2.1.11 KVM Guest Secure Boot

Oracle Exadata System Software release 24.1.0 extends Secure Boot to Oracle Linux KVM guests.

KVM Guest Secure Boot leverages the UEFI boot framework in Oracle Linux KVM to restrict which binaries can boot the KVM guest, only allowing boot loaders that carry the cryptographic signature of trusted entities. During each reboot of the KVM guest, every component in the boot sequence is verified, preventing malware from hiding embedded code in the boot sequence.

For details, see Restricting the Binaries Used to Boot the System in Oracle Exadata Database Machine Security Guide.

Related Topics