Open sundhaug92 opened 6 years ago
up! is linux shielded vm for windows rip?
Would love to see support for newer distros, the current ones are starting to get quite old and are all way past their EOL dates.
I think there's nothing fundamentally that stops one from using LSVM on newer distributions.
The prerequisite seems to be:
lsvmtool serializekeys ./bootkey ./rootkey ./outfile
sudo lsvmtool seallsvmloadpolicy --secureboot /boot/efi/EFI/BOOT/lsvmload/lsvmload.efi ./outfile /boot/efi/EFI/BOOT/lsvmload/sealedkeys
lvsmconfig
(script shows quite well what is generated there), validate
will help with some aspects (albeit it is outdated and does a few paths different, namely the config is in the wrong location)lsvmload.efi
using efibootmgr
to list of bootable devices.
For example Ubuntu 18.04