
18 Apr
2018
18 Apr
'18
2:45 p.m.
On 04/18/18 16:06, Daniel P. Berrangé wrote:
On Wed, Apr 18, 2018 at 04:03:03PM +0200, Laszlo Ersek wrote:
- Would you like me to capture the directory paths in the firmware.json file, or in the commit message for the patch?
Should be in whatever file ends up in the docs/specs directory eventually.
- Should we keep @secure-boot-enrolled-keys (or, as Gerd suggests, @enrolled-keys) in the schema, as a feature enum constant, but remove the documentation of the actual certificates? (I.e., say "an unspecified set of certificates has been enrolled and SB mode has been enabled".)
I think it is worth keeping the feature flag - we simply don't need to say /what/ keys.
All clear, thanks. Laszlo