From mboxrd@z Thu Jan 1 00:00:00 1970 From: Marius Bakke Subject: bug#35380: disk-image fails to install efi grub Date: Fri, 03 May 2019 17:10:29 +0200 Message-ID: <8736lvfuai.fsf@fastmail.com> References: <0935773a-1e21-9576-d569-f97e79ed13dd@s.rendaw.me> <87a7gesccy.fsf@gnu.org> <323096f6-9382-c3fd-1dc5-486c4737b12f@s.rendaw.me> <87d0l2exld.fsf@gnu.org> <875zqsvqcb.fsf@gnu.org> <87d0l0fqlq.fsf@fastmail.com> <2aac4477-7895-4dbe-0a54-24ff69d17de7@s.rendaw.me> Mime-Version: 1.0 Content-Type: multipart/signed; boundary="=-=-="; micalg=pgp-sha512; protocol="application/pgp-signature" Return-path: Received: from eggs.gnu.org ([209.51.188.92]:56692) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1hMZq3-0007EI-D9 for bug-guix@gnu.org; Fri, 03 May 2019 11:11:04 -0400 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1hMZq2-0006za-A9 for bug-guix@gnu.org; Fri, 03 May 2019 11:11:03 -0400 Received: from debbugs.gnu.org ([209.51.188.43]:35771) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_128_CBC_SHA1:16) (Exim 4.71) (envelope-from ) id 1hMZq2-0006z4-7F for bug-guix@gnu.org; Fri, 03 May 2019 11:11:02 -0400 Received: from Debian-debbugs by debbugs.gnu.org with local (Exim 4.84_2) (envelope-from ) id 1hMZq1-0002sM-P0 for bug-guix@gnu.org; Fri, 03 May 2019 11:11:01 -0400 Sender: "Debbugs-submit" Resent-Message-ID: In-Reply-To: <2aac4477-7895-4dbe-0a54-24ff69d17de7@s.rendaw.me> List-Id: Bug reports for GNU Guix List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: bug-guix-bounces+gcggb-bug-guix=m.gmane.org@gnu.org Sender: "bug-Guix" To: rendaw <7e9wc56emjakcm@s.rendaw.me>, Ludovic =?UTF-8?Q?Court=C3=A8s?= , =?UTF-8?Q?G=C3=A1bor?= Boskovits Cc: 35380-done@debbugs.gnu.org --=-=-= Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: quoted-printable rendaw <7e9wc56emjakcm@s.rendaw.me> writes: > On 5/3/19 7:17 AM, Marius Bakke wrote: >> It would be great to have UEFI support in the record, >> mainly for system tests, but I doubt that is what rendaw is after :-) > > Yeah, ideally I'd like secure boot from the flashed media but failing > that I'd at least like to be moving closer to it (boot without having to > enable legacy boot). I see. Do you know what is needed to enable secure boot with grub-efi? >> That means you can't just take an operating system hard drive from one >> EFI system to another. > > I'm absolutely not an expert on UEFI, and it's likely I'm > misinterpreting some of the more subtle points you wrote, but do you > have more information on the NVRAM restriction?=C2=A0 I've found a fair > amount of references to making secure boot and UEFI capable media (USB > and CD) around the web so I'm surprised it's not possible to make a > portable UEFI image.=C2=A0 Wouldn't that make it difficult to install UEFI > bootloaders on blank systems? To clarify: "grub-efi" will not work to make a portable UEFI installation. For that you need "grub-mkstandalone" and place the resulting executable in "/efi/boot/bootx64.efi" on your EFI System Partition, like Guix does for disk images: . It would be nice to make this procedure more generally accessible. Perhaps create a (grub-standalone-bootloader ...) procedure, similar to (grub-efi-bootloader)? Then it can be used to create portable EFI systems straight from your config.scm. Would you like to give it a go? --=-=-= Content-Type: application/pgp-signature; name="signature.asc" -----BEGIN PGP SIGNATURE----- iQEzBAEBCgAdFiEEu7At3yzq9qgNHeZDoqBt8qM6VPoFAlzMWeUACgkQoqBt8qM6 VPpongf+LbIJGoXuGuePDVA9qUN7TnLxcPguAPp47OJn+yM453x6Jx7OVaXMWZro /F21ZvQw9QVALyuFDAT3g9fYCIA66DkFKNgpmL1vzZoTQLSdDPTFJk5/Ntv/3NUN Hek3o/w14u6Vwy4dyXtpIUSq45M8jycfYLcfikdrf2UZA2fA7MWPjpJSdtSXRjIv ILK8fukTshtl0uPKSIDfluXX6xyyYN2paYFWPBcwhJYthxqbI57ARqTWMLZl+kWH UpHqdFSbrwyfuSm3jhL+juQpsX2tWrOPcgxwL98RXiPfMhtYNdUcXjCbPj4oJN67 ZOZuUX5mQoTy/cSnLEYgStGr2S6DIg== =N6dQ -----END PGP SIGNATURE----- --=-=-=--