Ovladače NVidia pro Dell Precision 5550

Jigdo

  • *****
  • 509
    • Zobrazit profil
Ovladače NVidia pro Dell Precision 5550
« kdy: 01. 05. 2023, 12:44:10 »
Na Dell P5550 s grafikou TU117GLM [Quadro T1000 Mobile] bych chtel rozjet HW re-kodovani s FFMpeg (hevc_nvenc).
Takze jsem chtel nainstalovat aktualni ovladac pro NVidia kartu.

Kód: [Vybrat]
$ sudo apt install linux-headers-amd64 nvidia-detect

$ nvidia-detect
Detected NVIDIA GPUs:
01:00.0 3D controller [0302]: NVIDIA Corporation TU117GLM [Quadro T1000 Mobile] [10de:1fb9] (rev a1)

Checking card:  NVIDIA Corporation TU117GLM [Quadro T1000 Mobile] (rev a1)
Your card is supported by the default drivers.
Your card is also supported by the Tesla 470 drivers series.
Your card is also supported by the Tesla 450 drivers series.
Your card is also supported by the Tesla 418 drivers series.
It is recommended to install the
    nvidia-driver

Cekam az vyjde Debian 12 Bookworm a mezitim jsem experimentalne na druhy disk nainstaloval D11.

Mam jak uz je ve vyzhozim nastaveni zapnuty SecureBoot:

Kód: [Vybrat]
$ sudo mokutil --sb-state
SecureBoot enabled

coz je jak se divam pro instalaci ovladace NVidia problem, protoze je treba podepsat DKMS moduly
https://wiki.debian.org/NvidiaGraphicsDrivers#bullseye-470

Samozrejmne ze mi je jasne, ze pokud vypnu SecureBoot tak by to mnelo fungovat, ale ja bych to chtel
udelat poradne (a naucit se neco noveho)...

Odkaz na postup nefunguje
https://wiki.debian.org/SecureBoot#Using_your_key_to_sign_modules
protoze by to asi mnelo byt (jestli se teda jeste neco jineho nezmenilo)
https://wiki.debian.org/SecureBoot#Using_your_key_to_sign_modules_.28Traditional_Way.29

Uvedeny postup na strance je pro VirtualBox :( a treba je to podobne ....
ale hned u prvniho radku to nefunguje

Kód: [Vybrat]
$ cd "$MODULES_DIR/updates/dkms"
bash: cd: /updates/dkms: No such file or directory

Takze zkousim plnou cestu

Kód: [Vybrat]
$ cd /lib/modules/5.10.0-22-amd64/updates/dkms

/lib/modules/5.10.0-22-amd64/updates/dkms$ ls -ilha
total 45M
39850291 drwxr-xr-x 2 root root 4.0K Apr 29 16:08 .
39850290 drwxr-xr-x 3 root root 4.0K Apr 29 16:08 ..
39850294 -rw-r--r-- 1 root root 139K Apr 29 16:08 nvidia-current-drm.ko
39850292 -rw-r--r-- 1 root root  41M Apr 29 16:08 nvidia-current.ko
39850293 -rw-r--r-- 1 root root 1.6M Apr 29 16:08 nvidia-current-modeset.ko
39850296 -rw-r--r-- 1 root root 6.4K Apr 29 16:08 nvidia-current-peermem.ko
39850295 -rw-r--r-- 1 root root 2.2M Apr 29 16:08 nvidia-current-uvm.ko

echo -n "Passphrase for the private key: "
read -s KBUILD_SIGN_PIN
export KBUILD_SIGN_PIN

Chci podepsat vsechny moduly v tom adresari, takze volim druhy prikaz:

Kód: [Vybrat]
$ find -name \*.ko | while read i; do sudo --preserve-env=KBUILD_SIGN_PIN "$KBUILD_DIR"/scripts/sign-file sha256 /var/lib/shim-signed/mok/MOK.priv /var/lib/shim-signed/mok/MOK.der "$i" || break; done

ale to skoncilo dalsi chybovou hlaskou:

Kód: [Vybrat]
sudo: /scripts/sign-file: command not found

Ale v tom "BUILD_DIR" zadny jiny adresar "scripts" neni :(

Poradi nekdo kde je chyba a jak dal?
« Poslední změna: 01. 05. 2023, 18:38:47 od Petr Krčmář »


k3dAR

  • *****
  • 3 096
  • porad nemam telo, ale uz mam hlavu... nobody
    • Zobrazit profil
    • E-mail
Re:Ovladace NVidia pro Dell Precision 5550
« Odpověď #1 kdy: 01. 05. 2023, 17:18:18 »
(minimalne) si preskocil sekci kde mas nastavit promene ktere to pak pouzije a proto si dostal hlasky:
bash: cd: /updates/dkms: No such file or directory
sudo: /scripts/sign-file: command not found

sekci kde si mel vytvorit MOK klic si delal? ;-)

EDIT: cely postup vcetne vlastnich MOK klicu je mozna nevhodnej, protoze vlastne instalujes (meta)balicek nvidia-driver z debianoho repositare kterej ten modul bereze z dkms, takze mozna cely postup je jen dostat stavajici dkms MOK klic do EFI

« Poslední změna: 01. 05. 2023, 17:21:19 od k3dAR »

Jigdo

  • *****
  • 509
    • Zobrazit profil
Re:Ovladace NVidia pro Dell Precision 5550
« Odpověď #2 kdy: 02. 05. 2023, 23:05:40 »
(minimalne) si preskocil sekci kde mas nastavit promene ktere to pak pouzije a proto si dostal hlasky:
bash: cd: /updates/dkms: No such file or directory
sudo: /scripts/sign-file: command not found

sekci kde si mel vytvorit MOK klic si delal? ;-)

EDIT: cely postup vcetne vlastnich MOK klicu je mozna nevhodnej, protoze vlastne instalujes (meta)balicek nvidia-driver z debianoho repositare kterej ten modul bereze z dkms, takze mozna cely postup je jen dostat stavajici dkms MOK klic do EFI


Jasne to ted dava smyls. Ja jsem jen myslel ze kdyz mne odkazovali na
https://wiki.debian.org/SecureBoot#Using_your_key_to_sign_modules_.28Traditional_Way.29
ze zacinam tam ......:( (Diky)



Neni to podepsane ....(a nebo se mylim)?

$ sudo modinfo nvidia-current
filename:       /lib/modules/5.10.0-22-amd64/updates/dkms/nvidia-current.ko
firmware:       nvidia/470.182.03/gsp.bin
alias:          char-major-195-*
version:        470.182.03
supported:      external
license:        NVIDIA
srcversion:     6475F0C50A219E11D411564
alias:          pci:v000010DEd*sv*sd*bc03sc02i00*
alias:          pci:v000010DEd*sv*sd*bc03sc00i00*
depends:        drm
retpoline:      Y
name:           nvidia
vermagic:       5.10.0-22-amd64 SMP mod_unload modversions
parm:           NvSwitchRegDwords:NvSwitch regkey (charp)
parm:           NvSwitchBlacklist:NvSwitchBlacklist=uuid[,uuid...] (charp)
parm:           NVreg_ResmanDebugLevel:int
parm:           NVreg_RmLogonRC:int
parm:           NVreg_ModifyDeviceFiles:int
parm:           NVreg_DeviceFileUID:int
parm:           NVreg_DeviceFileGID:int
parm:           NVreg_DeviceFileMode:int
parm:           NVreg_InitializeSystemMemoryAllocations:int
parm:           NVreg_UsePageAttributeTable:int
parm:           NVreg_RegisterForACPIEvents:int
parm:           NVreg_EnablePCIeGen3:int
parm:           NVreg_EnableMSI:int
parm:           NVreg_TCEBypassMode:int
parm:           NVreg_EnableStreamMemOPs:int
parm:           NVreg_RestrictProfilingToAdminUsers:int
parm:           NVreg_PreserveVideoMemoryAllocations:int
parm:           NVreg_EnableS0ixPowerManagement:int
parm:           NVreg_S0ixPowerManagementVideoMemoryThreshold:int
parm:           NVreg_DynamicPowerManagement:int
parm:           NVreg_DynamicPowerManagementVideoMemoryThreshold:int
parm:           NVreg_EnableGpuFirmware:int
parm:           NVreg_EnableUserNUMAManagement:int
parm:           NVreg_MemoryPoolSize:int
parm:           NVreg_KMallocHeapMaxSize:int
parm:           NVreg_VMallocHeapMaxSize:int
parm:           NVreg_IgnoreMMIOCheck:int
parm:           NVreg_NvLinkDisable:int
parm:           NVreg_EnablePCIERelaxedOrderingMode:int
parm:           NVreg_RegisterPCIDriver:int
parm:           NVreg_RegistryDwords:charp
parm:           NVreg_RegistryDwordsPerDevice:charp
parm:           NVreg_RmMsg:charp
parm:           NVreg_GpuBlacklist:charp
parm:           NVreg_TemporaryFilePath:charp
parm:           NVreg_ExcludedGpus:charp
parm:           rm_firmware_active:charp



Jigdo

  • *****
  • 509
    • Zobrazit profil
Re:Ovladače NVidia pro Dell Precision 5550
« Odpověď #3 kdy: 08. 06. 2023, 11:04:29 »
Jeste 2 dny a bude tady Debian 12 - Bookworm
https://www.theregister.com/2023/06/05/debian_12/
a v nove verzi mezi jinymi i s
"Another almost shocking inclusion is the proprietary Nvidia driver, version 525.89."

Uz to nekdo zkousel v "testing" verzi?

Jigdo

  • *****
  • 509
    • Zobrazit profil
Re:Ovladače NVidia pro Dell Precision 5550
« Odpověď #4 kdy: 31. 07. 2023, 12:08:42 »
Vcera jsem pre-instaloval na Debian 12, ale NVidia ovladace jak by mnely fungovat stale nefunguji :(
Zkousel nekdo na bookworm instalaci NVidia ovladace?


Detaily grafickych karet:
Kód: [Vybrat]
Precision5550:~$ lspci -k | grep -A 2 -E "(VGA|3D)"
00:02.0 VGA compatible controller: Intel Corporation CometLake-H GT2 [UHD Graphics] (rev 05)
Subsystem: Dell CometLake-H GT2 [UHD Graphics]
Kernel driver in use: i915
--
01:00.0 3D controller: NVIDIA Corporation TU117GLM [Quadro T1000 Mobile] (rev a1)
Subsystem: Dell TU117GLM [Quadro T1000 Mobile]
Kernel modules: nvidia


Kernel verze
Kód: [Vybrat]
Precision5550:~$ uname -a
Linux Precision5550 6.1.0-10-amd64 #1 SMP PREEMPT_DYNAMIC Debian 6.1.38-2 (2023-07-27) x86_64 GNU/Linux


Doporucena verze ovladace:
Kód: [Vybrat]
Precision5550:~$ nvidia-detect
Detected NVIDIA GPUs:
01:00.0 3D controller [0302]: NVIDIA Corporation TU117GLM [Quadro T1000 Mobile] [10de:1fb9] (rev a1)

Checking card:  NVIDIA Corporation TU117GLM [Quadro T1000 Mobile] (rev a1)
Your card is supported by all driver versions.
Your card is also supported by the Tesla drivers series.
Your card is also supported by the Tesla 470 drivers series.
It is recommended to install the
    nvidia-driver
package.



Instaloval jsem postupne
Kód: [Vybrat]
sudo apt install linux-headers-amd64
sudo apt install nvidia-kernel-dkms
sudo apt install nvidia-driver firmware-misc-nonfree

Precision5550:~$ apt policy nvidia-driver
nvidia-driver:
  Installed: 525.125.06-1~deb12u1
  Candidate: 525.125.06-1~deb12u1
  Version table:
 *** 525.125.06-1~deb12u1 500
        500 http://deb.debian.org/debian bookworm/non-free amd64 Packages
        100 /var/lib/dpkg/status


Ale, ovladace nejsou:
Kód: [Vybrat]
Pecision5550:~$ lsmod | grep nvidia
Precision5550:~$

Precision5550:~$ sudo nvidia-modprobe
Precision5550:~$



Instalace probehla bez problemu:
Kód: [Vybrat]
Precision5550:~$ sudo dkms status
nvidia-current/525.125.06, 6.1.0-10-amd64, x86_64: installed



A tayd je zadrhel:
Kód: [Vybrat]
Precision5550:~$ sudo modprobe nvidia -vv
modprobe: INFO: ../libkmod/libkmod.c:367 kmod_set_log_fn() custom logging function 0x55f3b8169d70 registered
install modprobe -i nvidia-current $CMDLINE_OPTS
modprobe: INFO: ../libkmod/libkmod.c:367 kmod_set_log_fn() custom logging function 0x5566e14f9d70 registered
insmod /lib/modules/6.1.0-10-amd64/updates/dkms/nvidia-current.ko
modprobe: INFO: ../libkmod/libkmod-module.c:949 kmod_module_insert_module() Failed to insert module '/lib/modules/6.1.0-10-amd64/updates/dkms/nvidia-current.ko': Key was rejected by service
modprobe: ERROR: could not insert 'nvidia_current': Key was rejected by service
modprobe: INFO: ../libkmod/libkmod.c:334 kmod_unref() context 0x5566e1736440 released
modprobe: ERROR: ../libkmod/libkmod-module.c:1047 command_do() Error running install command 'modprobe -i nvidia-current ' for module nvidia: retcode 1
modprobe: ERROR: could not insert 'nvidia': Invalid argument
modprobe: INFO: ../libkmod/libkmod.c:334 kmod_unref() context 0x55f3b89bb460 released

Systemu se nelibi automaticky systemem generovane klice:
Key was rejected by service




ALe klic vypada ze je v poradku:
Kód: [Vybrat]
Precision5550:~$ sudo modinfo nvidia-current
filename:       /lib/modules/6.1.0-10-amd64/updates/dkms/nvidia-current.ko
firmware:       nvidia/525.125.06/gsp_tu10x.bin
firmware:       nvidia/525.125.06/gsp_ad10x.bin
alias:          char-major-195-*
version:        525.125.06
supported:      external
license:        NVIDIA
srcversion:     B91689BE2C82F40FE520B73
alias:          pci:v000010DEd*sv*sd*bc06sc80i00*
alias:          pci:v000010DEd*sv*sd*bc03sc02i00*
alias:          pci:v000010DEd*sv*sd*bc03sc00i00*
depends:        drm
retpoline:      Y
name:           nvidia
vermagic:       6.1.0-10-amd64 SMP preempt mod_unload modversions
sig_id:         PKCS#7
signer:         DKMS module signing key
sig_key:        67:7B:CD:D8:57:84:2B:69:5C:ED:7E:A7:A6:28:8B:43:16:F3:A2:25
sig_hashalgo:   sha256
signature:      25:EB:1B:89:77:55:CB:B1:0F:91:49:76:71:EC:D7:CD:D9:18:2C:89:
3C:D4:B4:7C:D6:81:AF:A1:2A:34:94:87:03:D2:C3:CB:B3:94:49:A1:
57:93:AC:7A:C0:59:67:E1:10:00:74:A6:08:EE:4F:E7:74:E4:1F:66:
A8:02:D6:49:50:88:05:6E:C3:E5:07:13:AF:28:01:1C:AB:8F:AA:31:
28:99:FD:9E:96:AD:41:7B:1B:D6:6C:38:44:9C:BE:13:4E:2C:5E:63:
29:4A:61:CF:57:9E:B2:96:2F:2A:74:EF:E4:1F:26:76:9F:30:5C:B3:
39:68:F7:DB:8F:12:41:CB:E2:40:B3:07:FF:55:CD:77:FB:2F:C3:BD:
9A:28:C2:B0:BF:D2:EF:AB:55:DD:9E:97:4B:F7:56:1F:1D:E9:8E:85:
AA:73:13:FB:10:75:0A:8B:91:6C:84:FF:B7:00:78:3D:5E:C5:82:09:
66:FD:85:8D:95:75:C6:0D:5A:86:C3:CE:BC:EF:F8:E5:9E:CC:5A:88:
5C:D4:BF:20:10:02:AE:9A:95:92:77:4C:F6:A4:1B:4D:7F:27:30:6F:
F7:33:55:74:67:F8:70:F7:E1:83:AE:2E:BB:0E:0B:F5:5E:0A:12:16:
E2:A2:0F:B6:CA:75:11:40:A6:82:5D:0B:A7:41:BD:C8
parm:           NvSwitchRegDwords:NvSwitch regkey (charp)
parm:           NvSwitchBlacklist:NvSwitchBlacklist=uuid[,uuid...] (charp)
parm:           NVreg_ResmanDebugLevel:int
parm:           NVreg_RmLogonRC:int
parm:           NVreg_ModifyDeviceFiles:int
parm:           NVreg_DeviceFileUID:int
parm:           NVreg_DeviceFileGID:int
parm:           NVreg_DeviceFileMode:int
parm:           NVreg_InitializeSystemMemoryAllocations:int
parm:           NVreg_UsePageAttributeTable:int
parm:           NVreg_EnablePCIeGen3:int
parm:           NVreg_EnableMSI:int
parm:           NVreg_TCEBypassMode:int
parm:           NVreg_EnableStreamMemOPs:int
parm:           NVreg_RestrictProfilingToAdminUsers:int
parm:           NVreg_PreserveVideoMemoryAllocations:int
parm:           NVreg_EnableS0ixPowerManagement:int
parm:           NVreg_S0ixPowerManagementVideoMemoryThreshold:int
parm:           NVreg_DynamicPowerManagement:int
parm:           NVreg_DynamicPowerManagementVideoMemoryThreshold:int
parm:           NVreg_EnableGpuFirmware:int
parm:           NVreg_EnableGpuFirmwareLogs:int
parm:           NVreg_OpenRmEnableUnsupportedGpus:int
parm:           NVreg_EnableUserNUMAManagement:int
parm:           NVreg_MemoryPoolSize:int
parm:           NVreg_KMallocHeapMaxSize:int
parm:           NVreg_VMallocHeapMaxSize:int
parm:           NVreg_IgnoreMMIOCheck:int
parm:           NVreg_NvLinkDisable:int
parm:           NVreg_EnablePCIERelaxedOrderingMode:int
parm:           NVreg_RegisterPCIDriver:int
parm:           NVreg_EnableDbgBreakpoint:int
parm:           NVreg_RegistryDwords:charp
parm:           NVreg_RegistryDwordsPerDevice:charp
parm:           NVreg_RmMsg:charp
parm:           NVreg_GpuBlacklist:charp
parm:           NVreg_TemporaryFilePath:charp
parm:           NVreg_ExcludedGpus:charp
parm:           NVreg_DmaRemapPeerMmio:int
parm:           rm_firmware_active:charp




Kód: [Vybrat]
Precision5550:~$ sudo systemctl --failed
  UNIT                         LOAD   ACTIVE SUB    DESCRIPTION             
● nvidia-persistenced.service  loaded failed failed NVIDIA Persistence Daemon
● systemd-modules-load.service loaded failed failed Load Kernel Modules

LOAD   = Reflects whether the unit definition was properly loaded.
ACTIVE = The high-level unit activation state, i.e. generalization of SUB.
SUB    = The low-level unit activation state, values depend on unit type.




Kód: [Vybrat]
Precision5550:~$ sudo systemctl status systemd-modules-load.service
× systemd-modules-load.service - Load Kernel Modules
     Loaded: loaded (/lib/systemd/system/systemd-modules-load.service; static)
     Active: failed (Result: exit-code) since Mon 2023-07-31 08:27:36 BST; 38min ago
       Docs: man:systemd-modules-load.service(8)
             man:modules-load.d(5)
    Process: 742 ExecStart=/lib/systemd/systemd-modules-load (code=exited, status=1/FAILURE)
   Main PID: 742 (code=exited, status=1/FAILURE)
        CPU: 1.730s

Jul 31 08:27:35 Precision5550 systemd-modules-load[767]: modprobe: ERROR: could not insert 'nvidia_current_modeset': Key was rejected by service
Jul 31 08:27:35 Precision5550 systemd-modules-load[744]: modprobe: ERROR: ../libkmod/libkmod-module.c:1047 command_do() Error running install command 'modprobe nvidia ; modprobe -i nvidia-current-modeset ' for module nvidia_modeset: retcode 1
Jul 31 08:27:35 Precision5550 systemd-modules-load[744]: modprobe: ERROR: could not insert 'nvidia_modeset': Invalid argument
Jul 31 08:27:36 Precision5550 systemd-modules-load[768]: modprobe: ERROR: could not insert 'nvidia_current_drm': Key was rejected by service
Jul 31 08:27:36 Precision5550 systemd-modules-load[742]: Error running install command 'modprobe nvidia-modeset ; modprobe -i nvidia-current-drm ' for module nvidia_drm: retcode 1
Jul 31 08:27:36 Precision5550 systemd-modules-load[742]: Failed to insert module 'nvidia_drm': Invalid argument
Jul 31 08:27:36 Precision5550 systemd[1]: systemd-modules-load.service: Main process exited, code=exited, status=1/FAILURE
Jul 31 08:27:36 Precision5550 systemd[1]: systemd-modules-load.service: Failed with result 'exit-code'.
Jul 31 08:27:36 Precision5550 systemd[1]: Failed to start systemd-modules-load.service - Load Kernel Modules.
Jul 31 08:27:36 Precision5550 systemd[1]: systemd-modules-load.service: Consumed 1.730s CPU time.

Kód: [Vybrat]
Precision5550:~$ sudo systemctl status nvidia-persistenced.service
× nvidia-persistenced.service - NVIDIA Persistence Daemon
     Loaded: loaded (/lib/systemd/system/nvidia-persistenced.service; enabled; preset: enabled)
     Active: failed (Result: exit-code) since Mon 2023-07-31 08:27:36 BST; 38min ago
    Process: 802 ExecStart=/usr/bin/nvidia-persistenced --user nvpd (code=exited, status=1/FAILURE)
    Process: 958 ExecStopPost=/bin/rm -rf /var/run/nvidia-persistenced (code=exited, status=0/SUCCESS)
        CPU: 540ms

Jul 31 08:27:36 Precision5550 systemd[1]: Starting nvidia-persistenced.service - NVIDIA Persistence Daemon...
Jul 31 08:27:36 Precision5550 nvidia-persistenced[810]: Started (810)
Jul 31 08:27:36 Precision5550 nvidia-persistenced[810]: Failed to query NVIDIA devices. Please ensure that the NVIDIA device files (/dev/nvidia*) exist, and that user 112 has read and write permissions for those files.
Jul 31 08:27:36 Precision5550 nvidia-persistenced[810]: Shutdown (810)
Jul 31 08:27:36 Precision5550 nvidia-persistenced[802]: nvidia-persistenced failed to initialize. Check syslog for more details.
Jul 31 08:27:36 Precision5550 systemd[1]: nvidia-persistenced.service: Control process exited, code=exited, status=1/FAILURE
Jul 31 08:27:36 Precision5550 systemd[1]: nvidia-persistenced.service: Failed with result 'exit-code'.
Jul 31 08:27:36 Precision5550 systemd[1]: Failed to start nvidia-persistenced.service - NVIDIA Persistence Daemon.







Jigdo

  • *****
  • 509
    • Zobrazit profil
Re:Ovladače NVidia pro Dell Precision 5550
« Odpověď #5 kdy: 31. 07. 2023, 12:11:58 »
Narazil jsem na limit 2000 znaku :(

Secure Boot je zapnuty a klice se generovaly i pro NVidia:
Kód: [Vybrat]
Precision5550:~$ mokutil --sb-state
SecureBoot enabled


Kód: [Vybrat]
Precision5550:~$ mokutil --list-enrolled
[key 1]
SHA1 Fingerprint: 53:61:0c:f8:1f:bd:7e:0c:eb:67:91:3c:9e:f3:e7:94:a9:63:3e:cb
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            ed:54:a1:d5:af:87:48:94:8d:9f:89:32:ee:9c:7c:34
        Signature Algorithm: sha256WithRSAEncryption
        Issuer: CN=Debian Secure Boot CA
        Validity
            Not Before: Aug 16 18:09:18 2016 GMT
            Not After : Aug  9 18:09:18 2046 GMT
        Subject: CN=Debian Secure Boot CA
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:9d:95:d4:8b:9b:da:10:ac:2e:ca:82:37:c1:a4:
                    cb:4a:c3:1b:42:93:c2:7a:29:d3:6e:dd:64:af:80:
                    af:ea:66:a2:1b:61:9c:83:0c:c5:6b:b9:35:25:ff:
                    c5:fb:e8:29:43:de:ce:4b:3d:c6:12:4d:b1:ef:26:
                    43:95:68:cd:04:11:fe:c2:24:9b:de:14:d8:86:51:
                    e8:38:43:bd:b1:9a:15:e5:08:6b:f8:54:50:8b:b3:
                    4b:5f:fc:14:e4:35:50:7c:0b:b1:e2:03:84:a8:36:
                    48:e4:80:e8:ea:9f:fa:bf:c5:18:7b:5e:ce:1c:be:
                    2c:80:78:49:35:15:c0:21:cf:ef:66:d5:8a:96:08:
                    2b:66:2f:48:17:b1:e7:ec:82:8f:07:e6:ca:e0:5f:
                    71:24:39:50:0a:8e:d1:72:28:50:a5:9d:21:f4:e3:
                    61:ba:09:03:66:c8:df:4e:26:36:0b:15:0f:63:1f:
                    2b:af:ab:c4:28:a2:56:64:85:8d:a6:55:41:ae:3c:
                    88:95:dd:d0:6d:d9:29:db:d8:c4:68:b5:fc:f4:57:
                    89:6b:14:db:e0:ef:ee:40:0d:62:1f:ea:58:d4:a3:
                    d8:ba:03:a6:97:2e:c5:6b:13:a4:91:77:a6:b5:ad:
                    23:a7:eb:0a:49:14:46:7c:76:e9:9e:32:b4:89:af:
                    57:79
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            Authority Information Access:
                CA Issuers - URI:https://dsa.debian.org/secure-boot-ca
            X509v3 Authority Key Identifier:
                6C:CE:CE:7E:4C:6C:0D:1F:61:49:F3:DD:27:DF:CC:5C:BB:41:9E:A1
            Netscape Cert Type: critical
                SSL Client, SSL Server, S/MIME, Object Signing, SSL CA, S/MIME CA, Object Signing CA
            X509v3 Extended Key Usage:
                Code Signing
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Basic Constraints: critical
                CA:TRUE
            X509v3 Subject Key Identifier:
                6C:CE:CE:7E:4C:6C:0D:1F:61:49:F3:DD:27:DF:CC:5C:BB:41:9E:A1
    Signature Algorithm: sha256WithRSAEncryption
    Signature Value:
        77:96:3e:47:c9:ce:09:cf:8b:89:ce:59:ed:26:0e:26:0b:b9:
        ad:a9:2b:bd:a1:eb:88:79:02:ff:31:de:fe:f5:6a:07:ef:61:
        13:11:70:1e:bf:9c:4e:66:6c:e1:62:12:97:01:57:65:47:dd:
        4a:c6:f7:f4:de:a8:f1:13:62:cc:83:57:ac:3c:a6:91:15:af:
        55:26:72:69:2e:14:cd:dd:4d:b3:d1:60:24:2d:32:4f:19:6c:
        11:5e:f2:a3:f2:a1:5f:62:0f:30:ae:ad:f1:48:66:64:7d:36:
        44:0d:06:34:3d:2e:af:8e:9d:c3:ad:c2:91:d8:37:e0:ee:7a:
        5f:82:3b:67:8e:00:8a:c4:a4:df:35:16:c2:72:2b:4c:51:d7:
        93:93:9e:ba:08:0d:59:97:f2:e2:29:a0:44:4d:ea:ee:f8:3e:
        02:60:ca:15:cf:4e:9a:25:91:84:3f:b7:5a:c7:ee:bc:6b:80:
        a3:d9:fd:b2:6d:7a:1e:63:14:eb:ef:f1:b0:40:25:d5:e8:0e:
        81:eb:6b:f7:cb:ff:e5:21:00:22:2c:2e:9a:35:60:12:4b:5b:
        5f:38:46:84:0c:06:9c:cf:72:93:62:18:ee:5c:98:d6:b3:7d:
        06:25:39:95:df:4e:60:76:b0:06:7b:08:b0:6e:e3:64:9f:21:
        56:ad:39:0f

[key 2]
SHA1 Fingerprint: f6:f1:86:0c:67:c2:f5:c1:8d:fe:1e:f2:51:47:15:be:dd:d7:b0:e0
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            36:7f:d2:6e:f4:1a:2e:5f:85:66:55:2c:c9:ad:ae:10:c9:fa:81:18
        Signature Algorithm: sha256WithRSAEncryption
        Issuer: CN=My Name
        Validity
            Not Before: May  2 21:22:41 2023 GMT
            Not After : Apr  8 21:22:41 2123 GMT
        Subject: CN=My Name
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:ae:ec:fa:f3:d6:14:0c:09:86:1d:a9:7d:35:bd:
                    35:2a:98:1a:3f:ff:4e:0e:c1:5c:b1:c5:0d:2e:a6:
                    cb:4e:a6:e6:06:0f:11:a0:d7:ea:fc:40:18:dc:00:
                    c4:5e:ce:fe:74:6f:e7:74:fa:16:e6:82:97:2b:e8:
                    65:a8:65:06:15:45:6b:84:75:f3:e8:5a:e9:89:b2:
                    cf:03:c8:6c:c9:a9:fe:5e:97:6a:7b:32:f7:f8:cc:
                    02:4b:47:a3:52:06:bd:10:58:3d:47:41:1a:39:1e:
                    8d:fb:bd:23:de:ed:30:72:b6:31:24:ec:72:dc:0e:
                    78:e9:fd:53:f2:a8:58:6f:72:38:b8:b9:d2:00:22:
                    f3:39:2a:3f:5a:48:b4:f8:17:f1:1b:ff:7b:4d:54:
                    40:2f:8a:aa:31:d6:3c:e9:04:c8:cf:3a:99:75:c5:
                    df:a7:64:e8:98:51:bb:79:21:74:aa:43:97:64:ad:
                    c0:c3:fd:b2:de:e5:47:fc:5f:50:e5:4b:9e:59:5d:
                    e3:59:82:92:70:13:3a:34:6d:ec:c7:69:a2:63:51:
                    6f:8e:6f:72:ed:2f:b7:45:6f:74:3e:a6:bc:45:12:
                    52:52:85:c8:b2:f3:3e:ff:5c:c7:a4:10:84:58:72:
                    b7:96:a2:b9:38:87:f3:f9:03:3f:dc:46:6b:e3:57:
                    7e:fd
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Subject Key Identifier:
                3C:6D:4A:8B:19:16:AB:31:D9:16:FE:D4:1B:9D:3C:2A:30:B9:1B:DC
            X509v3 Authority Key Identifier:
                3C:6D:4A:8B:19:16:AB:31:D9:16:FE:D4:1B:9D:3C:2A:30:B9:1B:DC
            X509v3 Basic Constraints: critical
                CA:TRUE
    Signature Algorithm: sha256WithRSAEncryption
    Signature Value:
        92:26:de:b9:67:2b:b0:50:fe:b5:27:fb:ef:d7:94:dd:ff:e7:
        4b:62:8e:b6:b2:3c:b7:b7:6f:53:37:73:c9:34:79:6e:84:5a:
        59:57:88:b9:8a:55:82:b3:17:c3:c5:27:0b:a9:54:88:6e:66:
        86:3a:10:b1:ab:5b:33:c5:e0:ab:de:1c:63:24:94:4f:9b:c0:
        a5:3e:6e:f6:99:8c:c3:67:84:be:bb:8f:10:84:5b:cd:71:30:
        5b:ea:40:7e:8f:0e:df:31:52:0c:88:24:53:25:27:db:f0:ac:
        a6:15:b7:99:9c:b0:ae:6f:37:96:fe:b2:08:1f:f8:aa:03:51:
        71:0c:cb:fd:22:7e:12:23:26:eb:8a:c5:fe:f8:56:c6:0b:76:
        cc:34:6f:5a:1e:17:cd:5d:88:58:bc:db:07:0e:ff:7b:f0:cc:
        19:e7:97:c3:4f:fe:fe:88:53:b8:51:a3:61:82:39:e4:af:fe:
        61:66:cd:0f:dd:df:19:20:55:93:ca:af:0a:1a:82:69:28:80:
        64:44:e4:ee:a7:34:88:56:b2:58:12:86:50:65:1b:2f:a2:d3:
        2f:ae:5f:ac:c8:9a:a9:6a:c6:98:54:0d:68:a8:6c:3c:ba:c4:
        50:0a:05:8d:7c:63:5d:9a:0e:cb:e2:b5:09:fb:2c:58:65:63:
        4c:30:08:0c




Klice:
Kód: [Vybrat]
Precision5550:~$ sudo cat /proc/keys | grep asymm
0d223d23 I------     1 perm 1f010000     0     0 asymmetri Microsoft Corporation UEFI CA 2011: 13adbf4309bd82709c8cd54f316ed522988a1bd4: X509.rsa 988a1bd4 []
113b6efa I------     1 perm 1f030000     0     0 asymmetri Debian Secure Boot CA: 6ccece7e4c6c0d1f6149f3dd27dfcc5cbb419ea1: X509.rsa bb419ea1 []
1811dcf5 I------     1 perm 1f030000     0     0 asymmetri benh@debian.org: 577e021cb980e0e820821ba7b54b4961b8b4fadf: X509.rsa []
1ab2f18f I------     1 perm 1f010000     0     0 asymmetri Microsoft Windows Production PCA 2011: a92902398e16c49778cd90f99e4f9ae17c55af53: X509.rsa 7c55af53 []
1c0bc346 I------     1 perm 1f010000     0     0 asymmetri Dell Inc.: Dell Bios DB Key: 637fa7a9f74471b406de0511557071fd41dd5487: X509.rsa 41dd5487 []
23189ce3 I------     1 perm 1f010000     0     0 asymmetri My Name: 3c6d4a8b1916ab31d916fed41b9d3c2a30b91bdc: X509.rsa 30b91bdc []
2d20b6a8 I------     1 perm 1f010000     0     0 asymmetri Dell Inc.: Dell Bios FW Aux Authority 2018: dd4df7c3f5ce7e5a77847915abc37b031f6b10bd: X509.rsa 1f6b10bd []
309232af I------     1 perm 1f030000     0     0 asymmetri sforshee: 00b28ddf47aef9cea7: X509.rsa []
346a00ee I------     1 perm 1f030000     0     0 asymmetri romain.perier@gmail.com: 3abbc6ec146e09d1b6016ab9d6cf71dd233f0328: X509.rsa []
35856042 I------     1 perm 1f030000     0     0 asymmetri Debian Secure Boot Signer 2022 - linux: 14011249c2675ea8e5148542202005810584b25f: X509.rsa 0584b25f []
3a703a6c I------     1 perm 1f010000     0     0 asymmetri Debian Secure Boot CA: 6ccece7e4c6c0d1f6149f3dd27dfcc5cbb419ea1: X509.rsa bb419ea1 []


Kód: [Vybrat]
Precision5550:~$ sudo keyctl list %:.secondary_trusted_keys
2 keys in keyring:
733971699: ---lswrv     0     0 keyring: .builtin_trusted_keys
1035525142: ---lswrv     0     0 keyring: .machine


Kód: [Vybrat]
Precision5550:~$ sudo keyctl list %:.machine
2 keys in keyring:
980433516: ---lswrv     0     0 asymmetric: Debian Secure Boot CA: 6ccece7e4c6c0d1f6149f3dd27dfcc5cbb419ea1
588815587: ---lswrv     0     0 asymmetric: My Name: 3c6d4a8b1916ab31d916fed41b9d3c2a30b91bdc

Kód: [Vybrat]
Precision5550:~$ sudo keyctl list %:.platform
4 keys in keyring:
470532934: ---lswrv     0     0 asymmetric: Dell Inc.: Dell Bios DB Key: 637fa7a9f74471b406de0511557071fd41dd5487
220347683: ---lswrv     0     0 asymmetric: Microsoft Corporation UEFI CA 2011: 13adbf4309bd82709c8cd54f316ed522988a1bd4
447934863: ---lswrv     0     0 asymmetric: Microsoft Windows Production PCA 2011: a92902398e16c49778cd90f99e4f9ae17c55af53
757118632: ---lswrv     0     0 asymmetric: Dell Inc.: Dell Bios FW Aux Authority 2018: dd4df7c3f5ce7e5a77847915abc37b031f6b10bd


Ale predpokladam ze na vine je ten "autogenerovany" klic,

Na
https://wiki.debian.org/NvidiaGraphicsDrivers#Installation
samozrejmne nic neni, a stale odkazuje na to ze potrebuji podepsat moduly pokud mam zapnuty SecureBoot .. :(

Poradi nekdo?