Description:
With Secure Boot enabled, all OS boot components
(boot loader, kernel, kernel drivers) must be signed by trusted publishers.
Security Center has identified untrusted OS boot components on one or more of
your Linux machines. To protect your machines from potentially malicious
components, add them to your allow list or remove the identified components.
Remediation:
Investigate the untrusted boot components. If they are legitimate, add them
to the allow list. Otherwise, remove them.
Reference:
More detail on the concept of Secure Boot can be
found here: https://docs.microsoft.com/en-us/windows-hardware/design/device-experiences/oem-secure-boot
No comments:
Post a Comment