]> git.ipfire.org Git - thirdparty/systemd.git/blob - units/systemd-boot-system-token.service
random-seed: don't refresh EFI random seed from random-seed.c anymore
[thirdparty/systemd.git] / units / systemd-boot-system-token.service
1 # SPDX-License-Identifier: LGPL-2.1-or-later
2 #
3 # This file is part of systemd.
4 #
5 # systemd is free software; you can redistribute it and/or modify it
6 # under the terms of the GNU Lesser General Public License as published by
7 # the Free Software Foundation; either version 2.1 of the License, or
8 # (at your option) any later version.
9
10 [Unit]
11 Description=Store a System Token in an EFI Variable
12 Documentation=man:systemd-boot-system-token.service(8)
13
14 DefaultDependencies=no
15 After=local-fs.target systemd-random-seed.service
16 Conflicts=shutdown.target initrd-switch-root.target
17 Before=shutdown.target initrd-switch-root.target
18
19 # Only run this if the boot loader can support random seed initialization.
20 ConditionPathExists=|/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f
21 ConditionPathExists=|/sys/firmware/efi/efivars/StubFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f
22
23 # Only run this if there is no system token defined yet
24 ConditionPathExists=!/sys/firmware/efi/efivars/LoaderSystemToken-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f
25
26 [Service]
27 Type=oneshot
28 RemainAfterExit=yes
29 ExecStart=bootctl random-seed --graceful