mirror of
https://git.proxmox.com/git/efi-boot-shim
synced 2025-10-04 06:12:51 +00:00

as all EFI binaries are now unsigned. They are useless to any normal user as - shim is useless without being signed by an external UEFI CA. - mm and fb won't be loaded by shim as they are now no longer linked to corresponding shim by the ephemeral key any longer.
21 lines
945 B
Plaintext
21 lines
945 B
Plaintext
Source: shim
|
|
Section: admin
|
|
Priority: optional
|
|
Maintainer: Steve Langasek <vorlon@debian.org>
|
|
Standards-Version: 4.3.0
|
|
Build-Depends: debhelper (>= 9), gnu-efi (>= 3.0u), sbsigntool, openssl, libelf-dev
|
|
Vcs-Browser: https://salsa.debian.org/vorlon/shim
|
|
Vcs-Git: https://salsa.debian.org/vorlon/shim.git
|
|
|
|
Package: shim-unsigned
|
|
Architecture: amd64 arm64 i386
|
|
Depends: ${shlibs:Depends}, ${misc:Depends}
|
|
Conflicts: shim (<< 15+1533136590.3beb971-3~),
|
|
Replaces: shim (<< 15+1533136590.3beb971-3~),
|
|
Description: boot loader to chain-load signed boot loaders under Secure Boot
|
|
This package provides a minimalist boot loader which allows verifying
|
|
signatures of other UEFI binaries against either the Secure Boot DB/DBX or
|
|
against a built-in signature database. Its purpose is to allow a small,
|
|
infrequently-changing binary to be signed by the UEFI CA, while allowing
|
|
an OS distributor to revision their main bootloader independently of the CA.
|