Add Support for Secure-Boot to SCALE

Problem/Justification
Currently TrueNAS-SCALE does not boot with secure-boot being enabled. This is a extra security feature providing protection against things like rootkits.

Impact
Users with secure-boot enabled would be able to enjoy the benefits of the extra security it provides, while users that either do not want to enable it or whose systems do not support secure boot would be unaffected.

User Story
Secure-Boot is becoming more widely used in enterprise environments. Users would simply enable secure-boot in bios there shouldn’t be any extra configuration needed in TrueNAS itself.

Hello,

I rethermaled my unit and somehow I cleared my CMOS.

Anyway, I realised when the CMOS cleared it went back to a default of “Secure Boot Enabled”. I had previously disabled secure boot because everyone said it is not working with secure boot, yet here I am with Secure Boot enabled and it is booting just fine.

What could be happening? Should I disable Secure Boot?

details of my setup in sig block

2 Likes