkeUFrWG01SUJDbTNv?= =?utf-8?B?ZWU4cXBZWXBUNTYrdFZpbk5LMHRoWXFkZTcxeU9UVWFEaDJXZ0tCaFQ4cE1U?= =?utf-8?Q?TKmCx5uXawvxB?= X-Forefront-Antispam-Report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:AS4PR10MB6181.EURPRD10.PROD.OUTLOOK.COM;PTR:;CAT:NONE;SFS:(13230040)(1800799024)(366016)(376014);DIR:OUT;SFP:1101; X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1 X-MS-Exchange-AntiSpam-MessageData-0: =?utf-8?B?d3hHbXF3bnRrKy9vNThxMTh2NXNmOHp2d1hMR2dyK3BWNVFYVncrSVZLb0FV?= =?utf-8?B?VzI1RWI1V29GVnVBc1JTY1FhUWxBVXJFU3Z6M1B2SFNYVzJlMEFwL3BweDhH?= =?utf-8?B?MUp0MnNVdktEaUprRkF2MHU5OW44K1AvY2JuZy9NTlVkdHkwSzhHVFo3blFa?= =?utf-8?B?djdLNlY0Y1Z3K0FJMENrTmpzUkc3UGliTG1ER1hZT01NMCtxcmhLWTBpZnkz?= =?utf-8?B?bDRiUWpweTNsSnVHL0dYRVNzMzNvLzdTRHJEYTU3TURWRmljRGhXQ29YakFQ?= =?utf-8?B?cUVhTUhyV2g3Q21ua0dUaGQwa2s4bVpCOTJJY3dvMFRqWEpqeEJuNnpnV2Ur?= =?utf-8?B?QnBVLzJqSm1IcHViaUp3VXE4OE9TOUUxSkY5OVlrWkJYeVprbWU3bDJlb05l?= =?utf-8?B?Yzcrd1ZpbDdkMUQ2amVReGhneUNkRHlLb2dRd0w4UC8rTGc2a3hEQWE0ZEZX?= =?utf-8?B?b2kxTkxqZlMzTURhUjkyckJBMklhQUplMVdnNjNUM2lHUlVyak9lNklleXhz?= =?utf-8?B?TFZWc05kWXd1UnMwMWYwWHdBSXZSVlNnbVhHVTZqSEd2L2FiOWtDUjdsSFhq?= =?utf-8?B?MDlYVCtDMnk0ZFI3eVowbFplTVJFTEIvQm9xK2NLN0dVVDI1TitzUlpSQXVj?= =?utf-8?B?WThBbmRINDFGUVdaMU4xNWZSbnNIZkpTUGZHaFlCNktlQXRETzBQYXlyeWF4?= =?utf-8?B?ZVJ3b09OcVNlTzI5NG93UFVJcTZJYUk4ZFdUWnpvZGY2RVRxbnRFNXVuWG9D?= =?utf-8?B?WDhGK1lXaXczdXM2YzVnMjRjckNuNmJCWTd1UU5TNEFINzg3M0tvWitZZDhp?= =?utf-8?B?bWUwSk44cnY0Rmx0a0ZLdkZrcVo3bm5US3Y4NGt5NFhyaG1GL2xhc2ZtRVBk?= =?utf-8?B?V3A0MEpaNkVURTVyR0prNndZQ2lBTHRyWDJSOFc2ZTUzTU4wd0tjN2QzWk9a?= =?utf-8?B?VjUvRFhGTkszRGl2bTBTTHNUTlZ2RFh2T2pYNlRkbDRYd0pxSGl6Z2poZGZM?= =?utf-8?B?TDBYRTFWUUJDbjZ5TGZpZnJZT0NwbURlWVh2N25Kcmd4RWQ2SWs0OU5pbk1Z?= =?utf-8?B?V1dkSWZXa3BRUjJET3FRalRmTnNSaXprTitzaVZuT0ViaVRndGFONjdtQVR3?= =?utf-8?B?N0RiamV4VTVnVDAyL3ZodnNUczhubXZSY05sN2Vjdnc0cHI5WC96N3JnT21J?= =?utf-8?B?RitPN25kTjVDa1N1TlhXd1ZxZ05LQnZiTGhZcGpZa3dmbzlBbmxxM0dLbStL?= =?utf-8?B?OWRuOENhbFVUTjRHWXB0M2hxSElGQ2dibVFOTHNOeVU3a3lvcjdreUI0WjEr?= =?utf-8?B?UUZVb3UrZDg0OFZSSVRpQU5OSmIydkNVbTBXQzdleUtQbW9XSVlwWG9samtO?= =?utf-8?B?SWczbFlPSzlNZzlFRkttNXpyV1UwS1V3Um5qc2djQWJMZE43Y0ZoMDk0aWMz?= =?utf-8?B?VHdENnFBQlRJcWFWRWhtOHRPSExSUGdGakdzaDBhV2FRZWJHZTFZaVR4RVhL?= =?utf-8?B?OXF4S2NTN2NEUlhoMHNhdHVobGcrZmY4ekhsMUhWdmpxV3ZCRUN0SW9iZHNI?= =?utf-8?B?WXZaaDduWk9XUll4VFBkUWRxODFDRGovSmxJTkRhaVdUMk5oQ2FFZlNkOUxz?= =?utf-8?B?d3Fld3NjNmFrYjJZTWpBWFAxWGlRUFhwTFFWLzl2YjhiV1h5OE9XUm41ZkhT?= =?utf-8?B?SFcxQ0tlaFZFcGZYbnZrN0R1WkFYRENZc3RBck9HdUpQeFgvRVRJckRvUVdD?= =?utf-8?B?QmhTdVNwM2JnTTB0QnVLU3RUUlNjVFllWGd3S1BNZXByNmo0TDlaamZvaUxo?= =?utf-8?B?MUlKRFpiVHBURUcxbXhZOTFkeGxVTVhiamlrcEVEUitaSnkvOURPMXBhRFFL?= =?utf-8?B?R0k3bnNMMk44d2NsQ01IVUI3L0NHOUhOZGtCOVVYVWpZcWMvUTdnRTNoeTB1?= =?utf-8?B?RnpmelRNNXdsWlg3SEV4eEdsSmxmbXZpL3J0ZGZWVVhKelhNa3JqdHJ0L1VP?= =?utf-8?B?Q1QzdUNPZ3dma0puNVBzRFd2K0dPYytJUEVOUjk2cHpPOUlyWkJ0M2hoQmln?= =?utf-8?B?TEU4cjBDQ2ZxRWpUUmVJWE5oczBYdm9vcEphQnhyYWRJZDVCZHN5aCtoUTY1?= =?utf-8?B?bURnNTE1bzF1TlBuamxrY1ZzMTNSeU1OQjI0aDdTbFJJYjhYdGNMUlp3WjMx?= =?utf-8?B?elE9PQ==?= X-OriginatorOrg: siemens.com X-MS-Exchange-CrossTenant-Network-Message-Id: d96280cf-739d-4f79-579c-08dd39ffb3e3 X-MS-Exchange-CrossTenant-AuthSource: AS4PR10MB6181.EURPRD10.PROD.OUTLOOK.COM X-MS-Exchange-CrossTenant-AuthAs: Internal X-MS-Exchange-CrossTenant-OriginalArrivalTime: 21 Jan 2025 09:40:55.4888 (UTC) X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 38ae3bcd-9579-4fd4-adda-b42e1495d55a X-MS-Exchange-CrossTenant-MailboxType: HOSTED X-MS-Exchange-CrossTenant-UserPrincipalName: qmzdelE3t6EhYLnGg7vUNoK/5RheHTcyWT9AU9D81DxE2TAUpIt4qxNVGT416d/RYJ9WfCqjb7WHWdPxq/YYIQ== X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR10MB3343 X-Original-Sender: jan.kiszka@siemens.com X-Original-Authentication-Results: gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=selector2 header.b=IL781I6u; arc=pass (i=1 spf=pass spfdomain=siemens.com dkim=pass dkdomain=siemens.com dmarc=pass fromdomain=siemens.com); spf=pass (google.com: domain of jan.kiszka@siemens.com designates 2a01:111:f403:c200::3 as permitted sender) smtp.mailfrom=jan.kiszka@siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com X-Original-From: Jan Kiszka Reply-To: Jan Kiszka Precedence: list Mailing-list: list isar-users@googlegroups.com; contact isar-users+owners@googlegroups.com List-ID: X-Spam-Checked-In-Group: isar-users@googlegroups.com X-Google-Group-Id: 914930254986 List-Post: , List-Help: , List-Archive: , List-Unsubscribe: , X-Spam-Status: No, score=-4.9 required=5.0 tests=DKIMWL_WL_MED,DKIM_SIGNED, DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF,MAILING_LIST_MULTI, RCVD_IN_DNSWL_BLOCKED,RCVD_IN_MSPIKE_H3,RCVD_IN_MSPIKE_WL, RCVD_IN_RP_CERTIFIED,RCVD_IN_RP_RNBL,RCVD_IN_RP_SAFE,SPF_PASS autolearn=unavailable autolearn_force=no version=3.4.2 X-Spam-Checker-Version: SpamAssassin 3.4.2 (2018-09-13) on shymkent.ilbers.de X-TUID: PA3FEVNw2q2A On 20.01.25 19:27, 'Cetin, Gokhan' via isar-users wrote: > Enrolling MOK or importing platform keys is not possible without access to EFI variables. > > Signed-off-by: Gokhan Cetin > --- > doc/user_manual.md | 10 +++++++++- > 1 file changed, 9 insertions(+), 1 deletion(-) > > diff --git a/doc/user_manual.md b/doc/user_manual.md > index 62d16c8c..bb8eb21b 100644 > --- a/doc/user_manual.md > +++ b/doc/user_manual.md > @@ -1127,7 +1127,15 @@ modprobe example-module > mokutil --import /etc/sb-mok-keys/MOK/MOK.der > ``` > > -Use the previously definded password to enroll the key, then reboot. > +Use the previously defined password to enroll the key, then reboot. > + > +If EFI variable access is disabled on kernel (due to high latencies under RT kernel), > +enrolling will result in failure `EFI variables are not supported on this system`. > +EFI variable access can be enabled by passing `efi=runtime` kernel parameter. > + Not sure if you two discussed that yesterday as well, but Felix and I did: This eventually needs to be addressed in the mainline kernel, likely by permitting efi variable access while still blocking other runtime services. Those are much harder to manage in a running system than efivarfs which could simply be unmounted once the RT job starts and remounted when it is stopped. Jan > +Similarly, in cases where EFI variables are not supported, the system will not be able > +to import the keys defined on the platform in the kernel platform keyring. This will also > +result in kernel modules not being verified if they are signed with one of these platform keys. > > **Boot self-signed image**: > -- Siemens AG, Foundational Technologies Linux Expert Center -- You received this message because you are subscribed to the Google Groups "isar-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to isar-users+unsubscribe@googlegroups.com. To view this discussion visit https://groups.google.com/d/msgid/isar-users/ffef2b06-343f-48b2-9675-66aeb6c77d48%40siemens.com.