Unified Kernel Images (UKIs)

  Рет қаралды 3,289

All Systems Go!

All Systems Go!

Күн бұрын

Пікірлер: 5
@purpleidea
@purpleidea Жыл бұрын
Great talk, thank you-- So back to the kernel command line stuff--- if I want to modify the kernel command line, say I'm testing different flags for graphics drivers or whatever, how do I do this easily? I get the feeling I can't just type `e` and edit it live the way I can with grub? Is it tons of overhead to have to build this addon "mule" image each time I want to try something out?
@SmackMyKeyboard
@SmackMyKeyboard Жыл бұрын
From the systemd-stub doc: If UEFI SecureBoot is enabled and the ".cmdline" section is present in the executed image, any attempts to override the kernel command line by passing one as invocation parameters to the EFI binary are ignored. Thus, in order to allow overriding the kernel command line, either disable UEFI SecureBoot, or don't include a kernel command line PE section in the kernel image file. When loading a UKI from a bootloader you can still pass the cmdline as an argument as you would when loading a kernel, however the passed cmdline may be ignored.
@UshbyDevOps-dp8pn
@UshbyDevOps-dp8pn Жыл бұрын
@elalemanpaisa
@elalemanpaisa 5 ай бұрын
So you drop into a rescue shell and ask the tpm for the secrets as its the authoritied image the tpm gets chatty
@SmackMyKeyboard
@SmackMyKeyboard 2 ай бұрын
IIRC then the hash of the cmdline is also measured into one of the PCRs meaning that the state of the cmdline can also be tied to the secrets.
Perfect Pitch Challenge? Easy! 🎤😎| Free Fire Official
00:13
Garena Free Fire Global
Рет қаралды 77 МЛН
МЕНЯ УКУСИЛ ПАУК #shorts
00:23
Паша Осадчий
Рет қаралды 1,3 МЛН
Ice Cream or Surprise Trip Around the World?
00:31
Hungry FAM
Рет қаралды 8 МЛН
The kernel report
46:13
linux.conf.au
Рет қаралды 71 М.
Linus Torvalds schools Lennart Poettering on the importance of users
14:53
LibrettOS: A Dynamically Adaptable Multiserver-Library OS
18:58
Can systemd-resolved replace Avahi?
22:53
All Systems Go!
Рет қаралды 402
Firmware security, why it matters and how you can have it
45:11
linux.conf.au
Рет қаралды 29 М.
Kernelless Kernel Programming (eBPF) - Computerphile
19:12
Computerphile
Рет қаралды 75 М.
Write and Submit your first Linux kernel Patch
41:26
FOSDEM
Рет қаралды 314 М.