On Wed, Dec 21, 2022 at 03:06:26AM +0100, Kevin Kofler via devel wrote:
Daniel P. Berrangé wrote:
> That is not correct. There are a number of benefits of UKIs.
>
> The most critical is that the initrd content and cmdline is
> covered by the SecureBoot signature.
From an end user point of view, having more stuff covered by Restricted Boot
is not a benefit.
It's an option for those who care. If you don't just turn off secure
boot. Nobody forces anything on users.
take care,
Gerd