Gentoo Archives: gentoo-user

From: Peter Humphrey <peter@××××××××××××.uk>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] efibootmgr "Could not prepare Boot variable: Read-only file system"
Date: Thu, 17 Aug 2017 14:29:27
Message-Id: 1967800.S3cW8q860x@peak
In Reply to: Re: [gentoo-user] efibootmgr "Could not prepare Boot variable: Read-only file system" by Mick
1 On Tuesday 15 August 2017 22:12:41 Mick wrote:
2 > On Tuesday 15 Aug 2017 16:02:19 Mike Gilbert wrote:
3 > > On Tue, Aug 15, 2017 at 2:17 PM, Rich Freeman <rich0@g.o> wrote:
4 > > > On Tue, Aug 15, 2017 at 11:04 AM, Mick <michaelkintzios@×××××.com>
5 wrote:
6 > > >> I can't recall if I did this myself in a moment of security induced
7 > > >> inspiration. I doubt I did. So how did this happen? What is
8 > > >> responsible for mounting this fs?
9 > > >
10 > > > It looks like this never did turn into a news item:
11 > > > https://archives.gentoo.org/gentoo-dev/message/35304b0db4de9e06fea3222
12 > > > 7537 9fa81
13 > > >
14 > > > You can remount it as rw if your tools don't do it automatically. It
15 > > > might not hurt to file a bug if one doesn't already exist for the tool
16 > > > that isn't remounting it.
17 > >
18 > > Please bother efibootmgr upstream about it, or bother the OpenRC
19 > > maintainer who decided to break things.
20 >
21 > Thank you Rich, I suspected it was an intentional change and from a
22 > security perspective it is to be commended. However, it could cause
23 > uninformed users like myself some lost time, thinking something may have
24 > gone wrong on our system.
25 >
26 > I submitted bug #627964:
27 >
28 > https://bugs.gentoo.org/show_bug.cgi?id=627964
29 >
30 > I think a news item although useful, on its own is not sufficient. If
31 > remounting 'rw' and back again to 'ro' is not performed by the legit
32 > commands which touch efivars (e.g. efibootmgr, GRUB, et al), the HandBook
33 > should also be amended if it hasn't been already, because newbies will
34 > have one more excuse to pack it in and go back to *buntu.
35
36 That was an instructive conversation - thanks all. I had the same problem
37 with systemd-boot while rebuild this box over the last few days. I don't
38 know whether to raise a similar bug against systemd-boot now, after reading
39 your bug report, Mick.
40
41 --
42 Regards,
43 Peter.

Replies