fix: Disable secure boot by default
This commit is contained in:
parent
c3a7345688
commit
e34d166aaa
1 changed files with 8 additions and 5 deletions
13
src/boot.sh
13
src/boot.sh
|
|
@ -5,29 +5,32 @@ set -Eeuo pipefail
|
||||||
: "${BIOS:=""}" # Bios file
|
: "${BIOS:=""}" # Bios file
|
||||||
|
|
||||||
BOOT_OPTS=""
|
BOOT_OPTS=""
|
||||||
|
SECURE=",secure=off"
|
||||||
DIR="/usr/share/qemu"
|
DIR="/usr/share/qemu"
|
||||||
|
|
||||||
case "${BOOT_MODE,,}" in
|
case "${BOOT_MODE,,}" in
|
||||||
uefi)
|
uefi)
|
||||||
ROM="AAVMF_CODE.fd"
|
ROM="AAVMF_CODE.no-secboot.fd"
|
||||||
VARS="AAVMF_VARS.fd"
|
VARS="AAVMF_VARS.fd"
|
||||||
;;
|
;;
|
||||||
secure)
|
secure)
|
||||||
ROM="AAVMF_CODE.fd"
|
SECURE=",secure=on"
|
||||||
|
ROM="AAVMF_CODE.secboot.fd"
|
||||||
VARS="AAVMF_VARS.fd"
|
VARS="AAVMF_VARS.fd"
|
||||||
;;
|
;;
|
||||||
windows)
|
windows)
|
||||||
ROM="AAVMF_CODE.ms.fd"
|
ROM="AAVMF_CODE.no-secboot.fd"
|
||||||
VARS="AAVMF_VARS.ms.fd"
|
VARS="AAVMF_VARS.fd"
|
||||||
;;
|
;;
|
||||||
windows_secure)
|
windows_secure)
|
||||||
|
SECURE=",secure=on"
|
||||||
ROM="AAVMF_CODE.ms.fd"
|
ROM="AAVMF_CODE.ms.fd"
|
||||||
VARS="AAVMF_VARS.ms.fd"
|
VARS="AAVMF_VARS.ms.fd"
|
||||||
;;
|
;;
|
||||||
*)
|
*)
|
||||||
info "Unknown boot mode '${BOOT_MODE}', defaulting to 'uefi'"
|
info "Unknown boot mode '${BOOT_MODE}', defaulting to 'uefi'"
|
||||||
BOOT_MODE="uefi"
|
BOOT_MODE="uefi"
|
||||||
ROM="AAVMF_CODE.fd"
|
ROM="AAVMF_CODE.no-secboot.fd"
|
||||||
VARS="AAVMF_VARS.fd"
|
VARS="AAVMF_VARS.fd"
|
||||||
;;
|
;;
|
||||||
esac
|
esac
|
||||||
|
|
|
||||||
Loading…
Reference in a new issue