Comment 6 for bug 1658255

Revision history for this message
Kees Cook (kees) wrote :

Oh, and that's not set up by the bootloader, it's in arch/x86/boot/compressed/eboot.c:

        boot_params->secure_boot = get_secure_boot();