1*4882a593Smuzhiyunconfig BR2_TARGET_SHIM 2*4882a593Smuzhiyun bool "shim" 3*4882a593Smuzhiyun # it includes gnu-efi 4*4882a593Smuzhiyun depends on BR2_PACKAGE_GNU_EFI_ARCH_SUPPORTS 5*4882a593Smuzhiyun help 6*4882a593Smuzhiyun Boot loader to chain-load signed boot loaders under Secure 7*4882a593Smuzhiyun Boot. 8*4882a593Smuzhiyun 9*4882a593Smuzhiyun This package provides a minimalist boot loader which allows 10*4882a593Smuzhiyun verifying signatures of other UEFI binaries against either 11*4882a593Smuzhiyun the Secure Boot DB/DBX or against a built-in signature 12*4882a593Smuzhiyun database. Its purpose is to allow a small, 13*4882a593Smuzhiyun infrequently-changing binary to be signed by the UEFI CA, 14*4882a593Smuzhiyun while allowing an OS distributor to revision their main 15*4882a593Smuzhiyun bootloader independently of the CA. 16*4882a593Smuzhiyun 17*4882a593Smuzhiyun https://github.com/rhboot/shim 18