diff options
| author | Patrick Uiterwijk <patrick@puiterwijk.org> | 2018-12-06 10:08:45 +0100 |
|---|---|---|
| committer | Peter Jones <pjones@redhat.com> | 2020-07-23 20:52:12 -0400 |
| commit | 95bd1d88003a9a7c2732472b061ad2a9c7140419 (patch) | |
| tree | da9407a8f32359fb2d4d47798d4558078c51d102 /errlog.c | |
| parent | cf3f99c3b1e11c8c83938784975331db5efb410f (diff) | |
| download | efi-boot-shim-95bd1d88003a9a7c2732472b061ad2a9c7140419.tar.gz efi-boot-shim-95bd1d88003a9a7c2732472b061ad2a9c7140419.zip | |
Make EFI variable copying fatal only on secureboot enabled systems
I have come across systems that are unwilling to reserve enough memory for
a MokListRT big enough for big certificates.
This seems to be the case with firmware implementations that do not support
secureboot, which is probably the reason they went with much lower variable
storage.
This patch set makes sure we can still boot on those systems, by only
making the copy action fatal if the system has secure boot enabled, or if
the error was anything other than EFI_INVALID_PARAMETER.
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
Upstream-commit-id: 741c61abba7
Diffstat (limited to 'errlog.c')
0 files changed, 0 insertions, 0 deletions
