• @[email protected]
    link
    fedilink
    English
    352 months ago

    It’s supposed to prevent unsigned files from being loaded by the UEFI (AFAIK) which could possibly help with rootkits, if it doesn’t somehow sign itself. However, these are pretty rare if you don’t allow sketchy software to access your boot partition, and will often cause issues with non major Linux distros.

    • bruhduh
      link
      English
      9
      edit-2
      2 months ago

      I had dell pc refuse to boot Linux mint because of secure boot

      • @nul9o9
        link
        English
        62 months ago

        I’ve been wary of secure boot and pluton chips for this reason.

      • @Emerald
        link
        English
        -12 months ago

        Then you haven’t set it up right

        • bruhduh
          link
          English
          42 months ago

          Nah man, it didn’t even allowed to boot iso from ventoy until i disabled secure boot

          • @[email protected]
            link
            fedilink
            English
            22 months ago

            With Debian I think I was able to load the appropriate keys after installing the OS and then re-enable secureboot in the bios. Might be worth checking into.

            • @Emerald
              link
              English
              12 months ago

              I just don’t bother with secure boot as its not in my threat model. I turn it off

          • @Emerald
            link
            English
            12 months ago

            Well of course, thats the setup. Disabling secure boot. If it didn’t stop you from booting a third party OS without you toggling that BIOS option, then the security feature would be pointless.

            • bruhduh
              link
              English
              12 months ago

              Imagine if in the future that option becomes untouchable

              • @Emerald
                link
                English
                12 months ago

                Then it would be an issue and I would not suggest anyone buy those machines