*countable infinities only

Seth Johnson seth.p.johnson at gmail.com
Mon Jun 18 05:00:33 UTC 2012


On Mon, Jun 18, 2012 at 12:58 AM, Matthew Garrett <mjg59 at srcf.ucam.org> wrote:
> On Mon, Jun 18, 2012 at 12:54:56AM -0400, Seth Johnson wrote:
>
>> But the best thing is that a free software UEFI would let anybody put
>> their own key as hardware root, and this would stymie the
>> rationalizing of big shots holding root and granting signing services
>> to their hardware.
>
> All UEFI implementations we're aware of will be shipping with support
> for replacing all the secure boot keys, including Pk. UEFI itself is
> also entirely free software, although specific implementations may not
> be.


Then write a better UEFI.  No need for a shim.


Seth


More information about the devel mailing list