3a2248b45e
- Update shim-install to support FDE + Read GRUB_CRYPTODISK_PASSWORD and GRUB_TPM2_SEALED_KEY to create the proper cryptomount command for grub.cfg + Save the PCR snapshot if grub2 supports the command + Support 'no_grub_install' to skip grub2-install + Detect the OS ID of openSUSE Leap OBS-URL: https://build.opensuse.org/request/show/1091184 OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim-leap?expand=0&rev=38 |
||
---|---|---|
.gitattributes | ||
.gitignore | ||
README | ||
shim-15.4-lp152.4.17.1.x86_64.rpm | ||
shim-install | ||
shim-leap.changes | ||
shim-leap.spec |
Since shim needs a "stable" environment to reproduce the binary to match the signature from UEFI CA, it's difficult to maintain shim in Tumbleweed due to the nature of a rolling release distro. Instead of compiling shim for Tumbleweed, we directly import the binary the latest stable Leap release to maintain a stable and reproducible shim binary.