vriska, thief of light :light2: on Nostr: my (possibly incorrect) understanding from some mailing list posts is that *in ...
my (possibly incorrect) understanding from some mailing list posts is that *in theory* all existing firmware versions will have their keys updated via either Windows Update or fwupd, and new firmware versions will have the new keys baked in, and Microsoft's been working with the fwupd developers to ensure that for the former case LVFS has all the same keys as Windows Update. the problem comes in for installing new OSes on old machines, as well as machines where the manufacturer no longer exists or lost access to their signing keys