|
|
|
|
|
by mschuster91
370 days ago
|
|
> How is it any different? You install the hash of the boot loader when you issue the machine, then use the trusted system to update the hash if necessary. With your private CA you can skip the "update the hash" part, removing a crucial step that one might forget in a hurry or that simply might go wrong because of whatever sort of bug or power outage... and brick thousands of machines as a result. |
|