From 802391f1fec39396531267e1dc682de29b001133 Mon Sep 17 00:00:00 2001 From: Christian Walter Date: Tue, 7 Jul 2020 15:24:38 +0200 Subject: [PATCH] UefiPayloadPkg/SecureBootEnrollDefaultKeys: Make SecureBoot configurable Signed-off-by: Christian Walter --- .../SecureBootEnrollDefaultKeys/SecureBootSetup.c | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/UefiPayloadPkg/SecureBootEnrollDefaultKeys/SecureBootSetup.c b/UefiPayloadPkg/SecureBootEnrollDefaultKeys/SecureBootSetup.c index 8741780899..142ac01e06 100644 --- a/UefiPayloadPkg/SecureBootEnrollDefaultKeys/SecureBootSetup.c +++ b/UefiPayloadPkg/SecureBootEnrollDefaultKeys/SecureBootSetup.c @@ -460,6 +460,12 @@ InstallSecureBootHook ( DEBUG ((EFI_D_ERROR, "SecureBootSetup: already in User Mode\n")); return; } + + if (Settings.SecureBootEnable != SECURE_BOOT_MODE_ENABLE) { + DEBUG ((EFI_D_ERROR, "SecureBootSetup: SecureBootEnable is disabled.\n")); + return; + } + PrintSettings (&Settings); if (Settings.CustomMode != CUSTOM_SECURE_BOOT_MODE) {