On 10/27/19 10:45 AM, Florian Weimer wrote: > * Thomas Goirand: > >> I've setup my new laptop with secureboot, and now, I can't use the DKMS >> modules from Virtualbox, as they aren't signed. I've been told by Sledge >> that I should use MOK to do that, and that DKMS packages are supposed to >> have all in them to support MOK. > > I don't think secure boot provides any benefit at all if you store the > kernel module signing key on the same machine.
Probably, though if my HDD is encrypted, it still provides some higher level of security. Thomas Goirand (zigo)