diff --git a/Docs/Configuration.tex b/Docs/Configuration.tex index 50b74d4d..5447b783 100755 --- a/Docs/Configuration.tex +++ b/Docs/Configuration.tex @@ -4066,10 +4066,11 @@ rm vault.pub can be found in the \href{https://habr.com/post/273497/}{Taming UEFI SecureBoot} paper (in Russian). - \emph{Note 2}: \texttt{vault.plist} and \texttt{vault.sig} are used regardless of - this option when \texttt{vault.plist} is present or a public key is embedded into - \texttt{OpenCore.efi}. Setting this option will only ensure configuration sanity, - and abort the boot process otherwise. + \emph{Note 2}: Regardless of this option, \texttt{vault.plist} is always used when + present, and both \texttt{vault.plist} and \texttt{vault.sig} are used and required + when a public key is embedded into \texttt{OpenCore.efi}, and errors will abort the + boot process in either case. Setting this option allows OpenCore to warn the user if + the configuration is not as required to achieve an expected higher security level. \item \texttt{ScanPolicy}\\