osresearch / safeboot

Scripts to slightly improve the security of the Linux boot process with UEFI Secure Boot and TPM support
https://safeboot.dev/
GNU General Public License v2.0
271 stars 28 forks source link

recovery: indicate that this is a recovery boot #29

Closed osresearch closed 4 years ago

osresearch commented 4 years ago

the boot mode should be displayed if the disk key is required for any reason

osresearch commented 4 years ago

added a small message in https://github.com/osresearch/safeboot/commit/8f0a5327e7ed0b0ae9fb94b33749203ebf16a0f6

Ideally the entire background would change, similar to the warnings provided by Android: https://source.android.com/security/verifiedboot/boot-flow

image

The vendor logo and uefi drawing is part of the "flicker free" boot: https://hansdegoede.livejournal.com/20632.html

Files for gui stuff there are in /usr/share/plymouth/themes/

osresearch commented 4 years ago

image

Recovery shell now has ASCII art to indicate that it is not the real boot.