Hacker News new | ask | show | jobs
by pgeorgi 4107 days ago
Canonical doesn't enforce signature checks for module loading (which is useful for DKMS based kernel modules, and is also a "freedom to tinker" matter). That may well lead to a revoked Secure Boot key at some point...