RaitoBezarius / nixos-shim

Shim and related binaries signed via Hydra
MIT License
6 stars 0 forks source link

Release Milestone? #2

Open sambow23 opened 4 months ago

sambow23 commented 4 months ago

Hello, I stumbled upon this repo googling shim support for nix. I see there is some work being done but no issue on https://github.com/rhboot/shim-review/issues. I'm just curious when it's going to be submitted, thanks.

RaitoBezarius commented 4 months ago

cc @lheckemann

JohnRTitor commented 3 months ago

Hi, I see that there is already a draft application. Is there a timeline for this?

I currently use Ubuntu's shim EFI when configuring rEFInd on NixOS.

CC @lheckemann @RaitoBezarius

V3ntus commented 3 months ago

Curious about this too. NixOS is pretty widespread now and has a strong reputation. Would be cool to see @DeterminateSystems on this as well

lheckemann commented 3 months ago

The main missing piece is setting the signing up to use a hardware token rather than making private key material world-readable(!) in the nix store of the builder, then I'd complete and submit the application. It's currently a bit on ice though and I don't know when I'll get back to it.

V3ntus commented 3 months ago

Thanks for the update!