diff options
| author | Josh Boyer <jwboyer@fedoraproject.org> | 2018-12-09 01:57:04 +0530 | 
|---|---|---|
| committer | Mimi Zohar <zohar@linux.ibm.com> | 2018-12-12 22:09:10 -0500 | 
| commit | 386b49f51dc24d1f9139eb11f49aa075eeb35363 (patch) | |
| tree | a9c07a6c594719a8faab034bbb4f8e9d129defb5 /lib/notifier-error-inject.c | |
| parent | 15ea0e1e3e185040bed6119f815096f2e4326242 (diff) | |
efi: Allow the "db" UEFI variable to be suppressed
If a user tells shim to not use the certs/hashes in the UEFI db variable
for verification purposes, shim will set a UEFI variable called
MokIgnoreDB. Have the uefi import code look for this and ignore the db
variable if it is found.
[zohar@linux.ibm.com: removed reference to "secondary" keyring comment]
Signed-off-by: Josh Boyer <jwboyer@fedoraproject.org>
Signed-off-by: David Howells <dhowells@redhat.com>
Acked-by: Nayna Jain <nayna@linux.ibm.com>
Acked-by: Serge Hallyn <serge@hallyn.com>
Reviewed-by: James Morris <james.morris@microsoft.com>
Signed-off-by: Mimi Zohar <zohar@linux.ibm.com>
Diffstat (limited to 'lib/notifier-error-inject.c')
0 files changed, 0 insertions, 0 deletions
