Blob Blame Raw
From 878dc1a6a76eab7d9fee897ecc978e55e3fc80ed Mon Sep 17 00:00:00 2001
From: Peter Jones <pjones@redhat.com>
Date: Mon, 10 Jun 2013 18:08:50 -0400
Subject: [PATCH] Don't use shim_cert for verifying MoK; fedora will do its own
 signing.

Signed-off-by: Peter Jones <pjones@redhat.com>
---
 shim.c | 2 ++
 1 file changed, 2 insertions(+)

diff --git a/shim.c b/shim.c
index 94b9710..4edd0b6 100644
--- a/shim.c
+++ b/shim.c
@@ -702,6 +702,7 @@ static EFI_STATUS verify_buffer (char *data, int datasize,
 		return status;
 	}
 
+#if 0
 	/*
 	 * Check against the shim build key
 	 */
@@ -713,6 +714,7 @@ static EFI_STATUS verify_buffer (char *data, int datasize,
 		Print(L"Binary is verified by the vendor certificate\n");
 		return status;
 	}
+#endif
 
 
 	/*
-- 
1.8.2.1