Comment 3 for bug 2038955

Revision history for this message
Tim Gardner (timg-tpi) wrote :

ubuntu@jammy-amd64-uefi:~$ uname -a
Linux jammy-amd64-uefi 6.5.0-1008-aws #8~22.04.1-Ubuntu SMP Fri Oct 13 18:24:38 UTC 2023 x86_64 x86_64 x86_64 GNU/Linux
ubuntu@jammy-amd64-uefi:~$ sudo dmesg |grep Secure
[ 0.000000] secureboot: Secure boot enabled
[ 0.000000] Kernel is locked down from EFI Secure Boot mode; see man kernel_lockdown.7
[ 0.022090] secureboot: Secure boot enabled
[ 3.667303] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing: 61482aa2830d0ab2ad5af10b7250da9033ddcef0'
[ 3.669838] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing (2017): 242ade75ac4a15e50d50c84b0d45ff3eae707a03'
[ 3.672658] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing (ESM 2018): 365188c1d374d6b07c3c8f240f8ef722433d6a8b'
[ 3.677005] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing (2019): c0746fd6c5da3ae827864651ad66ae47fe24b3e8'
[ 3.680774] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing (2021 v1): a8d54bbb3825cfb94fa13c9f8a594a195c107b8d'
[ 3.685119] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing (2021 v2): 4cf046892d6fd3c9a5b03f98d845f90851dc6a8c'
[ 3.688045] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing (2021 v3): 100437bb6de6e469b581e61cd66bce3ef4ed53af'
[ 3.690961] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing (Ubuntu Core 2019): c1d57b8f6b743f23ee41f4f7ee292f06eecadfb9'
ubuntu@jammy-amd64-uefi:~$ cat /sys/kernel/security/lockdown
none [integrity] confidentiality