PQC secure boot: Implementation for EFI

286 views
Skip to first unread message

Stephan Müller

unread,
Jan 4, 2025, 4:48:04 PM1/4/25
to pqc-forum
Hi,

Secure boot in the not too far future may need to support PQC including PKCS#7
message parsing and X.509 certificate handling. leancrypto offers now support
for being compiled to provide its services in the EFI environment to support
secure boot with ML-DSA or SLH-DSA along with PKCS#7 and X.509 stack-only as
well as heap support.

For details about using leancrypto with EFI, see [1].

Adoptions to other environments with similar constraints as EFI (e.g. not
having any kind of environment like POSIX or similar) should now be straight
forward.

[1] https://leancrypto.org/leancrypto/efi

Ciao
Stephan


Stephan Müller

unread,
Jan 5, 2025, 2:57:44 AM1/5/25
to pqc-forum, Stephan Müller
Am Samstag, 4. Januar 2025, 22:47:54 Mitteleuropäische Normalzeit schrieb
'Stephan Müller' via pqc-forum:

Hi,
The web site was slightly updated, the link now is

https://leancrypto.org/leancrypto/build_instructions/efi

Ciao
Stephan


Reply all
Reply to author
Forward
0 new messages