Skip to content

run-efi-updater flag no longer works in macOS 11, Big Sur #1255

@khronokernel

Description

@khronokernel

With macOS Big Sur, it seems that even though the NVRAM variable is set macOS will still bless the firmware update during both install and update processes:

15:835 00:005 OCB: Perform boot EFI to dp PciRoot(0x0)/Pci(0x1D,0x0)/Pci(0x0,0x0)/NVMe(0x1,09-63-E3-44-8B-44-1B-00)/HD(1,GPT,11F42760-7AB1-4DB5-924B-D12C52895FA9,0x28,0x64000)/\EFI\APPLE\UPDATERS\MULTIUPDATER\MultiUpdater.efi (0/0)
15:864 00:029 OCI4: Manifest (3744) for 65666962 parse fail with code 1
15:877 00:012 OCI4: Manifest (3744) for 65666262 parse fail with code 1
15:890 00:012 OCI4: Manifest (3744) for 65666264 parse fail with code 1
15:896 00:005 OCSB: No suitable signature - Security Violation
15:903 00:006 OCB: Apple Secure Boot prohibits this boot entry, enforcing!
15:909 00:005 OCB: LoadImage failed - Security Violation

Verified the NVRAM arg is still present and wasn't modified:

nvram -p | grep "run-efi-updater"
  run-efi-updater	No

MultiUpdater-boot.txt

CC @osy86

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions