Bonum Certa Men Certa

Techrights Advises UEFI Forum to Withdraw 'Secure' Boot Support

UEFI logo



Summary: Short synopsis of a long discussion with the UEFI Forum regarding 'secure' boot

We don't always speak to figures of authority in pursuit of reform, but when we do, it is rather productive (pardon the meme). OIN is a good example of this. Last year, UEFI criticism began as a 'feature' of UEFI, namely 'secure' boot, was put to use by Microsoft, which basically misused it for anticompetitive reasons, making it hard to boot GNU/Linux.



"Security was not the main outcome of UEFI 'secure' boot being put in place."The UEFI Forum got in touch with yours truly, setting up an interview for exchange of thoughts and ideas. It was productive because a consensus we reached was that 'secure' or Restricted Boot in UEFI has no purpose (or little purpose) other than to serve or facilitate business models of corporations, at the expense of customers. It is akin to DRM and TiVoization and it is hard to defend the inclusion of this antifeature, for reasons we covered here before . It was a one-hour conversation mostly with the president of the UEFI Forum, who is a technical and humble man. I politely made suggestions for UEFI, focusing on freedom aspects, and there was no lack of subjects to discuss (including patents). After an hour had lapsed we decided to call it a day (it was Friday night and I was already late to meet some friends at a local pub), but the mutual sentiment can be described as amicable. I accepted the invitation hoping it would lead to progress, not friction. The phone conference focused on questions pertaining to UEFI, with clear focus on the negative aspects, i.e. areas of improvement. In it were UEFI spokespersons Mark Doran, UEFI President, and Michael Krau, UEFI Forum’s Industry Communications Working Group (ICWG) Chair. A lady called Christine was there also, but she did not participate in the technical discussion; she had helped set it all up.

To summarise some of the key points, it was agreed that 'secure' boot only gives UEFI Forum a lot of negative publicity. Other issued were raised, but none else got the same amount of coverage, I had not prepared notes, mostly because the goal was to focus on freedom and not to deviate from that. UEFI Forum's President was understanding. He said I was asking the right questions and did acknowledge that some of my concerns were legitimate (the conversation was recorded with consent from them, but it is not for publication).

Security was not the main outcome of UEFI 'secure' boot being put in place. They agreed to some degree. That's why it was productive as a lengthy debate.

Towards the end, emanating from the conversation were the following tips and links, prepared and sent by Christine, who had also been on the conference call. She wrote:

> Thank you for taking the time to speak with us to address your questions > regarding the UEFI Forum. If you have any additional questions or need > information, please don’t hesitate to reach out to me. > > > > For your reference, I’m including a link to an abstract of the > presentation > http://www.linuxtag.org/2013/de/program/freitag-24-mai-2013.html?eventid=6 > referenced today by Mark Doran, President of the UEFI Forum, and > delivered by Matthew Garrett at the Linux Tag conference in Berlin. The > title of Garrett’s presentation is “Making UEFI Secure Boot Work for Linux.” > > > > During the call, Mark also suggested that you might want to view the > repository of information pertaining to UEFI at Tianocore.org > http://sourceforge.net/apps/mediawiki/tianocore/index.php?title=Welcome, > a community site surrounding the open source components of Intel's > implementation of UEFI. > > > > And following are links to the three Intel YouTube videos Mark > referenced about UEFI Secure Boot configuration: > > €· Part 1 http://www.youtube.com/watch?v=eAnlhkbMang - Enabling > & Disabling UEFI Secure Boot. Instructions for setting up a system with > UEFI Secure Boot to dual-boot between Microsoft* Windows* 8 & Ubuntu* > 12.10. > > €· Part 2 http://www.youtube.com/watch?v=dwlbf1VRJ60 -UEFI > dual-boot setup with Microsoft* Windows* 8. Instructions for setting up > a system with UEFI Secure Boot to dual-boot between Microsoft Windows 8 > & Ubuntu 12.10. > > €· Part 3 http://www.youtube.com/watch?v=eAnlhkbMang - UEFI > dual-boot setup with Linux* (Ubuntu* 12.10). Instructions for setting up > a system with UEFI Secure Boot to dual-boot between Microsoft* Windows* > 8 & Ubuntu* 12.10. > > > > Again, thank you for your time, and please let me know if I can provide > you with additional information.


To go along with 'secure' boot is to help endorse what sure has become a threat to booting freedom, not just to choice. The conference did not alter my mind in any way on this topic. The key point, as was made abundantly clear to them, is that 'secure' boot does a major disservice to UEFI by giving it bad reputation -- an inevitability when a convicted monopolist like Microsoft perturbs UEFI for non-technical reasons.

Comments

Recent Techrights' Posts

Links 16/08/2025: "Hey Hi (AI) Data Centers Are Driving Up Electricity Bills for Everyone" and the Case Against Booking.com
Links for the day
 
Links 16/08/2025: Science Besieged, Confidentiality Standards Breached
Links for the day
Links 16/08/2025: Loners and Vacation, Climate Issues
Links for the day
Links 16/08/2025: Chatbots Bad for Kids, Software Patents Apple Battle
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, August 15, 2025
IRC logs for Friday, August 15, 2025
Slopwatch: WebProNews and Google News Promoting Fake Articles About "Linux"
Google News is being flooded by these slopfarms, so when Linux news is being sought online (via Google News) many people will read bots that spew out FUD
Original European Patent Convention (EPC, 1973), Routinely Violated by the European Patent Office, Now in Geminispace
hundreds of thousands of European Patents must be immediately revoked
Gemini Links 16/08/2025: Politics and Alhena 5.2.8
Links for the day
Gemini Links 15/08/2025: Leasehold, Slop Bubble, and Xobaqu
Links for the day
Links 15/08/2025: Flight Attendant Strike, Floods, and Tropical Storms
Links for the day
Links 15/08/2025: German Government Falls Short on Free Software, Russians Breach EU Systems
Links for the day
Microsoft is Still Losing Cyprus
The market share goes down, so share prices go up
Microsoft Accenture is in Trouble
For one thing, its debt doubled in a matter of months
News Will Slow Down and Slop Will Contribute to the Slowdown
In recent years every time there was some holiday or major break the number people who "came back" shrank
Upgrading IRC Network of Techrights
a new version of the daemon we've used since 2021 was released very recently
X.Org is Still Not Dead
Oracle still developing it
"Register Debate Series" About Microsoft in the UK is Controlled by Microsoft (US)
The Register is run by Microsoft "Analysts", so the debate is doomed from the get-go
IBM is a Terrible Model for Red Hat
"Most likely caused by laying off too many people"
Microsoft Problems in Palestinian Territory and Israel
Microsoft stock (share price) goes up when market share goes down
Microsoft is getting ready to cause many employees to resign
Having already laid off many workers earlier this month, it now tries another approach
Slave is Not a Bad Word, We Need to Use It Sometimes
Who does such exclusion of words benefit? What sort of expression will be deemed impermissible and subjected to CoC enforcement?
National Day of Action
"This Friday, August 15th, there is an organized, petition-based, protest of Wells Fargo in major cities across the US," Richard Stallman wrote
Our Gemini Editions Now Contain 100,000+ GemText Pages
Our Gemini Editions aren't small, even if Gemini Protocol is still the 'underdog'
"Maybe the Problem is You"
they probably felt like they had no choice because they really needed this Microsoft money
The Relations Between the United States and Europe Deteriorate, Should Europe Continue to Rely on American Tech Giants?
The shallow notion that made-in-USA software is fairly safe for Europe to rely to is coming to a standstill
Techrights and Tux Machines Running as Usual During Vacations
No interruptions, maybe temporarily slowdowns
GNU OS, Powered by Hurd
Choice is good, as long as choices exist that respect the users' freedom
Gemini Links 15/08/2025: ADHD and "Random Weird Things"
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, August 14, 2025
IRC logs for Thursday, August 14, 2025
"Article 52. PATENTABLE INVENTIONS" in the European Patent Convention
Some time tomorrow we'll have a complete local copy of the EPC
Serial Slopper (SS) Still at It, Still Misusing Plagiarism Tools and Cheatware for Images and Text About "Linux"
All the slopfarms are a very big problem
Reddit Deletes Stuff, But Not for Being False or Misleading
Yet another one of those articles that speak of a man in his 50s as if he's terminally ill
Times of India and India.com Are Clickbait and LLM Slop
Google continues to reward bad actors
The More "Market Share" Microsoft Loses, The Higher the Shares Go
People joke about the same sort of thing in relation to IBM
To OIN, Software Patents Are Not a Problem
Had software patents ceased to exist, OIN too would cease to exist and its staff would be unemployed.
Microsoft's Bankruptcy in Russia is Only the Beginning
Due to politics it mostly makes sense that Windows is being phased out, also in part due to policy changes
Microsoft-Funded Publishers Lied to Us About Vista 10 and Now Advocate Us Owning Nothing
They want you to own nothing, but they also want you to buy a PC on which to become Microsoft's slave and they make it harder if not practically impossible to remove Windows
Articles Promoting and Celebrating Wayland Are LLM Slop
New example (100% slop)
European Patent Office (EPO) Reformation Project
It's a stain on the EU's reputation
The Register MS, Dominated by American Editors, Says UK Should be Run (Digitally) by Microsoft US
The Register MS is sponsored by American money, run by Americans, and its chief editor is a Microsofter from the US
Slopwatch: Google News and Other Slopfarms
Google News is rewarding sites that misuse LLMs and cheat the Web
Gemini Links 14/08/2025: Drought, Climate Experiments, and LLM Slop Considered Detrimental
Links for the day
Links 14/08/2025: Second-hand ThinkPad and Enhanced Surveillance on Chipsets from the United States
Links for the day
Moral Standards From the Masters of Linux
They get hung up on minor language issue and promote this crazy theory that racism will go away if only everyone spoke a little differently (no matter where he or she came from)
Links 14/08/2025: Data Brokers Hiding Opt-Out Pages From Google, "Fight Chat Control"
Links for the day
FSF Infrastructure Under Constant Attack
The disconnect (literally) has had an effect on credibility
Feels Like The Register MS is Trying to Diversify a Bit
If The Register MS goes back to being The Register US (or UK), that will be a nice improvement
Gemini Links 14/08/2025: Reading Journal and LLM Fatigue Revisited
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, August 13, 2025
IRC logs for Wednesday, August 13, 2025