It seems that LivePatch works with SecureBoot, but what about self-signed kernel modules?
If a kernel patch is (auto)applied via livepatch, and I am using secure boot, do I have to re-sign the kernel modules that were active before the patch was applied? Normally you need to re-sign the modules upon kernel updates.