summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorPeter Jones <pjones@redhat.com>2018-04-04 12:31:30 -0400
committerPeter Jones <pjones@redhat.com>2018-04-04 16:49:43 -0400
commitccf9e0efab40bd25df1244886d7ca3fe0c478d19 (patch)
tree203f82b9ed3ac7adc82c5784fb551ba638412c15
parent91229b770324a51ee0e013513886f43bb868f8d7 (diff)
downloadefi-boot-shim-ccf9e0efab40bd25df1244886d7ca3fe0c478d19.tar.gz
efi-boot-shim-ccf9e0efab40bd25df1244886d7ca3fe0c478d19.zip
Add another TODO for shim-16
Signed-off-by: Peter Jones <pjones@redhat.com>
-rw-r--r--TODO2
1 files changed, 2 insertions, 0 deletions
diff --git a/TODO b/TODO
index 4fd4e552..845574b1 100644
--- a/TODO
+++ b/TODO
@@ -3,6 +3,8 @@
are to one another, so we can stop earlier without tricks
- Make EFI_LOADED_IMAGE_2 protocol and a LOAD_IMAGE protocol with
LoadImage/CheckImage/StartImage.
+- Implement EFI_CERT_X509_SHA{256,384,512} revocation checks
+ - It doesn't necessarily have to include timestamp checking support
- Make the openssl code supply the Pkcs7Verify() API, and use the system
one (instead) if it is available.
- And make building it optional