Barry and team, thank you for your work. I saw the new release and wanted to give it a try.
-I downloaded and put it on to a usb drive. Works fine on a laptop, where secure boot is enabled and legacy usb mode is also enabled.
-Does not work on another laptop (Office laptop) where secure boot is enabled, usb boot is enabled. This is Dell latitude 5420. (It does not have legacy usb mode as I see)
-When I try to boot boot using usb disk as follows. (Again cant boot through usb using selecting boot device by doing F12 as BIOS has admin pass!! Bloody office laptop!! Too many restrctions!)
-Boot into Windows 11
-Under setting, system, recovery, advanced startup (it restarts)
- I get an option to boot using usb disk. Usb disk is listed.
- I try booting usb and get following error.
Operating system loader has no signature. Incompatible with secure boot. All bootable devices failed secure boto verification"
I get only one option after this - shutdown.
After reading a lot of posts, this is what I understand. Correct me.
1. Secure boot tries to validate limine boot loader and see that it has no signature.
2. I see log files in /EFI/Boot directory and it points to loading stopped."
3. Limine can be combined with shim to address this. How to do it, cant get this information.
4. Any other boot loader that I can use which has signature and can be verified by secure boot? (Boot loader that can be used with easy os.)
5. Seems, shim can be used-how, not getting much information on it.
6. Some limine posts talk about using shim. IT was as follows. But no details/steps how to get this done.
Limine provides a way to modify its own EFI executable to bake in the BLAKE2B checksum of the config file itself. The EFI executable gets then enrolled or otherwise verified by the Secure Boot loader through, eg., the shim project. This prevents modifications being done to the config file (and in turn the checksums contained there) from going unnoticed.
Limine can be booted with secure boot using shim. This will also allow one to enroll the BLAKE2B hash of the Limine config file into the Limine EFI executable image itself for verification purposes. For more information see the limine enroll-config program and the philosophy.
Any help will be appreciated. Stuck with this thing for over 3 days now.
Thank you all.