The following configurations need to be applied:
BIOS Settings:
- NumaNodesPerSocket
- SecureBoot
- SecureBootMode
- SecureBootPolicy
- TpmSecurity
SecureBoot:
- Wipe SecureBoot certificates (DBX, DB, KEK; certificates and hashes)
- Upload SecureBoot certificates (DB, KEK)
From a business logic point of view, this could be aggregated into the following functions provided by the BMC vendor dependent adapter:
SetupBIOS
InitializeSecureBootCertificates
The following configurations need to be applied:
BIOS Settings:
SecureBoot:
From a business logic point of view, this could be aggregated into the following functions provided by the BMC vendor dependent adapter:
SetupBIOSInitializeSecureBootCertificates