Hacker News new | ask | show | jobs
by tbrownaw 5380 days ago
> The two alternatives here are for Windows to be signed with a Microsoft key and for the public part of that key to be included with all systems, or

Does it have to be directly signed by that key, or does it work like the CA system that web browsers use?

> A system that ships with only OEM and Microsoft keys will not boot a generic copy of Linux. [ from the blog post rather than the article ]

Which tells us that either systems will not ship with only those keys, or there will be a simple way to disable this ("Press F2 for setup"), or somebody will be getting sued on antitrust grounds (which maybe would be ignored again in the US, but not the rest of the world) and forced to provide a workaround.