Red Hat Will Address Secure Boot Issue in Fedora 18
Fedora bypasses UEFI restrictions with Microsoft signing service.
As we have reported previously HPC and Linux magazine web sites, all Windows 8 licensed hardware will ship with the new UEFI secure boot enabled by default. In a nutshell, the UEFI specification associates the firmware with a signing key, which prevents users from installing a new operating system – such as Linux.
According to Red Hat developer Matthew Garrett, the company has been working on a plan for dealing with the situation. Although Red Hat explored several alternatives, Garrett reports that “Microsoft will be offering signing services through their sysdev portal.” The solution is not free; a US$ 99 fee is required to gain access. Garrett notes that the US$ 99 goes to Verisign, not Microsoft and that, once paid, you can sign as many binaries as you want.
Garrett states that this approach, which will be implemented in Fedora 18, “ensures compatibility with as wide a range of hardware as possible and it avoids Fedora having any special privileges over other Linux distributions.” Garrett also says that the solution “is not ideal, but of all the approaches we’ve examined we feel that this one offers the best balance between letting users install Fedora while still permitting user freedom.”
Steven J. Vaughn-Nichols at ZDNet spoke about this issue with Linus Torvalds, who doesn’t think Microsoft’s spin on Windows 8 UEFI secure boot is sufficient for security. Torvalds said, “The real problem, I feel, is that clever hackers will bypass the whole key issue either by getting a key of their own (how many of those private keys have stayed really private again? Oh, that’s right, pretty much none of them) or they’ll just take advantage of security bugs in signed software to bypass it without a key at all.” Stay tuned.
You can read Matthew Garrett’s blog at: http://mjg59.dreamwidth.org/12368.html and find the article by Steven J. Vaughn-Nichols here.
Issue 244/2021
Buy this issue as a PDF
News
-
Another New Linux Laptop has Arrived
Slimbook has released a monster of a Linux gaming laptop.
-
Mozilla VPN Now Available for Linux
The promised subscription-based VPN service from Mozilla is now available for the Linux platform.
-
Wayland and New App Menu Coming to KDE
The 2021 roadmap for the KDE desktop environment includes some exciting features and improvements.
-
Deepin 20.1 has Arrived
Debian-based Deepin 20.1 has been released with some interesting new features.
-
CloudLinux Commits Over 1 Million Dollars to CentOS Replacement
An open source, drop-in replacement for CentOS is on its way.
-
Linux Mint 20.1 Beta has Been Released
The first beta of Linux Mint, Ulyssa, is now available for downloading.
-
Manjaro Linux 20.2 has Been Unleashed
The latest iteration of Manjaro Linux has been released with a few interesting new features.
-
Patreon Project Looks to Bring Linux to Apple Silicon
Developer Hector Martin has created a patreon page to fund his work on developing a port of Linux for Apple Silicon Macs.
-
A New Chrome OS-Like Ubuntu Remix is Now Available
Ubuntu Web looks to be your Chrome OS alternative.
-
System76 Refreshes the Galago Pro Laptop
Linux hardware maker has revamped one of their most popular laptops.