mu_plus icon indicating copy to clipboard operation
mu_plus copied to clipboard

SecureBootRecovery: Add Logic to detect 2023 Windows Production CA

Open Flickdm opened this issue 2 years ago • 1 comments

Description

This change adds the ability for the SecureBootRecovery application to detect the existence of the 2023 Windows Production CA and prevent updating the DB if found.

  • [X] Impacts functionality?
    • Functionality - Prevents updating the DB if the existence of the 2023 Windows CA is found
  • [ ] Impacts security?
  • [ ] Breaking change?
  • [ ] Includes tests?
  • [ ] Includes documentation?

How This Was Tested

This application was self signed on a production system using custom Secure Boot keystore.

This was tested with:

No Secure boot Certificates Only the 2011 Certificates All Certificates (2011 and 2023)

Integration Instructions

N/A

Flickdm avatar Feb 06 '24 07:02 Flickdm

Codecov Report

All modified and coverable lines are covered by tests :white_check_mark:

Comparison is base (ba26b5d) 12.13% compared to head (18e1aa3) 12.13%.

Additional details and impacted files
@@               Coverage Diff               @@
##           release/202302     #432   +/-   ##
===============================================
  Coverage           12.13%   12.13%           
===============================================
  Files                 110      110           
  Lines               19022    19022           
  Branches             1363     1363           
===============================================
  Hits                 2308     2308           
  Misses              16697    16697           
  Partials               17       17           
Flag Coverage Δ
HidPkg 2.80% <ø> (ø)
MfciPkg 38.25% <ø> (ø)
MsCorePkg 1.43% <ø> (ø)
MsWheaPkg 7.17% <ø> (ø)
XmlSupportPkg 25.41% <ø> (ø)

Flags with carried forward coverage won't be shown. Click here to find out more.

:umbrella: View full report in Codecov by Sentry.
:loudspeaker: Have feedback on the report? Share it here.

codecov-commenter avatar Feb 09 '24 20:02 codecov-commenter

This PR has been automatically marked as stale because it has not had activity in 60 days. It will be closed if no further activity occurs within 7 days. Thank you for your contributions.

github-actions[bot] avatar Apr 09 '24 23:04 github-actions[bot]

This pull request has been automatically been closed because it did not have any activity in 60 days and no follow up within 7 days after being marked stale. Thank you for your contributions.

github-actions[bot] avatar Apr 17 '24 23:04 github-actions[bot]