UEFI Secure Boot in Linux - Sumeet Pawnikar, Cisco
Abstract:-
==========
This tech talk will cover the comprehensive overview of Secure boot support under UEFI based GRUB bootloader on X86 based platforms. Explains the dependencies and available kernel options with code snippets to enable UEFI based Secure boot support. Also, touch upon the steps for Secure boot enablement on VMs.
Agenda brief:-
==============
What is secure boot ? Benefit with pros-cons, requirements in boot sequence.
Why is Secure boot required in today's world?
What's the Significance of Shim in Secure boot?
What is UEFI and different bootloaders like GRUB and others?
What is UEFI's role in GRUB for secure boot?
What are the dependencies and available options in Linux kernel with respect to UEFI and GRUB for Secure boot enablement?
Signing the UEFI binaries and Custom kernel modules with keys.
Step by step guide on required signing tools with Certificates.
How to enable Secure boot for a Virtual Machine?
Verification of secure boot on Linux based platforms.