summaryrefslogtreecommitdiff
path: root/MokVars.txt
diff options
context:
space:
mode:
Diffstat (limited to 'MokVars.txt')
-rw-r--r--MokVars.txt10
1 files changed, 10 insertions, 0 deletions
diff --git a/MokVars.txt b/MokVars.txt
index 71b42c82..e6e68ce4 100644
--- a/MokVars.txt
+++ b/MokVars.txt
@@ -93,3 +93,13 @@ to trust CA keys in the MokList. BS,NV
MokListTrustedRT: A copy of MokListTrusted made available to the kernel
at runtime. BS,RT
+
+HSIStatus: Status of various security features:
+ heap-is-executable: 0: heap allocations are not executable by default
+ 1: heap allocations are executable
+ stack-is-executable: 0: UEFI stack is not executable
+ 1: UEFI stack is executable
+ ro-sections-are-writable: 0: read-only sections are not writable
+ 1: read-only sections are writable
+ has-memory-attribute-protocol: 0: platform does not provide the EFI Memory Attribute Protocol
+ 1: platform does provide the EFI Memory Attribute Protocol