Blame 0001-Don-t-use-shim_cert-for-verifying-MoK-fedora-will-do.patch

732f24b
From 878dc1a6a76eab7d9fee897ecc978e55e3fc80ed Mon Sep 17 00:00:00 2001
732f24b
From: Peter Jones <pjones@redhat.com>
732f24b
Date: Mon, 10 Jun 2013 18:08:50 -0400
732f24b
Subject: [PATCH] Don't use shim_cert for verifying MoK; fedora will do its own
732f24b
 signing.
732f24b
732f24b
Signed-off-by: Peter Jones <pjones@redhat.com>
732f24b
---
732f24b
 shim.c | 2 ++
732f24b
 1 file changed, 2 insertions(+)
732f24b
732f24b
diff --git a/shim.c b/shim.c
732f24b
index 94b9710..4edd0b6 100644
732f24b
--- a/shim.c
732f24b
+++ b/shim.c
732f24b
@@ -702,6 +702,7 @@ static EFI_STATUS verify_buffer (char *data, int datasize,
732f24b
 		return status;
732f24b
 	}
732f24b
 
732f24b
+#if 0
732f24b
 	/*
732f24b
 	 * Check against the shim build key
732f24b
 	 */
732f24b
@@ -713,6 +714,7 @@ static EFI_STATUS verify_buffer (char *data, int datasize,
732f24b
 		Print(L"Binary is verified by the vendor certificate\n");
732f24b
 		return status;
732f24b
 	}
732f24b
+#endif
732f24b
 
732f24b
 
732f24b
 	/*
732f24b
-- 
732f24b
1.8.2.1
732f24b