Page MenuHomePhabricator

Full UEFI support
Open, NormalPublicFEATURE REQUEST

Description

We need to add uefi support
this includes boot from uefi and secureboot

Details

Difficulty level
Unknown (require assessment)
Version
-
Why the issue appeared?
Will be filled on close
syncer created this task.Sep 23 2018, 2:08 PM
c-po added a subscriber: c-po.Sep 23 2018, 5:59 PM

What happens on Hypervisors not supporting UEFI or older Hardware Platforms without UEFI?

I never understood why this is so common as I see not mich benefit.

Most of current distros can boot on legacy systems (e.g. with BIOS) and also UEFI
since many new server platforms switched to uefi we need to cover that.
Most of them can be switched from UEFI to legacy BIOS, however there are devices that not support such change

xrobau added a subscriber: xrobau.EditedSep 23 2018, 9:18 PM

UEFI is not difficult.

SecureBoot *is* difficult, as we're compiling our own kernel, and someone needs to get some signing keys blessed by Microsoft to sign the kernel and modules so they can be loaded by secureboot.

syncer triaged this task as High priority.Sep 25 2018, 1:54 PM
syncer assigned this task to UnicronNL.

I don't think we should support restricted boot. As per MS's own specification, all x86 boards should allow the user to disable it, and to my knowledge, they all do.

@dmbaturin I think you missing purpose, in some environments (e.g. with high-security requirements ) it may be required
if we can we should support it

syncer changed the status of subtask T859: boot from UEFI from Open to In progress.Oct 29 2018, 9:52 AM
syncer renamed this task from UEFI support to Full UEFI support.
syncer lowered the priority of this task from High to Normal.Nov 2 2018, 7:31 PM