diff --git a/TODO b/TODO index 1c9debd..5a03aba 100644 --- a/TODO +++ b/TODO @@ -30,6 +30,6 @@ Variable for debug: - basically we need to be able to set a UEFI variable and get debug output. Db key mokutil config: -- I've completely forgotten what I meant by this. It was something - Vojtêch was going to do/have done, so I'm sure he'll be able to - refresh my memory. +- Asked for by Mimi Zohar: An (on/off) option that would prevent the shim + and the kernel from trusting keys listed in 'db' and only use those coming + from the MOK List.