<?xml version='1.0' encoding='utf-8' ?>

<rss version='2.0' xmlns:lj='http://www.livejournal.org/rss/lj/1.0/' xmlns:atom10='http://www.w3.org/2005/Atom'>
<channel>
  <title>You Don&apos;t Live Like I Do</title>
  <link>https://diffrentcolours.dreamwidth.org/</link>
  <description>You Don&apos;t Live Like I Do - Dreamwidth Studios</description>
  <lastBuildDate>Tue, 06 Jan 2026 02:29:50 GMT</lastBuildDate>
  <generator>LiveJournal / Dreamwidth Studios</generator>
  <lj:journal>diffrentcolours</lj:journal>
  <lj:journaltype>personal</lj:journaltype>
  <image>
    <url>https://v2.dreamwidth.org/11283946/3088724</url>
    <title>You Don&apos;t Live Like I Do</title>
    <link>https://diffrentcolours.dreamwidth.org/</link>
    <width>100</width>
    <height>100</height>
  </image>

<item>
  <guid isPermaLink='true'>https://diffrentcolours.dreamwidth.org/981177.html</guid>
  <pubDate>Tue, 06 Jan 2026 02:29:50 GMT</pubDate>
  <title>Double Lockout</title>
  <link>https://diffrentcolours.dreamwidth.org/981177.html</link>
  <description>&lt;p&gt;Recently I was playing around with the boot systems on my two main computers - laptop and desktop - to enable Secure Boot. This is a quite old tech by now, and helps protect against &quot;evil maid&quot; attacks where somebody has temporary access to your hardware and uses it to install some kind of persistent backdoor. I don&apos;t think this is a huge threat to me in real life but it&apos;s fairly standard behaviour now so I figured I&apos;d familiarise myself with it.&lt;/p&gt;

&lt;p&gt;In the process I managed to get myself locked out of both. This was mildly concerning, because usually I&apos;d use one system to help me repair the other. Fortunately I managed to &quot;repair&quot; the desktop by simply disabling Secure Boot.&lt;/p&gt;

&lt;p&gt;The laptop was a bit more complicated. &lt;span class=&quot;cut-wrapper&quot;&gt;&lt;span style=&quot;display: none;&quot; id=&quot;span-cuttag___1&quot; class=&quot;cuttag&quot;&gt;&lt;/span&gt;&lt;b class=&quot;cut-open&quot;&gt;(&amp;nbsp;&lt;/b&gt;&lt;b class=&quot;cut-text&quot;&gt;&lt;a href=&quot;https://diffrentcolours.dreamwidth.org/981177.html#cutid1&quot;&gt;Nerdy details&lt;/a&gt;&lt;/b&gt;&lt;b class=&quot;cut-close&quot;&gt;&amp;nbsp;)&lt;/b&gt;&lt;/span&gt;&lt;div style=&quot;display: none;&quot; id=&quot;div-cuttag___1&quot; aria-live=&quot;assertive&quot;&gt;&lt;/div&gt;&lt;/p&gt;

&lt;p&gt;For all that parts of this experience were frustrating, and the stakes were moderately high since going without my laptop would be a huge pain, I quite enjoyed this little pair of experiments. I learned new things, refreshed my memory of a few others, and found a weak spot in my nerding abilities. A larger, and more importantly faster, USB stick will be replacing its venerable predecessor on my keyring - and I&apos;ll keep the old one around for smaller file transfers too, so I don&apos;t have to keep reformatting.&lt;/p&gt;

&lt;p&gt;Next steps are to figure out why Secure Boot doesn&apos;t work on the desktop, and to try and replace Grub with systemd-bootd on the laptop. But that can wait for a while before I&apos;m in another geeky mood...&lt;/p&gt;
&lt;br /&gt;&lt;br /&gt;&lt;img src=&quot;https://www.dreamwidth.org/tools/commentcount?user=diffrentcolours&amp;ditemid=981177&quot; width=&quot;30&quot; height=&quot;12&quot; alt=&quot;comment count unavailable&quot; style=&quot;vertical-align: middle;&quot;/&gt; comments</description>
  <comments>https://diffrentcolours.dreamwidth.org/981177.html</comments>
  <category>gnu/linux</category>
  <category>tech</category>
  <category>debian</category>
  <lj:security>public</lj:security>
  <lj:reply-count>1</lj:reply-count>
</item>
</channel>
</rss>
