Commit Graph

  • fd18e35674 - Update to version 1+git20250401.2eda714: * Shift only the matching component * Rework free-space allocator algorithm * Clarify when the initrd is generated * Add the kernel version for measurement order * Keep original prediction for pcrlock aligment * Check array size for emptiness * Refactor debug output * Reclaim free space when updating entries * spec: Update bootloader if it is recognized * Limit variations up to 8 for a component * Add priority field in entry list * Make snapshot_ids ordered by importance * Convert echo to info * In virtual environment drop PCR0 Alberto Planas Dominguez 2025-04-01 14:03:09 +00:00
  • 275a0be853 - Update to version 1+git20250328.f1d4885: * Fallback to file config when bootctl fails * Remove TODO file * Declare local variable * Print colors when in terminal * Do not load the config file when variable is set * Uset btrfs instead of snapper for set default snapshot * Drop unused entries parameter * Improve boot loader detection Alberto Planas Dominguez 2025-03-28 21:16:49 +00:00
  • c468033a3e Accepting request 1264605 from devel:microos Ana Guerrero 2025-03-28 08:36:35 +00:00
  • c6f1e6d3ff - Update to version 1+git20250327.9714cbd: * Get boot_dst from os-release NAME * Add --devices parameter Alberto Planas Dominguez 2025-03-27 15:25:10 +00:00
  • 8cfd44f41b Accepting request 1255733 from devel:microos Ana Guerrero 2025-03-26 20:16:51 +00:00
  • 61ac6f7bfb - Update to version 1+git20250324.c1cd393: * Use filesystem order in grub2-bls Alberto Planas Dominguez 2025-03-24 19:51:44 +00:00
  • 59b2768ea6 Accepting request 1254025 from devel:microos Ana Guerrero 2025-03-18 16:37:34 +00:00
  • 9ae14af263 - Update to version 1+git20250311.8d3db8b: * Load the config file when updating the predictions * Include swap partitions for PCR15 * Soft fails keyctl setperm when called via YaST * Revoke cryptenroll key if is incorrect - Update to version 1+git20250307.d46fcde: * Add fallback logic when generatic predictions * Don't use sdbootutil-pin when reading vk * Drop parameters for generate_tpm2_predictions * Fix style * Fix --signed-policy parameter - Update to version 1+git20250306.0811984: * Fix list of tracked devices * Don't echo '\n' when timeout or default entry are empty Richard Brown 2025-03-18 08:17:22 +00:00
  • b92cfee76a Accepting request 1250450 from devel:microos Ana Guerrero 2025-03-06 13:48:27 +00:00
  • c8946e1225 - Update to version 1+git20250305.278a563: * Revert "Remove .conf suffix from grubenv (bsc#1237198)" * Drop unused parentheses * Fix name of local variable Alberto Planas Dominguez 2025-03-05 15:01:54 +00:00
  • 1db73df968 - Update to version 1+git20250304.16b1e1b: * Fix location of initial boot entries * Set keyslot as local * Style changes Alberto Planas Dominguez 2025-03-04 14:42:44 +00:00
  • 856ac3c6cf Accepting request 1249845 from devel:microos Ana Guerrero 2025-03-03 17:51:41 +00:00
  • 6b69cc0860 - Update to version 1+git20250303.63ae770: * Fix typo in comment * Fix openssl -noout call * Store the password in cryptenroll keyring Alberto Planas Dominguez 2025-03-03 15:34:37 +00:00
  • 39018f655e - Update to version 1+git20250303.11b90a2: * Validate the ESP mount point * Do not recurse when called from snapper Alberto Planas Dominguez 2025-03-03 11:45:03 +00:00
  • 884372fee8 - Update to version 1+git20250227.9d0f768: * Make set-default-snapshot consistend Alberto Planas Dominguez 2025-02-27 14:56:34 +00:00
  • 53df65910f - Update to version 1+git20250227.0f0a096: * Fix typo in variable name * Update help entries * Fix wrong comparison Alberto Planas Dominguez 2025-02-27 14:23:35 +00:00
  • 00a7f008cc - Update to version 1+git20250227.da22e9b: * Measure all boot entries in grub2-bls * Drop wrong comment * Validate set-default parameter * Quiet openssl when gnerating RSA key Alberto Planas Dominguez 2025-02-27 09:35:08 +00:00
  • b787c0418a Accepting request 1248324 from devel:microos Dominique Leuenberger 2025-02-25 15:40:45 +00:00
  • cec9e6ae21 - Update to version 1+git20250225.b78f812: * Use also cryptenroll key to recover the volume key Alberto Planas Dominguez 2025-02-25 10:09:38 +00:00
  • 88534802cf - Update to version 1+git20250225.292283f: * Support UUID references in crypttab Alberto Planas Dominguez 2025-02-25 09:13:50 +00:00
  • 9e5c5c0186 - Update to version 1+git20250224.c9be3b6: * Do not use && when copying signature (bsc#1237505) Alberto Planas Dominguez 2025-02-24 14:31:29 +00:00
  • 1cb6a035de Accepting request 1247590 from devel:microos Dominique Leuenberger 2025-02-21 20:35:28 +00:00
  • b0022880b3 - Update to version 1+git20250221.19f7d1a: * Reformat the spec file * Rework keyctl calls to keep the session keyring Alberto Planas Dominguez 2025-02-21 09:05:20 +00:00
  • 473f5be80f Accepting request 1247068 from devel:microos Ana Guerrero 2025-02-19 15:01:38 +00:00
  • 94311d9d3a - Update to version 1+git20250219.a796c24: * generator: exit if /etc/crypttab is missing * Fix measure-pcr-validator StandardOutput - Update to version 1+git20250217.f216443: * Remove .conf suffix from grubenv (bsc#1237198) - Update to version 1+git20250214.ef3b642: * Add banner reporting PCR 15 mismatch * Generate PCR 15 predictions if crypttab changed * Create predictions for PCR 15 * Add measure-pcr-validator service * Order devices when FIDO2 keys are used * Set BuildArch to noarch * Add dracut measure-pcr module with generator * Add tpm2-pcr-measure crypttab parameter * Fix help indentation - Update to version 1+git20250210.45458c4: * Requires keyutils (bsc#1236940) - Update to version 1+git20250130.2bcbf46: * Recognize set-timeout -1 in systemd-boot (bsc#1236578) * Drop unused parameters * Remove interactive leftover * Add bash completions * Export options definition to function * Export command definition to function * Export bootctl evaluation to function * export image name setting to function * Remove UI command help * Mount devices and subvolumes for chroot * Set permission for new keys * Regenerate initrd if missing * Remove old initrd * Accept spaces or tabs when parsing crypttab * add info to --help about how to ignore devices * Do not include command line parameters before initrd= and BOOT_IMAGE= This is necessary because the kernel can inject command line options that are placed in front of these parameters. sdbootutil then picks these up on the next run and causes duplication of them, as the kernel will again inject the option. Now sdbootutil ignores these injected parameters. * Do not fail if the parent is missing * Drop extra echo * Fix 'if' expression * Fix enrollment method variable * Drop unused variables for TUI * Remove TUI components * Add --removable as alias for --portable * Show dracut output in verbose mode * Make if-else case statement * Add --pcr cli option - Update to version 1+git20241217.5aeb4e9: * Use only the first output line of findmount in free space calc - Update to version 1+git20241217.1370153: * Add trigger for grub2-bls - Update to version 1+git20241206.dccea55: * Fix quotes in bind mount command (bsc#1233378) * Allow multiple entries for initial measurements - Update to version 1+git20241126.83ebe2c: * Fix help for get-timeout * Add get default and timeout * Replace -a with && * Drop PATH field * sdbootutil-enroll: harden script against unexpected conditions - Update to version 1+git20241118.23c1900: * Fix missing grep file * Detect new bootctl error message * If BLI is not active use the loader.conf - Update to version 1+git20241112.ecf5f97: * Move enrollment from disk-encryption-tool * Use [/usr]/etc/default/fde-tools as config file - Update to version 1+git20241107.6f81ff3: * Add list-devices command * Ignore devices with x-sdbootutil.ignore mark * Quote variable expansion * Support empty crypttab options - Update to version 1+git20241107.542aa84: * Fix missing timeout parameter - Update to version 1+git20241105.3404bf8: * Do a cleanup before making free space * Simplify unlock mechanism and recovery key enroll * Drop generate-pin parameter * Indentation and comments fix * Measure grubenv * Add set-default and set-timout commands * rollback bootloader after setting default snapshot * Improve error checking and fix small bugs * Add --unlock argument * Use unique names for the kernel keyring * Add --generate-pin to generate a recovery PIN * Enroll a new recovery key * Bind mount snapshot dir onto itself before chroot. - Update to version 1+git20241017.34ee974: * Keep SELinux label of /etc/crypttab intact when changing options (boo#1231696) * Fix typo in update-entry help, should be /etc/kernel/cmdline - Update to version 1+git20241008.3df16d2: * Improve not found bootloader error msg - Update to version 1+git20241007.192698c: * Translate GRUB2 architecture name - Update to version 1+git20241004.a1bb60f: * Support bootloader switch * Update order after bootloader install * Use /etc/sysconfig/bootloader to untie detection * Reference to grub2-bls - Update to version 1+git20241002.7da4a47: * Do not specify bootloader requirement - Update to version 1+git20241002.7b8957c: * Requires udev for bootctl * Use chroot instead of --sysroot in dracut * Replace cut with idiomatic code * Show recovery PIN generated by systemd-pcrlock - Update to version 1+git20240912.02d30ed: * Generate predictions for update_entry - Update to version 1+git20240905.e7ca8cf: * Replace root=UUID= with root=device - Update to version 1+git20240903.81f1f40: * Generate new predictions for update_all_entries * Use raw option in jq update all entries - Update to version 1+git20240830.7f696c8: * Use parameter "snapshot" instead the global one * Add update-entry and update-all-entries commands * Generate tpm2 public key before enroll_pcroracle * Fix function names for enrolling pcr-oracle * Check if enroll functions worked correctly * Warn when pcrlock.json or tpm2-pcr-signature.json are missing - Update to version 1+git20240829.1b5aa4d: * Add --default-snapshot parameter (bsc#1224773) - Update to version 1+git20240823.30ef4f1: * Remove the executed line in grub2bls * Support new grub2-bls package - Update to version 1+git20240822.bc7e06b: * Hide exit code for set-default-snapshot plugin call - Update to version 1+git20240812.ee2298f: * Use arg_no_reuse_initrd as update_initrd * Reorder PIN and PW search * fix portable installation The fallback.efi should not be added when installing in portable mode * Use /run for tmpfiles instead of /etc - Update to version 1+git20240722.e6d7c91: * Fix early return value when cleaning pcrlock.d - Update to version 1+git20240719.36c650f: * Remove pcrlock.d if there are too many files * Limit LAST_WORKING_SNAPSHOTS to 3 - Update to version 1+git20240718.6fbaad1: * Enroll using pcr_oracle if pcrlock fails * Fix loader.conf measurement * Address some shellcheck issues * Implement basic [un]enroll commands * snapper: do not error if sdbootutil fails - Update to version 1+git20240716.bb40c38: * Add --only-default option for list-entries command * Turn off colors when the shell it not interactive * Support portable installation of bootloader This is useful to create portable drives, so the bootloader entry isn't created permenantly. - Update to version 1+git20240704.a2c5a26: * Complain if fde-tools is missing * Remove rpm scriptlets * Remove is_transactional check * Call regenerate-initrd-posttrans * Remove pcrlock files older than 1 week * Measure initial state from backup * Remove useless TODO comments * Rename variable to SDB_ADD_INITIAL_COMPONENT * Fix transactional check * Add system / snapper as prefix for tw/grub2-bls * Compose the entry file name in a single place * Make 'invert' a generic case * Make free space for new kernel / initrd * Replace match with test in jq * grub: add grub drive in initrd path * grub: blscfg is included in the image * Fix pcrlock_manual_raw call * Add emacs .dir-locals.el * Show success message * Use a recovery pin for re-enrollment * grub2: entries predictions as a single component * grub2: remove duplicate function * Add blscfg.mod in the ESP and update predictions * grub2: generate pcrlock predictions * Fix some typos - Update to version 1+git20240514.56dc89c: * Add show-entry command * Add SYSTEMD_COLORS flag * Add byte order mark to boot.csv - Update to version 1+git20240506.573a6a4: * Don't try to mess with overlayfs inside transaction * .spec - requires: dialog - Update to version 1+git20240410.3325802: * fallback for machine-id - Update to version 1+git20240408.49e4021: * Update requirements * Measure manually initrd if pcrlock fails * Set SYSTEMD_LOG_LEVEL if verbose * Only error out on empty machine-id when actually used * feat: add basic boot assessment * fix: use new os-release and machine-id files * dracut call: --add-device belongs to --sysroot * Make sdbootutil usable with no snapshot Systems - Update to version 1+git20240321.04bfbac: * Warning if make-policy do not register all PCRs - Update to version 1+git20240320.8b35615: * Revert "Remove GRUB2 package conflict" - Update to version 1+git20240314.3472899: * Add minimal grub configuration * Add systemd.machine_id to kernel command line * Add SNAPSHOT parameter to bootloader command * Remove GRUB2 package conflict * Resolve some shellcheck issues * Remove unused variable * Change tempfile name * needs-update and update meets grub2 * Consider grub2 when installing the bootloader * Add grub2 detector and command * fix: delete correct initrd file after installation * feat: add add-all-kernels-clean function * refactor: use snapshot as argument for all commands * Set SYSTEMD_LOG_LEVEL=warning for pcrlock * Don't require /etc/sysconfig/fde-tools for pcr-oracle * add loader.conf to locking * Make sure there are actually entries * Prefer pcr-oracle if it's actually configured * Don't log to syslog ourselves * Fix typo * fix: remove Tumbleweed version from regular entries - Update to version 1+git20240215.cb7e392: * Add --no-random-seed argument - Update to version 1+git20240214.ba81e0e: * Fix pcr-oracle use * Add device when generating initrd for snapshots * Use systemd-pcrlock * Pre-built initrd support * Add subvolumes_prefix support - Update to version 1+git20240122.c0d8f76: * Integrate with kernel-install * Rework kernel listing a bit * Add checks to list-entries * List entries for current system only by default * Fall back to loader.conf if setting efivar failed * Runtime determine kernel image name * Add list-snapshots * Add list-entries command - Update to version 1+git20240118.7e744b4: * Bind mount /etc inside the snapshot - Update to version 1+git20231221.42797ab: * Do not fail if LUKS2 section is empty - Update to version 1+git20231214.b186b2d: * Fix exit code * Revert "Add pcr predictions to initrd for now" - Update to version 1+git20231213.2a07af6: * Add update-predictions command * Predict all the entries - Update to version 1+git20231211.01c6a76: * Add ExclusiveArch for 64-bit EFI architectures - Update to version 1+git20231129.d7f3909: * Add pcr predictions to initrd for now * Generate new TPM2 predictions with pcr-oracle * Update file triggers * Fix exit code of update command * Add a %transfiletriggerin to update EFI binaries * Update help text - Update to version 1+git20231114.6bcf1d3: * Fix quoting when calling dracut - Update to version 1+git20231102.beb4c19: * Update sdboot in snapper hook * Install command with specific snapshot * Install sdbootutil marker next to loader * In t-u mode, don't call sdbootutil in rpm scriptlets - Update to version 1+git20231026.f43c33c: * Fix generating initrd for random snapshots - Update to version 1+git20231023.873adb9: * Use correct image name on aarch64 - Add changes from gh#openSUSE/sdbootutil#21: * sdbootutil.spec: Add missing efibootmgr dependency * sdbootutil.spec: Make sdbootutil-snapper a hard dependency - Update to version 1+git20231005.890f70c: * Add --no-reuse-initrd option * Refactor boot descriptive entries * feat: more descriptive bootmenu entries * Remove stray set -x * speed up snapper list * Fix misleading comment * Fix helptext - Update to version 1+git20230817.2a3cd34: * Ignore errors from efibootmgr * Update spec file * Add marker to flag installation using sdbootutil * Refactor and fix boot entry installation * Don't exit in warn() * feat: use arg_esp_path directly * fix: get esp_device from bootctl * fix: only install shim for secure boot * feat: create only non-existing entries & pass correct ESP partition * fix: make efibootmgr silent * feat: create boot menu entries when installed - Update to version 1+git20230814.38973c7: * Support purge-kernels * Fix postun * Remove debug logging - Only install the snapper plugin if sdbootutil is requested - Bypass git, owner is not available ATM - Update to version 1+git20230727.a0e666f: * Set and honor $SYSTEMD_ESP_PATH * rpm-script: don't remove kernel on reinstalls - Update to version 1+git20230726.a994d2e: * Fix installing extra kernels in MicroOS * Replace file triggers with scriptlet * Fix cleanup of rollback files * Don't install unchanged files * Add is-bootable and list-kernels commands * Add ARCHITECTURE.md which explains how the setup works * Add default loader config when installed - Update to version 1+git20230717.dac075e: * Install default boot loader in non-secure-boot case too - Update to version 1+git20230713.df6eaca: * Update features * Call stty only in interactive mode * silence stty errors - Update to version 1+git20230713.356f0c5: * Fix rpm dependencies - Update to version 1+git20230711.f5c7e48: * Fix setting root and rootflags - Update to version 1+git20230626.1ef6b4d: * creating /etc/kernel directory * Update help screen - Update to version 1+git20230615.587e134: * Handle out of space - initial package Alberto Planas Dominguez 2025-02-19 12:25:10 +00:00
  • 45befec6b7 - Update to version 1+git20250219.7ce1b12: * Fix measure-pcr-validator StandardOutput Alberto Planas Dominguez 2025-02-19 09:35:50 +00:00
  • 9fa0135c3d - Update to version 1+git20250217.f216443: * Remove .conf suffix from grubenv (bsc#1237198) Alberto Planas Dominguez 2025-02-17 14:03:10 +00:00
  • 33828251c3 - Update to version 1+git20250214.ef3b642: * Add banner reporting PCR 15 mismatch * Generate PCR 15 predictions if crypttab changed * Create predictions for PCR 15 * Add measure-pcr-validator service * Order devices when FIDO2 keys are used * Set BuildArch to noarch * Add dracut measure-pcr module with generator * Add tpm2-pcr-measure crypttab parameter * Fix help indentation Alberto Planas Dominguez 2025-02-14 17:06:19 +00:00
  • 3aa4449955 Accepting request 1244701 from devel:microos Ana Guerrero 2025-02-11 20:20:33 +00:00
  • 31607d092f - Update to version 1+git20250210.45458c4: * Requires keyutils (bsc#1236940) Alberto Planas Dominguez 2025-02-10 09:44:19 +00:00
  • 33941aec39 Accepting request 1241305 from devel:microos Ana Guerrero 2025-01-30 13:49:19 +00:00
  • cc7658e2fb - Update to version 1+git20250130.2bcbf46: * Recognize set-timeout -1 in systemd-boot (bsc#1236578) * Drop unused parameters * Remove interactive leftover * Add bash completions * Export options definition to function * Export command definition to function * Export bootctl evaluation to function * export image name setting to function * Remove UI command help * Mount devices and subvolumes for chroot * Set permission for new keys * Regenerate initrd if missing * Remove old initrd * Accept spaces or tabs when parsing crypttab * add info to --help about how to ignore devices * Do not include command line parameters before initrd= and BOOT_IMAGE= This is necessary because the kernel can inject command line options that are placed in front of these parameters. sdbootutil then picks these up on the next run and causes duplication of them, as the kernel will again inject the option. Now sdbootutil ignores these injected parameters. * Do not fail if the parent is missing * Drop extra echo * Fix 'if' expression * Fix enrollment method variable * Drop unused variables for TUI * Remove TUI components * Add --removable as alias for --portable * Show dracut output in verbose mode * Make if-else case statement * Add --pcr cli option Alberto Planas Dominguez 2025-01-30 09:12:21 +00:00
  • 30302c49c3 Accepting request 1231678 from devel:microos Ana Guerrero 2024-12-18 19:08:56 +00:00
  • e8dac1b5f3 - Update to version 1+git20241217.5aeb4e9: * Use only the first output line of findmount in free space calc Alberto Planas Dominguez 2024-12-17 11:56:00 +00:00
  • 73fcac9e6b - Update to version 1+git20241217.1370153: * Add trigger for grub2-bls Alberto Planas Dominguez 2024-12-17 09:23:26 +00:00
  • e7c76061bf Accepting request 1228721 from devel:microos Ana Guerrero 2024-12-08 10:36:13 +00:00
  • 94068b5272 - Update to version 1+git20241206.dccea55: * Fix quotes in bind mount command (bsc#1233378) * Allow multiple entries for initial measurements - Update to version 1+git20241126.83ebe2c: * Fix help for get-timeout * Add get default and timeout * Replace -a with && * Drop PATH field * sdbootutil-enroll: harden script against unexpected conditions - Update to version 1+git20241118.23c1900: * Fix missing grep file * Detect new bootctl error message * If BLI is not active use the loader.conf Alberto Planas Dominguez 2024-12-06 09:14:30 +00:00
  • 758be4f321 Accepting request 1223700 from devel:microos Ana Guerrero 2024-11-14 15:07:23 +00:00
  • 5aa7c76cea - Update to version 1+git20241112.ecf5f97: * Move enrollment from disk-encryption-tool * Use [/usr]/etc/default/fde-tools as config file Alberto Planas Dominguez 2024-11-12 14:00:52 +00:00
  • 0e021e6d7b Accepting request 1222582 from devel:microos Ana Guerrero 2024-11-08 10:56:24 +00:00
  • 25da927104 - Update to version 1+git20241107.6f81ff3: * Add list-devices command * Ignore devices with x-sdbootutil.ignore mark * Quote variable expansion * Support empty crypttab options Alberto Planas Dominguez 2024-11-07 20:14:08 +00:00
  • 30882390e4 Accepting request 1222027 from devel:microos Ana Guerrero 2024-11-07 15:24:03 +00:00
  • 80b3cd041c - Update to version 1+git20241107.542aa84: * Fix missing timeout parameter Alberto Planas Dominguez 2024-11-07 08:05:54 +00:00
  • 6688f0fe30 Accepting request 1221390 from devel:microos Ana Guerrero 2024-11-06 15:49:17 +00:00
  • a44f72d7a2 - Update to version 1+git20241105.3404bf8: * Do a cleanup before making free space * Simplify unlock mechanism and recovery key enroll * Drop generate-pin parameter * Indentation and comments fix * Measure grubenv * Add set-default and set-timout commands * rollback bootloader after setting default snapshot * Improve error checking and fix small bugs * Add --unlock argument * Use unique names for the kernel keyring * Add --generate-pin to generate a recovery PIN * Enroll a new recovery key * Bind mount snapshot dir onto itself before chroot. Alberto Planas Dominguez 2024-11-05 10:18:44 +00:00
  • a2f4f4dfe5 Accepting request 1208617 from devel:microos Ana Guerrero 2024-10-17 16:38:44 +00:00
  • 4167df4e0c (boo#1231696) Fabian Vogt 2024-10-17 11:24:16 +00:00
  • ba432678db - Update to version 1+git20241017.34ee974: * Keep SELinux label of /etc/crypttab intact when changing options * Fix typo in update-entry help, should be /etc/kernel/cmdline Alberto Planas Dominguez 2024-10-17 10:57:34 +00:00
  • 9eac8abb77 Accepting request 1206390 from devel:microos Ana Guerrero 2024-10-09 20:03:17 +00:00
  • 4d3ba64e06 - Update to version 1+git20241008.3df16d2: * Improve not found bootloader error msg Alberto Planas Dominguez 2024-10-08 19:47:11 +00:00
  • 480c4f11f5 Accepting request 1206081 from devel:microos Ana Guerrero 2024-10-08 15:16:33 +00:00
  • e77d759b76 - Update to version 1+git20241007.192698c: * Translate GRUB2 architecture name Alberto Planas Dominguez 2024-10-07 11:28:13 +00:00
  • 84dbef84b2 Accepting request 1205688 from devel:microos Ana Guerrero 2024-10-06 15:51:23 +00:00
  • 1eed149b89 - Update to version 1+git20241004.a1bb60f: * Support bootloader switch * Update order after bootloader install * Use /etc/sysconfig/bootloader to untie detection * Reference to grub2-bls Alberto Planas Dominguez 2024-10-04 12:23:44 +00:00
  • 187a2a37da Accepting request 1205163 from devel:microos Ana Guerrero 2024-10-02 19:32:57 +00:00
  • c77b13f7b3 - Update to version 1+git20241002.7da4a47: * Do not specify bootloader requirement Alberto Planas Dominguez 2024-10-02 09:18:43 +00:00
  • 477578b3b8 - Update to version 1+git20241002.7b8957c: * Requires udev for bootctl * Use chroot instead of --sysroot in dracut * Replace cut with idiomatic code * Show recovery PIN generated by systemd-pcrlock Alberto Planas Dominguez 2024-10-02 08:02:21 +00:00
  • 88ced9a516 - Update to version 1+git20240912.02d30ed: * Generate predictions for update_entry - Update to version 1+git20240905.e7ca8cf: * Replace root=UUID= with root=device Alberto Planas Dominguez 2024-09-12 14:05:06 +00:00
  • 269eae84ae Accepting request 1198470 from devel:microos Dominique Leuenberger 2024-09-04 11:22:18 +00:00
  • 2c26728d45 - Update to version 1+git20240903.81f1f40: * Generate new predictions for update_all_entries * Use raw option in jq update all entries Alberto Planas Dominguez 2024-09-03 12:13:48 +00:00
  • 0928c8bdce Accepting request 1197874 from devel:microos Dominique Leuenberger 2024-09-01 17:20:58 +00:00
  • a89cca14eb - Update to version 1+git20240830.7f696c8: * Use parameter "snapshot" instead the global one * Add update-entry and update-all-entries commands * Generate tpm2 public key before enroll_pcroracle * Fix function names for enrolling pcr-oracle * Check if enroll functions worked correctly * Warn when pcrlock.json or tpm2-pcr-signature.json are missing Alberto Planas Dominguez 2024-08-30 13:58:49 +00:00
  • 29b814d86f Accepting request 1197503 from devel:microos Dominique Leuenberger 2024-08-30 11:25:45 +00:00
  • 86de5c0d2b - Update to version 1+git20240829.1b5aa4d: * Add --default-snapshot parameter (bsc#1224773) Alberto Planas Dominguez 2024-08-29 17:22:28 +00:00
  • 483e381961 Accepting request 1196259 from devel:microos Dominique Leuenberger 2024-08-29 13:42:45 +00:00
  • 628bf4a29a - Update to version 1+git20240823.30ef4f1: * Remove the executed line in grub2bls * Support new grub2-bls package Alberto Planas Dominguez 2024-08-27 11:29:28 +00:00
  • 38a1ac7781 Accepting request 1195568 from devel:microos Ana Guerrero 2024-08-23 20:26:08 +00:00
  • b0634825d6 - Update to version 1+git20240822.bc7e06b: * Hide exit code for set-default-snapshot plugin call Alberto Planas Dominguez 2024-08-22 14:26:02 +00:00
  • 3488e0cbb1 Accepting request 1193395 from devel:microos Dominique Leuenberger 2024-08-13 11:22:23 +00:00
  • b0a0d0486d - Update to version 1+git20240812.ee2298f: * Use arg_no_reuse_initrd as update_initrd * Reorder PIN and PW search * fix portable installation The fallback.efi should not be added when installing in portable mode * Use /run for tmpfiles instead of /etc Alberto Planas Dominguez 2024-08-12 11:22:52 +00:00
  • 60f2777471 Accepting request 1188972 from devel:microos Ana Guerrero 2024-07-22 15:14:17 +00:00
  • 8b321ad3b8 - Update to version 1+git20240722.e6d7c91: * Fix early return value when cleaning pcrlock.d Alberto Planas Dominguez 2024-07-22 09:28:32 +00:00
  • 615f3d2d34 Accepting request 1188690 from devel:microos Ana Guerrero 2024-07-19 15:59:04 +00:00
  • d7060dee72 - Update to version 1+git20240719.36c650f: * Remove pcrlock.d if there are too many files * Limit LAST_WORKING_SNAPSHOTS to 3 Alberto Planas Dominguez 2024-07-19 14:03:42 +00:00
  • 25a6872ac6 Accepting request 1188375 from devel:microos Ana Guerrero 2024-07-18 17:15:13 +00:00
  • af298aff28 - Update to version 1+git20240718.6fbaad1: * Enroll using pcr_oracle if pcrlock fails * Fix loader.conf measurement * Address some shellcheck issues * Implement basic [un]enroll commands * snapper: do not error if sdbootutil fails Alberto Planas Dominguez 2024-07-18 10:08:27 +00:00
  • 7eedc5ddc7 Accepting request 1186164 from devel:microos Ana Guerrero 2024-07-17 13:14:01 +00:00
  • 007dfd29bf Accepting request 1187918 from home:aplanas:branches:devel:microos Alberto Planas Dominguez 2024-07-16 12:27:12 +00:00
  • 934a0083ff - Update to version 1+git20240704.a2c5a26: * Complain if fde-tools is missing * Remove rpm scriptlets * Remove is_transactional check * Call regenerate-initrd-posttrans * Remove pcrlock files older than 1 week * Measure initial state from backup * Remove useless TODO comments * Rename variable to SDB_ADD_INITIAL_COMPONENT * Fix transactional check * Add system / snapper as prefix for tw/grub2-bls * Compose the entry file name in a single place * Make 'invert' a generic case * Make free space for new kernel / initrd * Replace match with test in jq * grub: add grub drive in initrd path * grub: blscfg is included in the image * Fix pcrlock_manual_raw call * Add emacs .dir-locals.el * Show success message * Use a recovery pin for re-enrollment * grub2: entries predictions as a single component * grub2: remove duplicate function * Add blscfg.mod in the ESP and update predictions * grub2: generate pcrlock predictions * Fix some typos Alberto Planas Dominguez 2024-07-08 12:26:05 +00:00
  • d1d3c71884 Accepting request 1173988 from devel:microos Ana Guerrero 2024-05-16 15:12:36 +00:00
  • a8e1387880 Accepting request 1173984 from home:lnussel:branches:devel:microos Fabian Vogt 2024-05-14 13:02:51 +00:00
  • 491973dbe9 Accepting request 1172191 from devel:microos Dominique Leuenberger 2024-05-07 16:02:32 +00:00
  • 64eb9afd73 Accepting request 1172158 from home:lnussel:branches:devel:microos Ludwig Nussel 2024-05-06 14:03:24 +00:00
  • 3418796e1a Accepting request 1166658 from devel:microos Ana Guerrero 2024-04-10 15:48:45 +00:00
  • d6264212c8 Accepting request 1166657 from home:lnussel:branches:devel:microos Ludwig Nussel 2024-04-10 12:52:33 +00:00
  • b3ad7f3357 Accepting request 1166226 from devel:microos Ana Guerrero 2024-04-09 14:46:13 +00:00
  • 43dd67a981 Accepting request 1166225 from home:lnussel:branches:devel:microos Ludwig Nussel 2024-04-08 14:35:23 +00:00
  • 4045328023 Accepting request 1161328 from devel:microos Ana Guerrero 2024-03-25 20:07:14 +00:00
  • 67ff5becb9 Accepting request 1161327 from home:lnussel:branches:devel:microos Ludwig Nussel 2024-03-25 08:08:21 +00:00
  • 81d461ca53 Accepting request 1159807 from devel:microos Ana Guerrero 2024-03-22 14:17:15 +00:00
  • ac83e2befe Accepting request 1159806 from home:lnussel:branches:devel:microos Ludwig Nussel 2024-03-20 10:03:42 +00:00
  • df0086eeb4 Accepting request 1159009 from home:lnussel:branches:devel:microos Ludwig Nussel 2024-03-18 13:07:59 +00:00
  • 4cefe47274 Accepting request 1148172 from devel:microos Ana Guerrero 2024-02-21 16:52:29 +00:00
  • e88dcbaf4e Accepting request 1148170 from home:lnussel:branches:devel:microos Ludwig Nussel 2024-02-20 15:19:04 +00:00
  • d3f786e732 Accepting request 1146890 from home:lnussel:branches:devel:microos Ludwig Nussel 2024-02-19 14:18:45 +00:00
  • f24a4f46da Accepting request 1146526 from devel:microos Ana Guerrero 2024-02-15 19:58:54 +00:00
  • db45b24179 Accepting request 1146520 from home:lnussel:branches:devel:microos Fabian Vogt 2024-02-14 09:09:29 +00:00
  • 78f08a8f8e Accepting request 1140775 from devel:microos Ana Guerrero 2024-01-24 18:04:31 +00:00
  • 3838934deb - Update to version 1+git20240122.c0d8f76: * Integrate with kernel-install * Rework kernel listing a bit * Add checks to list-entries * List entries for current system only by default * Fall back to loader.conf if setting efivar failed * Runtime determine kernel image name * Add list-snapshots * Add list-entries command Ludwig Nussel 2024-01-23 07:46:48 +00:00
  • cbd18f6a5e Accepting request 1140600 from devel:microos Ana Guerrero 2024-01-22 19:31:15 +00:00