[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[PATCH 02/18] docs/grub: --pubkey has been supported for some time
From: |
Daniel Axtens |
Subject: |
[PATCH 02/18] docs/grub: --pubkey has been supported for some time |
Date: |
Fri, 2 Oct 2020 15:13:05 +1000 |
--pubkey is supported, so we can now document it.
Signed-off-by: Daniel Axtens <dja@axtens.net>
---
docs/grub.texi | 12 +++---------
1 file changed, 3 insertions(+), 9 deletions(-)
diff --git a/docs/grub.texi b/docs/grub.texi
index bd72b589522e..327c1bd0f412 100644
--- a/docs/grub.texi
+++ b/docs/grub.texi
@@ -5822,15 +5822,9 @@ verified with a public key currently trusted by GRUB
validation fails, then file @file{foo} cannot be opened. This failure
may halt or otherwise impact the boot process.
-@comment Unfortunately --pubkey is not yet supported by grub-install,
-@comment but we should not bring up internal detail grub-mkimage here
-@comment in the user guide (as opposed to developer's manual).
-
-@comment An initial trusted public key can be embedded within the GRUB
-@comment @file{core.img} using the @code{--pubkey} option to
-@comment @command{grub-mkimage} (@pxref{Invoking grub-install}). Presently it
-@comment is necessary to write a custom wrapper around @command{grub-mkimage}
-@comment using the @code{--grub-mkimage} flag to @command{grub-install}.
+An initial trusted public key can be embedded within the GRUB
+@file{core.img} using the @code{--pubkey} option to
+@command{grub-install} (@pxref{Invoking grub-install}).
GRUB uses GPG-style detached signatures (meaning that a file
@file{foo.sig} will be produced when file @file{foo} is signed), and
--
2.25.1
- [PATCH 00/18] Verify appended signatures from grub, Daniel Axtens, 2020/10/02
- [PATCH 01/18] docs/grub: grub-install is no longer a shell script, Daniel Axtens, 2020/10/02
- [PATCH 02/18] docs/grub: --pubkey has been supported for some time,
Daniel Axtens <=
- [PATCH 03/18] dl: provide a fake grub_dl_set_persistent for the emu target, Daniel Axtens, 2020/10/02
- [PATCH 04/18] verifiers: factor unsafe module handling out of shim_lock, Daniel Axtens, 2020/10/02
- [PATCH 05/18] pgp: factor out rsa_pad, Daniel Axtens, 2020/10/02
- [PATCH 07/18] posix_wrap: tweaks in preparation for libtasn1, Daniel Axtens, 2020/10/02
- [PATCH 06/18] crypto: move storage for grub_crypto_pk_* to crypto.c, Daniel Axtens, 2020/10/02
- [PATCH 09/18] libtasn1: disable code not needed in grub, Daniel Axtens, 2020/10/02
- [PATCH 08/18] libtasn1: import libtasn1-4.16.0, Daniel Axtens, 2020/10/02
- [PATCH 10/18] libtasn1: changes for grub compatibility, Daniel Axtens, 2020/10/02