GetSecureBoot Documentation Request: Hyper-V

オープン
#370 コメント 7 件 リアクション 0 件 担当者 1 名 GitHub で見る

@mebersol がすでに取り組んでいます。

2026年5月18日 から。

評価

この issue はまだ評価されていません。

説明

state:backlog

I think admins (myself included) have a lot of questions about the SB updates on Hyper-V and a new document specific to it is warranted (I think under https://aka.ms/getsecureboot would make sense to strengthen the already quality documentation there).

Some things to document (maybe a FAQ format) include:

  1. March CU requirements, what changed.
  2. Hotpatch vs coldpatch CU
  3. Version compatibility for HV hosts supporting KEK updates (Windows Server 2012R2 I think with ESU entitlements?)
  4. Gen 1 vs Gen 2 security posture
  5. Compare + contrast the "features" of the three secure boot templates
  6. Impacts of VMs with TPMs (and shielding)
  7. Guest operating systems supported (in theory it shouldn't matter, even linux VMs updating with fwupd should work....)
  8. Why is the PK expired?
  9. Do VMs created after the March LCU is applied automatically include the 2023 certs? Or which version/patch combinations of HV VMs include all 2023 certs/keys "out of the box"?
主要言語
Python
スター
289
フォーク
89
平均マージ
3日 10時間
マージ済み PR(30日)
7

コントリビューションガイド

コントリビューションガイドを開く

はじめの一歩

  1. issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
  2. 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
  3. リポジトリをフォークし、ブランチを切って変更します。
  4. issue 番号を参照したプルリクエストを送ります。

microsoft/secureboot_objects のほかの issue

microsoft/secureboot_objects の issue をすべて見る

似ている issue

Python の issue をもっと見る

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。