Skip to content

Commit cf435a8

Browse files
authored
README.md: Note importance of microcode updates
1 parent 538b312 commit cf435a8

File tree

1 file changed

+3
-1
lines changed

1 file changed

+3
-1
lines changed

README.md

+3-1
Original file line numberDiff line numberDiff line change
@@ -137,7 +137,9 @@ Networking:
137137

138138
Mitigations for known CPU vulnerabilities are enabled in their strictest form
139139
and simultaneous multithreading (SMT) is disabled. See the
140-
`/etc/default/grub.d/40_cpu_mitigations.cfg` configuration file.
140+
`/etc/default/grub.d/40_cpu_mitigations.cfg` configuration file. Note, to achieve
141+
complete protection for known CPU vulnerabilities, the latest security microcode
142+
(BIOS/UEFI) updates must also be installed on the system.
141143

142144
Boot parameters relating to kernel hardening, DMA mitigations, and entropy
143145
generation are outlined in the `/etc/default/grub.d/40_kernel_hardening.cfg`

0 commit comments

Comments
 (0)