From: Daniel P. Berrangé on gitlab.com https://gitlab.com/cki-project/kernel-ark/-/merge_requests/2917#note_1801367682
Consider if in future we have multiple UKIs created, each with their own SecureBoot signing key. We might need to have the same addon for different UKIs. One option is that we have multiple signatures on the same addon binary. The other option is to namespace things, eg 'virt-fips.addon.efi' and 'something- fips.add.efi' for a "something" UKI, each signed with their respective SecureBoot keys. -- _______________________________________________ kernel mailing list -- [email protected] To unsubscribe send an email to [email protected] Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/[email protected] Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue
