| 5 Sep 2022 |
@grahamc:nixos.org | attempt #3 :x | 01:22:12 |
| Ronny joined the room. | 06:02:13 |
| 7 Sep 2022 |
| Alexandre joined the room. | 09:40:54 |
| 11 Sep 2022 |
| Ronny changed their profile picture. | 21:27:04 |
| 14 Sep 2022 |
| ElvishJerricco joined the room. | 23:27:09 |
ElvishJerricco | Zhaofeng Li: So moving over here because it seems more relevant: That patch doesn't seem to apply to NixOS. Based on the Loaded initrd from command line option message you see when booting with systemd-boot, that code path in that patch doesn't seem to measure the initrd | 23:28:25 |
ElvishJerricco | which is odd. I dunno why you'd only measure one of those two branches. Either it's measured elsewhere or this is a kernel bug | 23:30:45 |
ElvishJerricco | Though honestly I guess it doesn't matter. The attacker can always override the cmdline if you're not using a UKI anyway. So UKI it is | 23:53:37 |