平安启动 dnf私服只能用虚拟机玩吗

平安启动 Secure boot

本文内容

平安启动是电脑行业的成员开辟的一项平安规范,匡助确保装备仅利用原始装备制造商 (OEM) 信赖的软件启动。Secure boot is a security standard developed by members of the PC industry to help make sure that a device boots using only software that is trusted by the Original Equipment Manufacturer (OEM). 当电脑启动时,固件会搜检每一个启动软件片断的签名,包孕 UEFI 固件驱动程序(也称为选项 ROM)、EFI 应用程序和操作系统。When the PC starts, the firmware checks the signature of each piece of boot software, including UEFI firmware drivers (also known as Option ROMs), EFI applications, and the operating system. 若是签名无效,则电脑将会启动,而固件会将控制权转递给操作系统。If the signatures are valid, the PC boots, and the firmware gives control to the operating system.

6. 点窜完以后点击PVFTool1.8.1菜单栏的的”文件->封装PVF文件”,对点窜的pvf文件停止封装。

在布置电脑之前,OEM 需在该电脑上存储平安启动数据库。Before the PC is deployed, you as the OEM store the Secure Boot databases on the PC. 这包孕签名数据库 (db)、撤消的签名数据库 (dbx) 和密钥注册密钥数据库 (KEK)。This includes the signature database (db), revoked signatures database (dbx), and Key Enrollment Key database (KEK). 在制作时,这些数据库存储在固件的非易失性 RAM (NV-RAM) 中。These databases are stored on the firmware nonvolatile RAM (NV-RAM) at manufacturing time.

点赞

发表评论

您的电子邮箱地址不会被公开。 必填项已用*标注