-
I tried to deploy a fsverity image on an ext4 disk.
The steps are roughly :
```
# turn on fsverity on filesystem
tune2fs -O verity /dev/vda4
# enable fsverity in the ostree repo
ostree conf…
-
## Issue description
Currently NixOS lets to load UKI only with systemd-boot, there's no alternative to the [virt-firmware's kernel-install hook](https://gitlab.com/kraxel/virt-firmware/-/blob/mast…
-
**Kairos version:**
```
nerdnode@sparkly-maroon-pigeon:~$ cat /etc/os-release
PRETTY_NAME="Ubuntu 24.04.1 LTS"
NAME="Ubuntu"
VERSION_ID="24.04"
VERSION="24.04.1 LTS (Noble Numbat)"
VERS…
-
Patches pending to add UKI support in the kernel:
https://lore.kernel.org/lkml/20230911052535.335770-1-kernel@jfarr.cc/
Discussion is here:
https://github.com/systemd/systemd/issues/28538
When…
-
We would like to investigate how we can port the KMS to UKI scenarios.
High level scenario:
- uki kairos node with encrypted partitions with a remote KMS in online mode (https://kairos.io/docs/…
-
24.10 uki doesn't work. Investigate why, seems like it cant encrypot.
HINT: Check if its shipping a default pcrlock json files, which is not supported to encrypt. (cant user measurements AND pcrlock …
-
See https://github.com/uapi-group/specifications/blob/main/specs/unified_kernel_image.md
and
https://fedoraproject.org/wiki/Changes/Unified_Kernel_Support_Phase_1
There are two major points here:…
-
i like to migrate to booster , but i cant know since uki is desired feature that elimante the bootloader , i home booster devs emplement it in their way to be customizable , and can uses diffrent stu…
-
@cgwalters mentioned something in a meeting today that I wasn't properly thinking about before.
Long story short: by doing the selinux label rewriting which we need to do as installing an unsealed/mo…
-
### Which ISO version are you using?
2024.11.01
### The installation log
```json
regular installation /w desktop on real hardware, limine as bootldr
```
### describe the problem
ini…