SecureBoot provisioning in stprov
Expected outcome: stprov can help operators with provisioning of custom SecureBoot keys. Also included in this milestone is to sufficiently understand and document what we're supporting and why. And to have some kind of test procedure for it even if it may not be perfect.
Inspiration will be taken from https://git.glasklar.is/system-transparency/platform-plumbing/st-platform-features#prototype-provisioning-image-using-sd-networkd and other related SecureBoot things from @kai and @zaolin (e.g., this and this has some SB descriptions that are useful for navigating the SB space).
It is up to @rgdd who will be working on this if more detailed issues will be attached to this milestone or not.
This will likely become st-v1.3.0. The due date is tentative and may be pushed into the next roadmap if we're not done until then.
EDIT 2025-01-20: little or no progress so far because rgdd have been -ENOTIME. This milestone continues.