# Mender and efi-secure-boot on intel-corei7-64

**URL:** <https://hub.mender.io/t/mender-and-efi-secure-boot-on-intel-corei7-64/4862>\
**Category:** General Discussions\
**Tags:** yocto\
**Created:** [April 14, 2022, 2:13pm UTC](https://hub.mender.io/t/mender-and-efi-secure-boot-on-intel-corei7-64/4862 "2022-04-14T14:13:05Z")\
**Posts on this page:** 1\
**Showing post:** 13

<div class="post-metadata">

**Author:** ![annalenamarx](https://yyz2.discourse-cdn.com/flex036/user_avatar/hub.mender.io/annalenamarx/32/2035_2.png) [@annalenamarx](https://hub.mender.io/u/annalenamarx)\
**Post date:** [June 6, 2024, 10:05am UTC](https://hub.mender.io/t/mender-and-efi-secure-boot-on-intel-corei7-64/4862/13 "2024-06-06T10:05:17Z")

</div>

Hi there,

as this is probably interesting for others, too, I want to add the changes in `90_mender_boot_grub.cfg` that made it working for me.  
The changes are inspired by the current `boot-menu.inc` file

> <https://github.com/Wind-River/meta-secure-core/blob/master/meta-efi-secure-boot/recipes-bsp/grub/grub-efi/boot-menu.inc>

which is replaced by this `90_mender_boot_grub.cfg` file.  
Basically, two things changed:  
The `mender_kernel_path` is cleared in order to use the kernel in the boot partition (efi) and the grub search command helps to find the right partition without hardcoding.

```auto
--- 90_mender_boot_grub.cfg.original
+++ 90_mender_boot_grub.cfg
@@ -1,6 +1,8 @@
 maybe_drop_to_grub_prompt
 
+mender_kernel_path=""
 if ["${drop_to_grub_prompt}" = "no"]; then
+	search --no-floppy --label --set=root boot
     if linux "${mender_kernel_path}/${kernel_imagetype}" root="${mender_kernel_root}" ${bootargs}; then
         if test -n "${initrd_imagetype}" -a test -e "${mender_kernel_path}/${initrd_imagetype}"; then
             initrd "${mender_kernel_path}/${initrd_imagetype}"

```

---

_[View the full topic](https://hub.mender.io/t/mender-and-efi-secure-boot-on-intel-corei7-64/4862)._
