Verification-done on trusty:

dkms/2.2.0.3-1.1ubuntu5.14.04.10
shim-signed/1.33.1~14.04.4

I've installed bbswitch on a test UEFI system, rebooted to disable
validation in shim; then upgraded to the new packages and could verify
that shim validation was re-enabled and a MOK was enrolled in the
firmware, as expected.

ubuntu@ubuntu:~$ dpkg -l dkms shim-signed |cat
Desired=Unknown/Install/Remove/Purge/Hold
| Status=Not/Inst/Conf-files/Unpacked/halF-conf/Half-inst/trig-aWait/Trig-pend
|/ Err?=(none)/Reinst-required (Status,Err: uppercase=bad)
||/ Name                                  Version                               
    Architecture Description
+++-=====================================-=========================================-============-===============================================================================
ii  dkms                                  2.2.0.3-1.1ubuntu5.14.04.10           
    all          Dynamic Kernel Module Support Framework
ii  shim-signed                           1.33.1~14.04.4+13-0ubuntu2            
    amd64        Secure Boot chain-loading bootloader (Microsoft-signed binary)
ubuntu@ubuntu:~$ sudo modprobe bbswitch
[sudo] password for ubuntu: 
modprobe: ERROR: could not insert 'bbswitch': No such device
ubuntu@ubuntu:~$ dmesg | tail
[   15.292736] audit: type=1400 audit(1550085342.906:10): apparmor="STATUS" 
operation="profile_replace" profile="unconfined" 
name="/usr/lib/connman/scripts/dhclient-script" pid=1019 comm="apparmor_parser"
[   15.293018] audit: type=1400 audit(1550085342.906:11): apparmor="STATUS" 
operation="profile_replace" profile="unconfined" 
name="/usr/lib/NetworkManager/nm-dhcp-client.action" pid=1019 
comm="apparmor_parser"
[   15.293020] audit: type=1400 audit(1550085342.906:12): apparmor="STATUS" 
operation="profile_replace" profile="unconfined" 
name="/usr/lib/connman/scripts/dhclient-script" pid=1019 comm="apparmor_parser"
[   15.293167] audit: type=1400 audit(1550085342.906:13): apparmor="STATUS" 
operation="profile_replace" profile="unconfined" 
name="/usr/lib/connman/scripts/dhclient-script" pid=1019 comm="apparmor_parser"
[   15.293785] audit: type=1400 audit(1550085342.906:14): apparmor="STATUS" 
operation="profile_load" profile="unconfined" name="/usr/sbin/tcpdump" pid=1021 
comm="apparmor_parser"
[   15.422442] init: plymouth-upstart-bridge main process ended, respawning
[   20.034883] random: nonblocking pool is initialized
[   79.588877] bbswitch: version 0.7
[   79.588891] bbswitch: Found integrated VGA device 0000:00:02.0: 
\_SB_.PCI0.VID_
[   79.588901] bbswitch: No discrete VGA device found


** Tags removed: verification-needed verification-needed-trusty
** Tags added: verification-done-trusty

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1748983

Title:
  Generate per-machine MOK for dkms signing

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/dkms/+bug/1748983/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to