update TODO

This commit is contained in:
Lennart Poettering 2021-02-15 19:23:05 +01:00
parent 1edebb0b89
commit bf843b0bd4

7
TODO
View file

@ -20,6 +20,13 @@ Janitorial Clean-ups:
Features:
* Hook up journald's FSS logic with TPM2: seal the verification disk by
time-based policy, so that the verification key can remain on host and ve
validated via TPM.
* sd-event: port to new kernel API epoll_wait2() (new in 5.11), to get more
accurate wait timeouts
* sd-boot: define a drop-in dir in the ESP that may contain X.509
certificates. If the firmware is detected to be in setup mode, automatically
enroll them as PK/KEK/db, turn off setup mode and proceed. Optionally,