This shows you the differences between two versions of the page.
Both sides previous revision Previous revision | Next revision Both sides next revision | ||
cmd:imgtrust [2012/03/22 14:22] mcb30 |
cmd:imgtrust [2012/03/22 14:31] mcb30 |
||
---|---|---|---|
Line 62: | Line 62: | ||
There is no way to use trusted images without using an embedded script.((The embedded script is required because there is no standard way to obtain the signature for an image corresponding to the DHCP [[:cfg:filename]].)) | There is no way to use trusted images without using an embedded script.((The embedded script is required because there is no standard way to obtain the signature for an image corresponding to the DHCP [[:cfg:filename]].)) | ||
+ | |||
+ | The ''imgtrust'' command only prevents the direct execution of untrusted images by iPXE. An untrusted image may still be used as, for example, the initrd for a trusted kernel image. You can use the ''[[:cmd:imgverify]]'' command to explicitly verify any such additional images. | ||