Hacker News new | ask | show | jobs
by dathinab 688 days ago
Without a trust chain measured boot is security wise meaningless and doesn't work.

But you don't need any fancy PKI or vendor certificates for a trust chain, local trust is good enough.

I.e. the problem of secure boot isn't that it has a secured boot chain but how it has one.

Either way measured boot is still a nice think to complement a secure boot chain.