Skip to content

Black Lotus Fix

Go to Automation

View in GitLab

Description

The playbook applies the "black lotus fix" on a target host in four phases. It starts with initial checks to ensure the playbook runs on a single host and hasn't been executed before. Phase 1 updates the Secure Boot UEFI database (DB) with new certificate definitions and verifies the update. Phase 2 updates the Boot Manager and sets a flag file. Phase 3 updates the Secure Boot UEFI Forbidden List (DBX) and verifies the update. Phase 4 applies the SVN update to the firmware and sets the final flag file. Each phase includes reboots and verification steps.

Credentials

None

Input

Variable Description
target FQDN name of the server

Output

None

Dependencies