Hacker News new | ask | show | jobs
by OSI-Auflauf 671 days ago
Many surface brand devices had a toggle in the bios for something like "security level" for years. Which is a switch between Windows signing CA only and Windows signing CA + 3rd party CA. The latter allows shim distros to boot. You can still set your own keys on them.