[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[PATCH] SUPPORT.md: explicitly mention EFI (secure) boot status


  • To: "xen-devel@xxxxxxxxxxxxxxxxxxxx" <xen-devel@xxxxxxxxxxxxxxxxxxxx>
  • From: Jan Beulich <jbeulich@xxxxxxxx>
  • Date: Thu, 11 May 2023 16:34:45 +0200
  • Arc-authentication-results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=suse.com; dmarc=pass action=none header.from=suse.com; dkim=pass header.d=suse.com; arc=none
  • Arc-message-signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=PZtfQKxifRk6kmgzpC/rH44iign0BqEwrPFys6tO/Ug=; b=norvQMP1yau8l4GrzUlCmqyBTuqmBiYro2VVuzoxXnpZx/AbULYRRWz9oLHrIrYJfdMR6dg1nilZ3krkgIVfZZn+UoduCDmDawJmZcuuAJWuQjjMlUBA+4SpamoukHCxupbCLDij0Oe+fPbNCLWQjwuGtAE04xpG7U2sn0SWsfjqTLKOhCKLBXQdsn29cRw//KHeJ1idGvMxqWj3ltP2gIiGj1zLsrSqBfF9Rp+b3PgYnII7Rq+pAqnJdA2KOt4PYHFIyyr70TzDIWLTEaUyFxLLZbgfERgJ5qBlAAkHx7HGMIJDUQTjemwIrrw2X8wJzLPUyR+hw0msxcnNS/7ikA==
  • Arc-seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=EKJWdoDEgCnkmh1XElHZreqgXaJBhQkBmAaBqD9ZpiUrSJxQ24/PiMeVLbWT95whs68Z/OvYY38JqUo8BKtM9uAPgmltajYdE87/sfPnob7HJqWtweGWZbPYoIpu3Goia67/IOssmkFA/iw8zQXuJ0ICYtNgUlOzWEmd+La1s4gAHPvdigrjzropQw4tl4k/f1k39xImsFgpLo8Iz/Nr3lCuoQZrwWsauNea9kNiXNILAtGqejqgNxmKTrEFJbwYpSU1tAsu9zRJz7bkpDYBrQnfLWWO64ZbSN7h1WFYV8CRipLc0nVP0OFBnUnLSR5dSbNks8FWbxlp2lXkEtE50A==
  • Authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=suse.com;
  • Cc: Andrew Cooper <andrew.cooper3@xxxxxxxxxx>, George Dunlap <george.dunlap@xxxxxxxxxx>, Julien Grall <julien@xxxxxxx>, Stefano Stabellini <sstabellini@xxxxxxxxxx>, Wei Liu <wl@xxxxxxx>
  • Delivery-date: Thu, 11 May 2023 14:35:07 +0000
  • List-id: Xen developer discussion <xen-devel.lists.xenproject.org>

While normal booting is properly supported on both x86 and Arm64, secure
boot reportedly requires quite a bit more work to be actually usable
(and providing the intended guarantees). The mere use of the shim
protocol for verifying the Dom0 kernel image isn't enough.

Signed-off-by: Jan Beulich <jbeulich@xxxxxxxx>

--- a/SUPPORT.md
+++ b/SUPPORT.md
@@ -63,6 +63,16 @@ For the Cortex A57 r0p0 - r1p1, see Erra
     Status, x86 PV: Supported
     Status, ARM: Experimental
 
+### Host EFI Boot
+
+    Status, x86: Supported
+    Status, Arm64: Supported
+
+### Host EFI Secure Boot
+
+    Status, x86: Experimental
+    Status, Arm64: Experimental
+
 ### x86/Intel Platform QoS Technologies
 
     Status: Tech Preview



 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.