Gentoo Forums
Gentoo Forums
Gentoo Forums
Quick Search: in
Secure Boot Key install failing in setup mode
View unanswered posts
View posts from last 24 hours

 
Reply to topic    Gentoo Forums Forum Index Kernel & Hardware
View previous topic :: View next topic  
Author Message
Wadewilson
n00b
n00b


Joined: 09 Nov 2022
Posts: 57

PostPosted: Sun Mar 30, 2025 7:29 am    Post subject: Secure Boot Key install failing in setup mode Reply with quote

I have been trying to setup Secure Boot in gentoo, following the wiki article https://wiki.gentoo.org/wiki/Secure_Boot/GRUB. After generating and signing the keys, I change the Secure Boot platform to setup mode to clear existing keys and install the newly created keys. When running
Quote:
efi-readvar
I get the following output

Code:

Variable PK has no entries
Variable KEK has no entries
Variable db has no entries
Variable dbx, length 76
dbx: List 0, type SHA256
    Signature 0, size 48, owner 00000000-0000-0000-0000-000000000000
        Hash:0000000000000000000000000000000000000000000000000000000000000000
Variable MokList has no entries


I am unable to remove the DBX key because of which I cannot install the newly created keys.
Any help removing or clearing the DBX key? I tried multiple times in the UEFI firmware settings, but DBX key just does not get deleted.

Where I can find this DBX key? I found a tool called `mokutil` that can help remove this key.
Back to top
View user's profile Send private message
pietinger
Moderator
Moderator


Joined: 17 Oct 2006
Posts: 5535
Location: Bavaria

PostPosted: Sun Mar 30, 2025 10:20 am    Post subject: Reply with quote

Are you able to delete your old keys if you go manually into the UEFI(-BIOS) ?

(I did so because efi-updatevar did not work on my old Gigabyte board -> number 3 of:
https://forums.gentoo.org/viewtopic-p-8492354.html#8492354 )
_________________
https://wiki.gentoo.org/wiki/User:Pietinger
Back to top
View user's profile Send private message
Display posts from previous:   
Reply to topic    Gentoo Forums Forum Index Kernel & Hardware All times are GMT
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum