Tested secure boot lockdown:
root@ibm-gt-opt-2:~# uname -a Linux ibm-gt-opt-2 6.5.0-1003-ibm-gt-opt #3~22.04.2-Ubuntu SMP Tue Nov 14 15:51:29 UTC 2023 x86_64 x86_64 x86_64 GNU/Linux root@ibm-gt-opt-2:~# cat /sys/kernel/security/lockdown none [integrity] confidentiality root@ibm-gt-opt-2:~# sudo dmesg | grep -i "secure boot" | head -2 [ 0.000000] secureboot: Secure boot enabled [ 0.000000] Kernel is locked down from EFI Secure Boot mode; see man kernel_lockdown.7
Tested secure boot lockdown:
root@ibm- gt-opt- 2:~# uname -a ibm-gt- opt #3~22.04.2-Ubuntu SMP Tue Nov 14 15:51:29 UTC 2023 x86_64 x86_64 x86_64 GNU/Linux gt-opt- 2:~# cat /sys/kernel/ security/ lockdown gt-opt- 2:~# sudo dmesg | grep -i "secure boot" | head -2
Linux ibm-gt-opt-2 6.5.0-1003-
root@ibm-
none [integrity] confidentiality
root@ibm-
[ 0.000000] secureboot: Secure boot enabled
[ 0.000000] Kernel is locked down from EFI Secure Boot mode; see man kernel_lockdown.7