From 47d67866ec503e2c702d0899b49ecbc504b43080 Mon Sep 17 00:00:00 2001 From: Tony Nguyen Date: Wed, 3 Sep 2025 11:32:52 -0600 Subject: [PATCH] DLPX-95335 delphix-sb-enroll.service fails on OCI VMs PR URL: https://www.github.com/delphix/delphix-platform/pull/547 --- .../common/var/lib/delphix-sb-enroll/sb-enroll-efivars.sh | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/files/common/var/lib/delphix-sb-enroll/sb-enroll-efivars.sh b/files/common/var/lib/delphix-sb-enroll/sb-enroll-efivars.sh index fa44e533b..d8f4b03d7 100755 --- a/files/common/var/lib/delphix-sb-enroll/sb-enroll-efivars.sh +++ b/files/common/var/lib/delphix-sb-enroll/sb-enroll-efivars.sh @@ -9,10 +9,6 @@ die() { exit 1 } -# Do nothing if Secure Boot is already enabled. -sb=$(od -An -t u1 /sys/firmware/efi/efivars/SecureBoot-* | awk '{print $NF}') -[[ $sb -eq 1 ]] && exit 0 - # # Run only on AWS. # @@ -27,6 +23,10 @@ fi [[ -d /sys/firmware/efi/efivars ]] || die "Not booted in UEFI mode (/sys/firmware/efi/efivars missing)." +# Do nothing if Secure Boot is already enabled. +sb=$(od -An -t u1 /sys/firmware/efi/efivars/SecureBoot-* | awk '{print $NF}') +[[ $sb -eq 1 ]] && exit 0 + # Ensure efivars is mounted (usually is on Ubuntu) if ! mountpoint -q /sys/firmware/efi/efivars; then log "Mounting efivarfs..."