snapcore / core-initrd

initrd implementation in ubuntu core
https://ubuntu.com/core/docs
GNU General Public License v3.0
9 stars 27 forks source link

factory: installation from initrd must apply dbx revocations #220

Open xnox opened 9 months ago

xnox commented 9 months ago

today dbx revocations are applied from the base snap upon install mode boot.

If install mode boot is never performed, dbx revocations must be applied before sealing luks key on EFI capable platforms.