• cley_faye@lemmy.world
    link
    fedilink
    arrow-up
    10
    ·
    11 months ago
    • Disable secureboot
    • Things just work

    And in the end you just remove the need for a physical attacker to use whatever vulnerability there is in your EFI implementation anyway.

    • 0x4E4F@sh.itjust.worksOP
      link
      fedilink
      English
      arrow-up
      1
      ·
      11 months ago

      Things just work

      Yeah, if you have only one OS. Or when you have more than one, but the other one doesn’t constantly try to fuck up the first one.

      MBR is easy in this regard. Windows never touches the MBR magic, even when updating, so it’s all good. GRUB keeps the MBR in check, Windows doesn’t meddle, everything’s hunky dory in MBR boot land.