Comment 5 for bug 2003701

Revision history for this message
Dimitri John Ledkov (xnox) wrote :

I think UEFI spec says to not check timestamps against current time. But I am not sure it says it is ok to have signature time to be outside of the cert validity. Which violates pkcs7 signature spec.