Topic: Grub secure boot with GPG

Hi all . I would appreciate your advice. I'm trying to sign the kernel and initramfs, I can't figure out where to put these lines for it to work?

trust (cbfsdisk)/boot.key
set check_signatures=enforce

https://libreboot.org/docs/linux/grub_h … l#gpg-keys

Grub secure boot with GPG

Maybe someone understands better what was meant)) What specific menu are we talking about, maybe menuentry?
And what does before mean? Before the grub password or after the password, etc.


Grub secure boot with GPG

I tested and the solution is here https://forums.hyperbola.info/viewtopic.php?id=1010