diff options
| author | Arthur Gautier <arthur.gautier@arista.com> | 2022-10-21 13:20:45 -0700 |
|---|---|---|
| committer | Peter Jones <pjones@redhat.com> | 2022-11-14 14:32:42 -0500 |
| commit | aa1b289a1a16774afc3143b8948d97261f0872d0 (patch) | |
| tree | 8a29a6080a05ddcfaae65b3eb8cbaf8887b6e5c4 /Cryptlib/Library/BaseCryptLib.h | |
| parent | 5169769e0f84dd227592cb73da97dacd61ae40b9 (diff) | |
| download | efi-boot-shim-aa1b289a1a16774afc3143b8948d97261f0872d0.tar.gz efi-boot-shim-aa1b289a1a16774afc3143b8948d97261f0872d0.zip | |
mok: remove MokListTrusted from PCR 7
MokListTrusted was added by mistake to PCR 7 in 4e513405. The value of
MokListTrusted does not alter the behavior of secure boot so, as per
https://trustedcomputinggroup.org/wp-content/uploads/TCG_PCClient_PFP_r1p05_v23_pub.pdf#page=36
(section 3.3.4 PCR usage) so it should not be factored in the value of
PCR 7.
See:
https://github.com/rhboot/shim/pull/423
https://github.com/rhboot/shim/commit/4e513405b4f1641710115780d19dcec130c5208f
Fixes https://github.com/rhboot/shim/issues/484
Fixes https://github.com/rhboot/shim/issues/492
Signed-off-by: Arthur Gautier <arthur.gautier@arista.com>
Diffstat (limited to 'Cryptlib/Library/BaseCryptLib.h')
0 files changed, 0 insertions, 0 deletions
