[Secure Boot KEK Update] Microsoft PK-Signed KEK Update#399
Merged
Flickdm merged 1 commit intomicrosoft:mainfrom Apr 17, 2026
Merged
[Secure Boot KEK Update] Microsoft PK-Signed KEK Update#399Flickdm merged 1 commit intomicrosoft:mainfrom
Flickdm merged 1 commit intomicrosoft:mainfrom
Conversation
apop5
approved these changes
Apr 16, 2026
Javagedes
approved these changes
Apr 17, 2026
|
Mirrored to the LVFS as https://fwupd.org/lvfs/firmware/133107/ |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
OEM Certificate Submission
OEM Name: Microsoft
Contact Email: sbkeyoem@microsoft.com
Certificate Details
The expired certificate is not a problem for firmware.
Testing Completed
Security Review
Additional Notes
When this file was originally created, somehow it generated an invalid signature and would fail when applied.
This was corrected in Windows Update. However, I am publishing that change here to reflect that change.
There were additional changes required to support PK-Signed KEK updates for
HyperV that were a part of the March 3B release.