Skip to content

Low host security level

Mario Limonciello edited this page Aug 29, 2022 · 6 revisions

Introduction

The Host Security ID specification calls out specific firmware, platform and runtime configuration options be properly configured to attest to appropriate security.

To determine your host security ID and specific problems, update to a current version of fwupd and run:

$ fwupdmgr security

Low security level

A safe baseline for security should be HSI:1. If your system isn't at least meeting this criteria, you should adjust firmware setup options, contact your manufacturer or replace the hardware. If you upgrade to fwupd 1.8.4 or later, the client will suggest individual remediation specific to your situation.

Clone this wiki locally