Currently, bootupd package is installed by default & bootupctl backend generate-update-metadata command is performed, but nothing else is done at the moment.
However, it will be used very soon to automatically update bootloader on UEFI & BIOS systems, which might conflict even further with GRUB modifications.
This includes setting GRUB password, which is the current recommendation in the post-install README: https://github.com/secureblue/secureblue/blob/live/docs/POSTINSTALL-README.md#grub
Currently,
bootupd
package is installed by default &bootupctl backend generate-update-metadata
command is performed, but nothing else is done at the moment.https://pagure.io/fork/siosm/workstation-ostree-config/blob/main/f/bootupd.yaml
However, it will be used very soon to automatically update bootloader on UEFI & BIOS systems, which might conflict even further with GRUB modifications.
Only diff of this needs to be merged into F41. https://pagure.io/fork/siosm/workstation-ostree-config/blob/f41-wip/f/bootupd.yaml