Package: shim-signed Version: 1.44~1+deb12u1+15.8-1~deb12u1 Severity: normal
Dear Maintainer, Each time shim-signed is updated, I noticed that the boot order of EFI is changed and set back to putting "debian" again as 1st boot entry. I have a setup where I have put "Refind" as 1st boot entry and therefore it is overridden every time shim-signed is updated. It may be because of the call to "grub-install" in https://sources.debian.org/src/shim-signed/1.44~1+deb12u1/debian/shim-signed.postinst/#L56 Is there a way to circumvent this? Either by updating the default behavior in the package, or by setting an appropriate option somewhere (eg. /etc/default/shim)? Regards -- System Information: Debian Release: 12.7 APT prefers stable-updates APT policy: (991, 'stable-updates'), (991, 'stable-security'), (991, 'stable'), (990, 'proposed-updates'), (390, 'oldstable-security'), (390, 'oldstable'), (389, 'oldstable-updates'), (380, 'oldoldstable'), (379, 'oldoldstable-updates'), (370, 'oldoldstable'), (95, 'testing'), (94, 'unstable'), (93, 'experimental') Architecture: amd64 (x86_64) Foreign Architectures: i386 Kernel: Linux 6.1.0-26-amd64 (SMP w/4 CPU threads; PREEMPT) Kernel taint flags: TAINT_PROPRIETARY_MODULE, TAINT_WARN, TAINT_OOT_MODULE, TAINT_UNSIGNED_MODULE Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8), LANGUAGE=fr:en_US Shell: /bin/sh linked to /usr/bin/dash Init: systemd (via /run/systemd/system) LSM: AppArmor: enabled Versions of packages shim-signed depends on: ii grub-efi-amd64-bin 2.06-13+deb12u1 ii grub2-common 2.06-13+deb12u1 ii shim-helpers-amd64-signed 1+15.8+1~deb12u1 ii shim-signed-common 1.44~1+deb12u1+15.8-1~deb12u1 shim-signed recommends no packages. shim-signed suggests no packages. -- no debconf information