Secure boot verified on amd64:
$ uname -r 6.8.0-1001-aws $ sudo dmesg | grep -i lockdown [ 0.000000] Kernel is locked down from EFI Secure Boot mode; see man kernel_lockdown.7 [ 0.307863] LSM: initializing lsm=lockdown,capability,landlock,yama,apparmor,integrity [ 2.045608] Lockdown: swapper/0: hibernation is restricted; see man kernel_lockdown.7 $ cat /sys/kernel/security/lockdown none [integrity] confidentiality
Secure boot verified on amd64:
$ uname -r capability, landlock, yama,apparmor, integrity security/ lockdown
6.8.0-1001-aws
$ sudo dmesg | grep -i lockdown
[ 0.000000] Kernel is locked down from EFI Secure Boot mode; see man kernel_lockdown.7
[ 0.307863] LSM: initializing lsm=lockdown,
[ 2.045608] Lockdown: swapper/0: hibernation is restricted; see man kernel_lockdown.7
$ cat /sys/kernel/
none [integrity] confidentiality