Systemd tip: service conditionals

Florian Weimer fweimer at redhat.com
Wed May 22 08:06:38 UTC 2013


On 05/21/2013 08:48 PM, Simone Caronni wrote:
> Hello,
>
> On 21 May 2013 17:43, Florian Weimer <fweimer at redhat.com
> <mailto:fweimer at redhat.com>> wrote:
>
>     On 05/21/2013 02:08 PM, Simone Caronni wrote:
>
>         If there's a way to check if Secure Boot is enabled that would
>         be great.
>
>
>     Why do you want to do that?  That's almost always wrong, just like
>     checking for the AD bit in DNS responses.

> what's wrong with that?

Many users will not be able to switch on Secure Boot, or it will be 
inconvenient for them.  Application behavior which depends on Secure 
Boot will annoy them.

> Btw, I'm toying with an in-house software that loads kernel modules and
> I've just received an UEFI secure boot capable laptop.
> I was simply trying to avoid lot of errors in the log when booting with
> UEFI Secure Boot enabled.

And log a different error message instead?  That shouldn't pose any 
problems.

-- 
Florian Weimer / Red Hat Product Security Team


More information about the devel mailing list