This is an archived copy of the Xen.org mailing list, which we have preserved to ensure that existing links to archives are not broken. The live archive, which contains the latest emails, can be found at http://lists.xen.org/
Home Products Support Community News


Re: [Xen-users] Unsigned GPLPV drivers

To: xen-users@xxxxxxxxxxxxxxxxxxx
Subject: Re: [Xen-users] Unsigned GPLPV drivers
From: Oliver Hookins <oliver.hookins@xxxxxxxxxxxxx>
Date: Wed, 15 Jul 2009 16:06:19 +1000
Delivery-date: Tue, 14 Jul 2009 23:13:55 -0700
Envelope-to: www-data@xxxxxxxxxxxxxxxxxxx
In-reply-to: <AEC6C66638C05B468B556EA548C1A77D016DDCA1@trantor>
List-help: <mailto:xen-users-request@lists.xensource.com?subject=help>
List-id: Xen user discussion <xen-users.lists.xensource.com>
List-post: <mailto:xen-users@lists.xensource.com>
List-subscribe: <http://lists.xensource.com/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=subscribe>
List-unsubscribe: <http://lists.xensource.com/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=unsubscribe>
References: <c1a463900907142158n61863440vd9a67c1a4739c38d@xxxxxxxxxxxxxx> <20090715055029.GZ24960@xxxxxxxxxxxxxxx>
Sender: xen-users-bounces@xxxxxxxxxxxxxxxxxxx
User-agent: Mutt/1.5.17+20080114 (2008-01-14)
>> >
>> >What is the BSoD? Is it 0x7B?
>> >
>> >I don't think Win2008 x64 will ever load drivers if they are not
>> >so that's the error I'd expect.
>> Yes it is 0x7B. So even if you tell 2008 to ignore signing from the
>> menu it will still blue screen like that? If so, the only alternative
>is to
>> run with your test-cert signed drivers in test mode (aside from,
>> purchasing the legitimate certificate and signing them properly).
>I can't remember exactly how it works. I think you can enable
>'testsigning' mode where it will accept any signature (not just WHQL)
>but I don't think you can boot with unsigned drivers.
>There may be some hacks available to work around this though...

Should it be possible to install the certificate the driver is signed by
into the system so that it effectively becomes trusted (and doesn't require
test mode)? Currently my test domU is blue screening even with test mode enabled
so I'm not sure what is going on...

Oliver Hookins

Xen-users mailing list