Univention Bugzilla – Bug 44214
UEFI boot does not work
Last modified: 2017-04-04 18:29:06 CEST
I've installed UCS 4.2 on our UEFI test hardware. The installation works as expected. Afterwards, the first boot failed with the following error message: error: /vmlinuz-4.9.0-ucs103-amd64.efi.signed has invalid signature. error: you need to load the kernel first
r78618 | Bug #44214 grub: Depends directly on correct GRUB EFI package Package: univention-grub Version: 10.0.0-2A~4.2.0.201704031431 Branch: ucs_4.2-0 ucs_4.2-0-20170403-143414-dvd-amd64.iso r17450 | Package: grub-installer Version: 1.117+deb8u1A~4.2.0.201704031545 Branch: ucs_4.2-0
r17451 | Bug #44214 cd: merge wheey changes to jessie for UEFI-SB Package: debian-cd Version: 3.1.17A~4.2.0.201704031731 Branch: ucs_4.2-0
(In reply to Philipp Hahn from comment #2) > r78618 | Bug #44214 grub: Depends directly on correct GRUB EFI package > > Package: univention-grub > Version: 10.0.0-2A~4.2.0.201704031431 > Branch: ucs_4.2-0 > > ucs_4.2-0-20170403-143414-dvd-amd64.iso > > r17450 | > > Package: grub-installer > Version: 1.117+deb8u1A~4.2.0.201704031545 > Branch: ucs_4.2-0 This works correctly with UEFI and UEFI&Secureboot
(In reply to Philipp Hahn from comment #3) > r17451 | Bug #44214 cd: merge wheey changes to jessie for UEFI-SB > > Package: debian-cd > Version: 3.1.17A~4.2.0.201704031731 > Branch: ucs_4.2-0 This boots with Secureboot but then hangs…
r17452 | Bug #44214: don't strip modules - breaks UEFI-SB Quoting <https://www.kernel.org/doc/Documentation/module-signing.txt>: > Signed modules are BRITTLE as the signature is outside of the defined ELF > container. Thus they MAY NOT be stripped once the signature is computed and > attached. Note the entire module is the signed payload, including any and all > debug information present at the time of signing. QA: gzip -dc < /mnt/build-storage/buildsystem/apt/ucs_4.2-0/dists/ucs420/main/installer-amd64/current/images/cdrom/initrd.gz | cpio -t -v | grep uhci-hcd.ko -rw-r--r-- 1 root root 71398 Mar 9 18:33 lib/modules/4.9.0-ucs103-amd64/kernel/drivers/usb/host/uhci-hcd.ko QA: OK Debian-Installer QA: OK Installed UCS system QA: OK modprobe
Excellent!
r17453 | Bug #44214 cd: Fix i386-UEFI DVD build Package: debian-cd Version: 3.1.17A~4.2.0.201704041453 Branch: ucs_4.2-0
UCS 4.2 has been released: https://docs.software-univention.de/release-notes-4.2-0-en.html https://docs.software-univention.de/release-notes-4.2-0-de.html If this error occurs again, please use "Clone This Bug".