[Skiboot] [PATCH] core/fast-reboot: disable fast-reboot when firmware secureboot is enabled

Oliver O'Halloran oohall at gmail.com
Wed Apr 15 13:54:15 AEST 2020


On Thu, Apr 9, 2020 at 8:14 AM Eric Richter <erichte at linux.ibm.com> wrote:
>
> The possible impact of the current fast-reboot design on secure/trusted
> boot is unclear and will likely need additional review and testing.

Are you really expecting me to hard disable fast reboot on the basis
of "I don't understand what this does"?

We looked at it years ago and decided that the interaction with
firmware secureboot was fine since a fast-reboot is roughlt the same
as a kexec between host kernels. If you think that's wrong (it might
be) then provide an actual explanation as to why.

Oliver


More information about the Skiboot mailing list