On Tue, Apr 3, 2018 at 9:56 AM, Luis R. Rodriguez <mcgrof@xxxxxxxxxx> wrote: > The biggest thing which has changed since then is that we decided to *not* > support or streamline generic firmware signing (non-IMA) for now for a few > reasons [0] [1] which are important to re-iterate as these are easy to forget, > and AFAICT not documented anywhere. And the URLs... [0] https://lkml.kernel.org/r/20171204195155.GU729@xxxxxxxxxxxxx [1] https://lkml.kernel.org/r/20171207153209.5da771a9@alans-desktop Luis