On Fri, 10 Jun 2022, Tony Camuso wrote:
If your system is booting in efi mode, then it needs efi.
If it's booting in legacy bios mode, then it doesn't need efi
Commit https://sourceforge.net/p/tboot/code/ci/aad782103a6e
says that
"Note that booting *without* noefi is a security risk since the EFI
runtime is not part of the trust base after a dynamic launch."
This suggests to me that you need to use "noefi" on an EFI system to
minimize risks.
-Timo
_______________________________________________
tboot-devel mailing list
tboot-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/tboot-devel