On Wed, 2013-09-04 at 17:24 -0400, Vivek Goyal wrote: > Currently kexec does not enables EFI and its tables in second kernel. Hence > acpi rsdp root pointer is passed on command line. But secureboot does not trust > acpi_rsdp on command line as kernel can execute some of the code as retrieved > by following acpi_rsdp and root can modify command line. So in secureboot > mode we ignore acpi_rsdp on command line. How does kexec know it's getting a trustworthy version of the acpi_rsdp pointer? -- Matthew Garrett <matthew.garrett@xxxxxxxxxx> _______________________________________________ kernel mailing list kernel@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/kernel