> On Jan 11, 2019, at 11:42, Mat <altima...@gmail.com> wrote:
>
> Can anyone else explain in simple words the difference between Secure boot
> and Trusted boot.
UEFI Secure Boot has roots in the Microsoft PC ecosystem, it was later adapted
to Linux, see Matthew Garrett's blog: http://mjg59.dreamwidth.org/9844.html
and Bootlin ELC 2018 slides:
https://bootlin.com/pub/conferences/2018/elc/josserand-schulz-secure-boot/josserand-schulz-secure-boot.pdf
Here is my intro to trusted boot, but Greg's explanation is more approachable
(it would make a good article!):
https://www.linux.com/blog/event/elce/2017/10/device-we-trust-measure-twice-compute-once-xen-linux-tpm-20-and-txt
You could also watch some talks on boot integrity, e.g. Hudson, Smith:
https://www.platformsecuritysummit.com/2018/topic/boot/
Rich
_______________________________________________
tboot-devel mailing list
tboot-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/tboot-devel