-
Josh Boyer authored
If a user tells shim to not use the certs/hashes in the UEFI db variable for verification purposes, shim will set a UEFI variable called MokIgnoreDB. Have the uefi import code look for this and ignore the db variable if it is found. [zohar@linux.ibm.com: removed reference to "secondary" keyring comment] Signed-off-by:
Josh Boyer <jwboyer@fedoraproject.org> Signed-off-by:
David Howells <dhowells@redhat.com> Acked-by:
Nayna Jain <nayna@linux.ibm.com> Acked-by:
Serge Hallyn <serge@hallyn.com> Reviewed-by:
James Morris <james.morris@microsoft.com> Signed-off-by:
Mimi Zohar <zohar@linux.ibm.com>
386b49f5