module.sig_enforce
[KNL] When CONFIG_MODULE_SIG is set, this means that
modules without (valid) signatures will fail to load.
**Note that if CONFIG_MODULE_SIG_FORCE is set, that
is always true, so this option does nothing.**- Feed Queries
- All Stories
- Search
- Feed Search
- Transactions
- Transaction Logs
Oct 14 2024
will you add podman exporter as well?
Oct 13 2024
It seems the bug even if configuration applied in one commit:
set interfaces ethernet eth1 vif 21 set interfaces ethernet eth1 vif 22 set interfaces bridge br1 member interface eth1.21 isolated set interfaces bridge br1 member interface eth1.22 isolated commit
check:
vyos@r1# bridge --json -d link | jq '.[] | {ifname, isolated}'
{
"ifname": "eth1.21",
"isolated": false
}
{
"ifname": "eth1.22",
"isolated": false
}Does this also mean that we can no longer use unsigned drivers with non EFI systems? I can't at the moment. It would be nice if we could choose to use the pre 6.6.52 behaviour if we want to.
I have also signed my Realtek driver with the same cert but that did not work. Perhaps we could pick that back up over on T6713
The rolling images are currently not yet secure boot signed. We are in the design and validation how we can to this from a CI/CD perspective in a secure way.
I have installed the latest rolling release and upon reboot I am getting:
Oct 12 2024
That's actually an interesting idea to force config commit messages if archive option is set to git
Hi c-po
For those keen to test secure boot support please see https://docs.vyos.io/en/latest/installation/secure-boot.html