Re: [PATCH v2 6/7] efi: Allow the "db" UEFI variable to be suppressed

2018-12-11 Thread James Morris
On Sun, 9 Dec 2018, Nayna Jain wrote: > From: Josh Boyer > > If a user tells shim to not use the certs/hashes in the UEFI db variable > for verification purposes, shim will set a UEFI variable called > MokIgnoreDB. Have the uefi import code look for this and ignore the db > variable if it is fou

[PATCH v2 6/7] efi: Allow the "db" UEFI variable to be suppressed

2018-12-08 Thread Nayna Jain
From: Josh Boyer If a user tells shim to not use the certs/hashes in the UEFI db variable for verification purposes, shim will set a UEFI variable called MokIgnoreDB. Have the uefi import code look for this and ignore the db variable if it is found. Signed-off-by: Josh Boyer Signed-off-by: Davi