OVMF build of EDK2 with test keys
Build of OVMF firmware with enrolled test keys for use in snapd CI.
This snap contains:
- fw/
- OVMF_CODE.fd: Firmware
- OVMF_VARS.fd: Non volatile memory for setup mode (secure boot is disabled but can be enabled).
- OVMF_VARS.enrolled.fd. Non volatile memory with test keys enrolled.
- secboot/
- PK.{key,crt}: platform key
- KEK.{key,crt}: key exchange key
- DB.{key,crt}: main key
The keys that are enrolled are:
- The PK, KEK and DB from secboot/
- The deprecated snakeoil key used to sign development builds
- The kernel keys for edge channels
- The Microsoft MicCorKEK and MicCorUEFCA keys
- An initial dbx which contains just a throw-away key