You are not logged in.
Pages: 1
I don't know if this question is for this forum, I will leave administrator to move the question to the appropriate forum.
I have set the secure boot and it is working fine, but I have a few questions. I am interested in the connection between cryptography and secure boot.
All I can find on the net is the explanations of the private and public keys. Nothing about signing files. What is the difference between signing kernel image or module? Why there is so many formats of the keys: key, der, pem ... and what is the difference between them?
Also, why we can sign any file with gpg, but only kernel image or UKI with sbctl?
Where I can find on the net the answers to this questions?
Offline
Best I can do is https://www.rodsbooks.com/efi-bootloade … ng-sb.html.
There is also https://uefi.org/specs/UEFI/2.10/32_Sec … gning.html but that doesn't explain much.
Jin, Jîyan, Azadî
Offline
Pages: 1