{"id":10649,"date":"2024-01-17T12:08:02","date_gmt":"2024-01-17T17:08:02","guid":{"rendered":"https:\/\/www.rushworth.us\/lisa\/?p=10649"},"modified":"2024-02-12T18:46:08","modified_gmt":"2024-02-12T23:46:08","slug":"updating-fedora-boots-to-grub","status":"publish","type":"post","link":"https:\/\/www.rushworth.us\/lisa\/?p=10649","title":{"rendered":"Updating Fedora &#8212; System Boots to Grub Error After Update"},"content":{"rendered":"<p>If you film the boot sequence and look frame by frame, you&#8217;ll see that it <em>very briefly<\/em> flashes a TPM error<\/p>\n<p>error: ..\/..\/grub-core\/commands\/efi\/tpm.c:150:unknown TPM error.<\/p>\n<p>&nbsp;<\/p>\n<p><a href=\"https:\/\/www.rushworth.us\/lisa\/wp-content\/uploads\/2024\/01\/VID_20240117_110328_exported_11878.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-10651\" src=\"https:\/\/www.rushworth.us\/lisa\/wp-content\/uploads\/2024\/01\/VID_20240117_110328_exported_11878.jpg\" alt=\"\" width=\"991\" height=\"355\" srcset=\"https:\/\/www.rushworth.us\/lisa\/wp-content\/uploads\/2024\/01\/VID_20240117_110328_exported_11878.jpg 991w, https:\/\/www.rushworth.us\/lisa\/wp-content\/uploads\/2024\/01\/VID_20240117_110328_exported_11878-300x107.jpg 300w, https:\/\/www.rushworth.us\/lisa\/wp-content\/uploads\/2024\/01\/VID_20240117_110328_exported_11878-768x275.jpg 768w, https:\/\/www.rushworth.us\/lisa\/wp-content\/uploads\/2024\/01\/VID_20240117_110328_exported_11878-750x269.jpg 750w\" sizes=\"auto, (max-width: 991px) 100vw, 991px\" \/><\/a><\/p>\n<p>From what I&#8217;ve been able to glean, this secure boot stuff works off of signatures. Microsoft has signatures in BIOS. Everyone else kind of inserts their keys on the fly &#8230; so you can run out of space to save these keys and be unable to boot. To work around this, every time an update gets us over the limit, we go into the secure boot DBX management menu and reset the &#8220;Forbidden Signatures&#8221; from factory default. This is 13 keys instead of 373, and the OS is able to do it&#8217;s &#8220;thing&#8221; and boot.<\/p>\n<p>&nbsp;<\/p>\n<p><a href=\"https:\/\/www.rushworth.us\/lisa\/wp-content\/uploads\/2024\/01\/IMG_20240117_111314.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-10650\" src=\"https:\/\/www.rushworth.us\/lisa\/wp-content\/uploads\/2024\/01\/IMG_20240117_111314.jpg\" alt=\"\" width=\"768\" height=\"1024\" srcset=\"https:\/\/www.rushworth.us\/lisa\/wp-content\/uploads\/2024\/01\/IMG_20240117_111314.jpg 768w, https:\/\/www.rushworth.us\/lisa\/wp-content\/uploads\/2024\/01\/IMG_20240117_111314-225x300.jpg 225w, https:\/\/www.rushworth.us\/lisa\/wp-content\/uploads\/2024\/01\/IMG_20240117_111314-750x1000.jpg 750w\" sizes=\"auto, (max-width: 768px) 100vw, 768px\" \/><\/a><\/p>\n<p>And I&#8217;m actually writing this down this time because I had spent a lot of time researching this <em>last<\/em> time Scott&#8217;s laptop failed to boot and dumped out to a grub menu. This time, I kinda know what we did and why but lost a lot of the details.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>If you film the boot sequence and look frame by frame, you&#8217;ll see that it very briefly flashes a TPM error error: ..\/..\/grub-core\/commands\/efi\/tpm.c:150:unknown TPM error. &nbsp; From what I&#8217;ve been able to glean, this secure boot stuff works off of signatures. Microsoft has signatures in BIOS. Everyone else kind of inserts their keys on the &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[30],"tags":[47,294,1969,1968],"class_list":["post-10649","post","type-post","status-publish","format-standard","hentry","category-system-administration","tag-fedora","tag-linux","tag-secure-boot","tag-uefi"],"_links":{"self":[{"href":"https:\/\/www.rushworth.us\/lisa\/index.php?rest_route=\/wp\/v2\/posts\/10649","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.rushworth.us\/lisa\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.rushworth.us\/lisa\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.rushworth.us\/lisa\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.rushworth.us\/lisa\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=10649"}],"version-history":[{"count":2,"href":"https:\/\/www.rushworth.us\/lisa\/index.php?rest_route=\/wp\/v2\/posts\/10649\/revisions"}],"predecessor-version":[{"id":10688,"href":"https:\/\/www.rushworth.us\/lisa\/index.php?rest_route=\/wp\/v2\/posts\/10649\/revisions\/10688"}],"wp:attachment":[{"href":"https:\/\/www.rushworth.us\/lisa\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=10649"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.rushworth.us\/lisa\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=10649"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.rushworth.us\/lisa\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=10649"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}