Files
docs/doc/source/security/kubernetes/overview-of-uefi-secure-boot.rst
Ngairangbam Mili 45bead3783 Update UEFI Secure Boot Certificate
Story: 2011352
Task: 52387

Change-Id: I9823c73b173f407d471862a7d028bdfa8508a6ab
Signed-off-by: Ngairangbam Mili <ngairangbam.mili@windriver.com>
2025-06-30 15:41:38 +00:00

798 B

Overview of UEFI Secure Boot

Secure Boot is an optional capability of firmware.

Secure Boot is a technology where the system firmware checks that the system boot loader is signed with a cryptographic key authorized by a database contained in the firmware or a security device.

's implementation of Secure Boot also validates the signature of the second-stage boot loader and the kernel.

's public key, for programming in the hardware's Secure Boot database, can be found in the ISO.

Note

Users installing must keep the old certificate in the BIOS and users must add the new certificate before upgrading to the N+2 release.