Comment 23 for bug 1696154

Revision history for this message
Steve Langasek (vorlon) wrote : Re: [Bug 1696154] Comment bridged from LTC Bugzilla

On Thu, Oct 05, 2017 at 01:52:46AM -0000, bugproxy wrote:
> ------- Comment From <email address hidden> 2017-10-04 17:33 EDT-------
> I have received the KEK from Emily in person.

> ------- Comment From <email address hidden> 2017-10-04 18:16 EDT-------

> BTW, I learned from Emily that Canonical plans to issue Power keys/certs
> separately from those for the x86 UEFI shim. So moving from SHA-512 to
> SHA-256 may not be much of a priority from a reuse point of view. If we
> need any key changes, it would be good to send them before or during next
> week while Emily will be in NY meeting with vorlon.

Yes, if you need the hash changed from SHA512 to SHA256 on the 2048-bit db
key, please let us know this week so that we can arrange to have a new ESL
signed.