Bug#996202: EFI Secure Boot for systemd-boot

Luca Boccassi bluca at debian.org
Mon Mar 4 02:13:25 GMT 2024


On Fri, 19 Nov 2021 09:33:00 +0100 Bastian Blank <waldi at debian.org>
wrote:
> Hi
> 
> I'm rescinding this request.  I've got a working prototype, but I
don't
> know where this would go.
> 
> Bastian

The upstream Shim reviewers group now accepts systemd-boot as a 2nd
stage bootloader, trusted by Shim builds signed with the UEFI 3rd party
CA. This clears the way for Debian's CA to sign systemd-boot, so I am
reopening this bug.

shim-review questionnaire update that allows systemd-boot:

https://github.com/rhboot/shim-review/pull/357

MR on Salsa to add the usual template package, adapted from Bastian's
MR from a couple of years ago:

https://salsa.debian.org/systemd-team/systemd/-/merge_requests/252

Debian Shim maintainers, who do we need to seek approvals for this to
happen? Shim maintainers first of course, anybody else? Release team?
FTP team?

-- 
Kind regards,
Luca Boccassi
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: This is a digitally signed message part
URL: <http://alioth-lists.debian.net/pipermail/pkg-systemd-maintainers/attachments/20240304/b0211180/attachment.sig>


More information about the Pkg-systemd-maintainers mailing list