問題文
A UEFI-based Oracle Linux 8 host reaches GRUB 2 through an earlier boot loader stage. What does the documentation say that earlier stage does while signature checking is switched off, and what does it say the checking covers once that checking is switched on?
選択肢
- It loads the later stage from the dedicated firmware partition straight away, and once the checking is on it verifies the later stage while the key check passes over that first stage itself
- It loads the later stage from the dedicated partition at once, and once the checking is on it is measured against the stored keys before it verifies the signature of the later stage
- It checks the signature of the kernel image before the later stage runs, and once the checking is on it is itself measured against stored keys before it verifies the later stage
- It reads the kernel image and the initial ramdisk into memory on its own, and once the checking is on the firmware measures those two images rather than either boot loader