On Wed, Nov 16, 2022 at 8:42 PM James Bottomley <James.Bottomley@xxxxxxxxxxxxxxxxxxxxx> wrote: > It would be nice if they could be boot services only ... then they > disappear naturally, but that would mean the rng would have to > initialize and save in the EFI stub before ExitBootServices, which > doesn't seem practical. That would be nice, but the whole idea is it gets updated by Linux's RNG, so that won't work. `boot|runtime` it is, then. Jason