Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Option to Show Current Validation State #9

Open
wesinator opened this issue Mar 19, 2017 · 3 comments
Open

Option to Show Current Validation State #9

wesinator opened this issue Mar 19, 2017 · 3 comments

Comments

@wesinator
Copy link

Add a --validation-state | -v command line option to show the current shim validation process state (enabled or disabled).

If I understand correctly, the validation state is different than the sb-state; sb-state can be SecureBoot enabled even if the shim validation is disabled (https://askubuntu.com/questions/831574/re-enable-secure-boot-mok-secure-boot).

@lcp
Copy link
Owner

lcp commented Mar 21, 2017

I'll take that into consideration. Thanks.
Meanwhile, you can check /sys/firmware/efi/efivars/MokSBStateRT-* for the validation state.

@wesinator
Copy link
Author

There is no MokSBState file (Ubuntu 16.04)

@lcp
Copy link
Owner

lcp commented Jan 2, 2018

MokSBStateRT only exists if MoKSBState is set.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants