From 2176e5a32f098d8f7622444176ebeb2f1319debf9c37a95804ffbd6452ddcda3 Mon Sep 17 00:00:00 2001 From: Stephan Kulow Date: Wed, 3 Sep 2014 13:40:07 +0000 Subject: [PATCH] Accepting request 247405 from home:lnussel:branches:devel:openSUSE:Factory - re-introduce build failure if shim_enforce_ms_signature is defined. That way a project like openSUSE:Factory can decide whether or not shim needs a valid MS signature. OBS-URL: https://build.opensuse.org/request/show/247405 OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=86 --- shim.changes | 7 +++++++ shim.spec | 3 +++ 2 files changed, 10 insertions(+) diff --git a/shim.changes b/shim.changes index ed04139..e664390 100644 --- a/shim.changes +++ b/shim.changes @@ -1,3 +1,10 @@ +------------------------------------------------------------------- +Wed Sep 3 12:32:25 UTC 2014 - lnussel@suse.de + +- re-introduce build failure if shim_enforce_ms_signature is defined. That way + a project like openSUSE:Factory can decide whether or not shim needs a valid + MS signature. + ------------------------------------------------------------------- Tue Aug 19 04:38:36 UTC 2014 - glin@suse.com diff --git a/shim.spec b/shim.spec index cba47de..c9e771b 100644 --- a/shim.spec +++ b/shim.spec @@ -165,6 +165,9 @@ for suffix in "${suffixes[@]}"; do cat hash1 hash2 if ! cmp -s hash1 hash2; then echo "ERROR: $suffix binary changed, need to request new signature!" +%if %{defined shim_enforce_ms_signature} + false +%endif mv shim.efi.bak shim-$suffix.efi rm shim.efi else