QubesOS / qubes-issues

The Qubes OS Project issue tracker
https://www.qubes-os.org/doc/issue-tracking/
528 stars 46 forks source link

Release-signing for Windows Xen PV drivers #9019

Open omeg opened 4 months ago

omeg commented 4 months ago

Currently the Windows PV drivers are test-signed because upstream doesn't provide signed binaries anymore. This requires all Windows VMs to enable test mode which is not ideal. Release signing requires a few steps:

We would gain some significant usability improvements from this:

There are some disadvantages too:

DemiMarie commented 4 months ago
  • The drivers could be distributed via Windows Update, no need to bundle them with Qubes Windows Tools.

Bundling them with QWT is still a good idea, because it works even when the VM is offline.