On 04/18/18 16:06, Daniel P. Berrangé wrote:
On Wed, Apr 18, 2018 at 04:03:03PM +0200, Laszlo Ersek wrote:
> - Would you like me to capture the directory paths in the
firmware.json
> file, or in the commit message for the patch?
Should be in whatever file ends up in the docs/specs directory eventually.
>
> - Should we keep @secure-boot-enrolled-keys (or, as Gerd suggests,
> @enrolled-keys) in the schema, as a feature enum constant, but remove
> the documentation of the actual certificates? (I.e., say "an
> unspecified set of certificates has been enrolled and SB mode has been
> enabled".)
I think it is worth keeping the feature flag - we simply don't need
to say /what/ keys.
All clear, thanks.
Laszlo