User talk:Sakaki/Sakaki's EFI Install Guide/Configuring Secure Boot/Using KeyTool

From Gentoo Wiki
Jump to:navigation Jump to:search
Note
Before creating a discussion or leaving a comment, please read about using talk pages. To create a new discussion, click here. Comments on an existing discussion should be signed using ~~~~:
A comment [[User:Larry|Larry]] 13:52, 13 May 2024 (UTC)
: A reply [[User:Sally|Sally]] 16:35, 6 July 2024 (UTC)
:: Your reply ~~~~

Still doesn't work on ASRock UEFI, it won't allow booting to the generic USB partition as long as there is a "Gentoo Linux (USB)" boot option. Any other way to run KeyTools in setup mode?

For that matter, isn't there any way we can just append the self-signed PK, KEK, and db certificates to the Windows ones on disk, before adding them with efi-updatevar? The ASRock UEFI Setup mode apparently locks in each key as it's updated instead of locking in all the keys when PK.auth is updated, so each key can be added once but not appended to, as the current process requires.


Migrated into Main Page

The KeyTool material has now been merged (and expanded, with screenshots) into the main Configuring Secure Boot page. --Sakaki (talk) 17:08, 29 August 2017 (UTC)