SecureBootRecovery: Add Logic to detect 2023 Windows Production CA
Description
This change adds the ability for the SecureBootRecovery application to detect the existence of the 2023 Windows Production CA and prevent updating the DB if found.
- [X] Impacts functionality?
- Functionality - Prevents updating the DB if the existence of the 2023 Windows CA is found
- [ ] Impacts security?
- [ ] Breaking change?
- [ ] Includes tests?
- [ ] Includes documentation?
How This Was Tested
This application was self signed on a production system using custom Secure Boot keystore.
This was tested with:
No Secure boot Certificates Only the 2011 Certificates All Certificates (2011 and 2023)
Integration Instructions
N/A
Codecov Report
All modified and coverable lines are covered by tests :white_check_mark:
Comparison is base (
ba26b5d) 12.13% compared to head (18e1aa3) 12.13%.
Additional details and impacted files
@@ Coverage Diff @@
## release/202302 #432 +/- ##
===============================================
Coverage 12.13% 12.13%
===============================================
Files 110 110
Lines 19022 19022
Branches 1363 1363
===============================================
Hits 2308 2308
Misses 16697 16697
Partials 17 17
| Flag | Coverage Δ | |
|---|---|---|
| HidPkg | 2.80% <ø> (ø) |
|
| MfciPkg | 38.25% <ø> (ø) |
|
| MsCorePkg | 1.43% <ø> (ø) |
|
| MsWheaPkg | 7.17% <ø> (ø) |
|
| XmlSupportPkg | 25.41% <ø> (ø) |
Flags with carried forward coverage won't be shown. Click here to find out more.
:umbrella: View full report in Codecov by Sentry.
:loudspeaker: Have feedback on the report? Share it here.
This PR has been automatically marked as stale because it has not had activity in 60 days. It will be closed if no further activity occurs within 7 days. Thank you for your contributions.
This pull request has been automatically been closed because it did not have any activity in 60 days and no follow up within 7 days after being marked stale. Thank you for your contributions.