mirror of
https://github.com/nsacyber/Hardware-and-Firmware-Security-Guidance
synced 2025-08-31 14:45:11 +00:00
Update uccompile.md
This commit is contained in:
committed by
GitHub
parent
da8f0b1f87
commit
259d81325d
@@ -1,4 +1,4 @@
|
||||
# Custom Live Media, Driver, and Kernel Support
|
||||
# Use Case: Custom live media, driver, and kernel support
|
||||
Commercial operating systems (OS) that feature Secure Boot compatibility feature a Microsoft signature on the bootloader. The bootloader may -- particularly in the case of
|
||||
Linux and Hypervisors -- contain a Machine Owner Key (MOK) used to add an OS vendor's certificate and extend the number of trusted Secure Boot certificates. Any change to
|
||||
the bootloader, kernel, or driver would invalidate the Microsoft signature or the MOK signature thus resulting in Secure Boot policy violations.
|
||||
|
Reference in New Issue
Block a user