1.7 UEFI Secure Boot Support

This update allows you to install and use Oracle Linux 7 on systems that have enabled UEFI Secure Boot. A system in Secure Boot mode will load only boot loaders and kernels that have been signed by Oracle. Oracle has updated the kernel and grub2 packages to sign them with a valid Extended Validation (EV) certificate. The EV certificate has been compiled into the shim binary and has been signed by Microsoft. This feature is fully supported on Oracle Linux 7 update 3.

If you have previously enabled Secure Boot while it was available under technology preview, you must ensure that the shim, grub2 and kernel packages are updated as an atomic operation if you intend to upgrade the system. If these packages are not all updated, the Secure Boot process may break and must be disabled until a full system upgrade is complete.