Secure booting Debian is ready with buster

Questions about SolydX and SolydK installation.
User avatar
ilu
Posts: 2474
Joined: 09 Oct 2013 12:45

Secure booting Debian is ready with buster

Postby ilu » 07 Jun 2019 16:15

It's supposed to just work if the shim package https://packages.debian.org/sid/utils/shim-signed is included https://debamax.com/blog/2019/04/19/an- ... in-debian/

We should probably test that?

User avatar
Arjen Balfoort
Site Admin
Posts: 9258
Joined: 26 Jan 2013 19:36
Location: Netherlands
Contact:

Re: Secure booting Debian is ready with buster

Postby Arjen Balfoort » 07 Jun 2019 18:20

I'll install it in the SolydXK-10 ISOs I'm working on now.

If I finished uploading them, I'll post back here.


SolydXK needs you!
Development | Testing | Translations

User avatar
Arjen Balfoort
Site Admin
Posts: 9258
Joined: 26 Jan 2013 19:36
Location: Netherlands
Contact:

Re: Secure booting Debian is ready with buster

Postby Arjen Balfoort » 07 Jun 2019 22:07

I've uploaded the ISOs with shim-signed installed:
https://downloads.solydxk.com/nightly/


SolydXK needs you!
Development | Testing | Translations

User avatar
ilu
Posts: 2474
Joined: 09 Oct 2013 12:45

Re: Secure booting Debian is ready with buster

Postby ilu » 08 Jun 2019 21:07

Also LUKS is changing its default from LUKS1 to LUKS2, which should not cause any problems as long as we have a separate /boot. Is the ISO using LUKS2 ?

User avatar
Arjen Balfoort
Site Admin
Posts: 9258
Joined: 26 Jan 2013 19:36
Location: Netherlands
Contact:

Re: Secure booting Debian is ready with buster

Postby Arjen Balfoort » 09 Jun 2019 17:34

Currently, live-installer-3 and solydxk-system use:

Code: Select all

cryptsetup luksFormat --cipher aes-xts-plain64 --key-size 512 --hash sha512 --iter-time 5000 --use-random
but I'll add --type luks2 in the next version:

Code: Select all

cryptsetup luksFormat --type luks2 --cipher aes-xts-plain64 --key-size 512 --hash sha512 --iter-time 5000 --use-random
I don't know if that would cause problems on solydxk-9, though.


SolydXK needs you!
Development | Testing | Translations


Return to “Installation”

Who is online

Users browsing this forum: No registered users and 2 guests