Skip to content

Commit

Permalink
Merge pull request #732 from Dasharo/uefi_ca_2023
Browse files Browse the repository at this point in the history
dasharo-menu-docs/device-manager.md: update to include MS 2023 SB certs
  • Loading branch information
miczyg1 authored Jan 2, 2024
2 parents 83832c6 + d51b9fd commit c0f96bb
Showing 1 changed file with 4 additions and 1 deletion.
5 changes: 4 additions & 1 deletion docs/dasharo-menu-docs/device-manager.md
Original file line number Diff line number Diff line change
Expand Up @@ -107,11 +107,14 @@ which will cause the `Advanced Secure Boot Keys Management` submenu to appear.

* `Reset to default Secure Boot Keys` will cause the following keys/certificates
to be enrolled:
- [Microsoft KEK certificate](https://go.microsoft.com/fwlink/?LinkId=321185),
- [Microsoft Corporation KEK CA 2011](https://go.microsoft.com/fwlink/?LinkId=321185),
- [Microsoft Corporation KEK 2K CA 2023](https://go.microsoft.com/fwlink/p/?linkid=2239775),
- Microsoft Signature Database (db) consisting of:
+ [Microsoft Windows Production PCA 2011](https://go.microsoft.com/fwlink/p/?linkid=321192)
and [Windows UEFI CA 2023](https://go.microsoft.com/fwlink/p/?linkid=2239776)
to allow Windows OS Loader to load,
+ [Microsoft Corporation UEFI CA 2011](https://go.microsoft.com/fwlink/p/?linkid=321194)
and [Microsoft UEFI CA 2023](https://go.microsoft.com/fwlink/?linkid=2239872)
to load OEM-approved UEFI drivers and applications (e.g. [shim](https://github.com/rhboot/shim)),
- Microsoft Forbidden Signature Database (dbx) published as
[UEFI Revocation List File on uefi.org](https://www.uefi.org/revocationlistfile),
Expand Down

0 comments on commit c0f96bb

Please sign in to comment.