summaryrefslogtreecommitdiff
path: root/lib/variables.c
diff options
context:
space:
mode:
authorJan Setje-Eilers <jan.setjeeilers@oracle.com>2021-02-13 00:46:36 +0100
committerPeter Jones <pjones@redhat.com>2021-02-13 11:29:18 -0500
commit4eef10a6b345fad26578c985b8b6ab38ca2025e7 (patch)
treee91383a6b06e4427f8797a088e51280ea580f2fe /lib/variables.c
parent6b8ef61a1aa9c69aecb6a22cf79ddece727273e2 (diff)
downloadefi-boot-shim-4eef10a6b345fad26578c985b8b6ab38ca2025e7.tar.gz
efi-boot-shim-4eef10a6b345fad26578c985b8b6ab38ca2025e7.zip
Add Secure Boot Advanced Targeting (SBAT) specification document
SBAT is a new Generation Number Based Revocation meant to replace the DBX Revocation List Files mechanism. It is more flexible and allow to revoke sets of binaries, instead of having to list all of them as with the DBX. Metadata that includes the vendor, product family, product, component, version and generation are added to artifacts in a .sbat section. This is protected by the digital signature and so it cannot be tampered. Signed-off-by: Jan Setje-Eilers <jan.setjeeilers@oracle.com> Signed-off-by: Peter Jones <pjones@redhat.com> Signed-off-by: Gary Lin <glin@suse.com>
Diffstat (limited to 'lib/variables.c')
0 files changed, 0 insertions, 0 deletions