|
|
23696729d5
|
shim.changes: Update change log for Fixed some issues in RPM Macro
and pretrans lus script with the old rpm-4.14.3 on SLE-15-SP3
|
2025-11-28 16:35:03 +08:00 |
|
|
|
aa888406ee
|
shim.changes: Update change log for adding Microsoft-signed 16.1 shim
|
2025-11-26 15:51:58 +08:00 |
|
|
|
a6485e1d93
|
shim.changes: Fix typo
|
2025-11-17 18:52:13 +08:00 |
|
|
|
31c000ebae
|
Add a pretrans script to verify that the necessary certificate is in the UEFI db
Signed-off-by: Chun-Yi Lee <jlee@suse.com>
|
2025-10-14 00:47:16 +08:00 |
|
|
|
8a094dabf9
|
Removed two patches because they are merged to shim 16.1
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=230
|
2025-08-19 07:50:35 +00:00 |
|
|
|
6dc4e55076
|
Update to 16.1
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=229
|
2025-08-19 06:47:04 +00:00 |
|
|
|
eb1ced8475
|
SLE shim should includes vendor-dbx-sles.esl instead of vendor-dbx-opensuse.esl
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=228
|
2025-08-12 03:09:17 +00:00 |
|
|
|
ec10240d7d
|
Building with the latest version of gcc in the codebase (bsc#1247432)
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=227
|
2025-08-06 06:39:11 +00:00 |
|
|
|
a21b86b1b9
|
Add revoked-openSUSE-UEFI-SIGN-Certificate-2022-06.crt
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=226
|
2025-08-03 15:23:10 +00:00 |
|
|
|
2e9102bfde
|
Add shim-disable-dxe-get-mem-attrs.patch (bsc#1247432)
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=225
|
2025-07-31 13:00:46 +00:00 |
|
|
|
4746dbe081
|
Removed pre script in shim package for checking UEFI db has valid key for shim because it will interrupt group update of RPMs
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=224
|
2025-07-28 16:41:26 +00:00 |
|
|
|
d29b2b2cc6
|
Add pre script to shim package for checking UEFI db has valid key for shim.
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=223
|
2025-07-27 05:23:54 +00:00 |
|
|
|
b7c7f7042a
|
Building out shim.nx.efi for supporting non-executable (bsc#1205588)
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=222
|
2025-07-25 06:37:09 +00:00 |
|
|
|
b078c5cf79
|
Replace shim-16.0.tar.bz2 by upstream tarball
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=221
|
2025-07-08 14:45:51 +00:00 |
|
|
|
cca66ed8c7
|
bugowner: dtseng\nSubmitting for upgrading shim to v16.0 (bsc#1240871)
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=220
|
2025-06-16 03:45:08 +00:00 |
|
|
|
05905a4760
|
bugowner: dtseng\nSubmitting for upgrading shim to v16.0 (bsc#1240871)
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=219
|
2025-06-02 05:53:58 +00:00 |
|
|
|
23fef8ea41
|
bugowner: dtseng\nSubmitting for upgrading shim to v16.0 (bsc#1240871)
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=218
|
2025-05-12 07:55:45 +00:00 |
|
|
|
cb2d0c2d89
|
- undefine %_enable_debug_packages to fix building with rpm-4.20
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=217
|
2024-12-20 10:36:18 +00:00 |
|
|
|
f78b88d606
|
Accepting request 1201941 from home:gary_lin:branches:devel:openSUSE:Factory
- Update shim-install to limit the scope of the 'removable'
SL-Micro to the image booting with TPM2 unsealing (bsc#1210382)
* 769e41d Limit the removable option to encrypted SL-Micro
OBS-URL: https://build.opensuse.org/request/show/1201941
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=216
|
2024-10-15 02:08:00 +00:00 |
|
|
|
e246151428
|
Accepting request 1201364 from home:gary_lin:branches:devel:openSUSE:Factory
- Update shim-install to apply the missing fix for openSUSE Leap
(bsc#1210382)
* 86b73d1 Fix that bootx64.efi is not updated on Leap
- Update shim-install to use the 'removable' way for SL-Micro
(bsc#1230316)
* 433cc4e Always use the removable way for SL-Micro
OBS-URL: https://build.opensuse.org/request/show/1201364
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=215
|
2024-09-18 04:26:12 +00:00 |
|
Tseng
|
e6086c9560
|
Accepting request 1184770 from home:dtseng:branches:devel:openSUSE:Factory
bugowner: dtseng
Submitting for updating asc files after being signed back from Microsoft
OBS-URL: https://build.opensuse.org/request/show/1184770
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=214
|
2024-07-02 05:35:57 +00:00 |
|
Tseng
|
fe5c6d29be
|
Accepting request 1183124 from home:dtseng:branches:devel:openSUSE:Factory
bugowner: dtseng
Submitting for updating asc files after being signed back from Microsoft
OBS-URL: https://build.opensuse.org/request/show/1183124
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=213
|
2024-06-25 09:12:15 +00:00 |
|
|
|
4af5b3f4d4
|
Accepting request 1164001 from home:gary_lin:branches:devel:openSUSE:Factory
- Introduce %shim_use_fde_tpm_helper macro so that the project
can include the fde-tpm-helper-macros for the build targets
other than Tumbleweed
OBS-URL: https://build.opensuse.org/request/show/1164001
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=212
|
2024-04-02 04:26:58 +00:00 |
|
|
|
b7db283760
|
Accepting request 1151489 from home:dimstar:rpm4.20:s
Prepare for RPM 4.20
OBS-URL: https://build.opensuse.org/request/show/1151489
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=211
|
2024-03-05 09:01:55 +00:00 |
|
|
|
8f7d539eb7
|
Accepting request 1147310 from home:joeyli:branches:devel:openSUSE:Factory
Add suffix string of project to filename of included certificates
OBS-URL: https://build.opensuse.org/request/show/1147310
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=210
|
2024-02-17 10:35:28 +00:00 |
|
|
|
e7152e6c04
|
Accepting request 1146844 from home:joeyli:branches:devel:openSUSE:Factory
Sync shim.spec and changelog between openSUSE:Factory/shim with SLE-15-SP3/shim
OBS-URL: https://build.opensuse.org/request/show/1146844
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=209
|
2024-02-15 13:09:03 +00:00 |
|
|
|
05ae7fe0d8
|
Accepting request 1144843 from home:gary_lin:branches:devel:openSUSE:Factory
- Update shim-install to set the TPM2 SRK algorithm (bsc#1213945)
92d0f4305df73 Set the SRK algorithm for the TPM2 protector
OBS-URL: https://build.opensuse.org/request/show/1144843
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=208
|
2024-02-15 08:29:23 +00:00 |
|
|
|
e4f7469733
|
Accepting request 1141279 from home:lnussel:branches:devel:openSUSE:Factory
- Generate dbx during build so we don't include binary files in sources
OBS-URL: https://build.opensuse.org/request/show/1141279
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=207
|
2024-02-15 08:27:36 +00:00 |
|
Tseng
|
ffda8d5b51
|
Accepting request 1143635 from home:gary_lin:branches:devel:openSUSE:Factory
- Limit the requirement of fde-tpm-helper-macros to the distro with
suse_version 1600 and above (bsc#1219460)
OBS-URL: https://build.opensuse.org/request/show/1143635
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=206
|
2024-02-05 08:55:58 +00:00 |
|
|
|
6e9e2655ab
|
Accepting request 1142576 from home:dtseng:branches:devel:openSUSE:Factory
bugowner: dtseng
Submitting for upgrading shim to v15.8 (bsc#1215099, bsc#1215098,bsc#1215100,bsc#1215101,bsc#1215102,and bsc#1215103)
OBS-URL: https://build.opensuse.org/request/show/1142576
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=205
|
2024-02-01 07:25:56 +00:00 |
|
Ludwig Nussel
|
a86220a02f
|
Accepting request 1115842 from home:lnussel:branches:devel:openSUSE:Factory
- Don't require grub so shim can still be used with systemd-boot
OBS-URL: https://build.opensuse.org/request/show/1115842
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=204
|
2023-10-10 09:27:16 +00:00 |
|
|
|
c5f457c08d
|
Accepting request 1112452 from home:gary_lin:branches:devel:openSUSE:Factory
- Update shim-install to fix boot failure of ext4 root file system
on RAID10 (bsc#1205855)
226c94ca5cfca Use hint in looking for root if possible
- Adopt the macros from fde-tpm-helper-macros to update the
signature in the sealed key after a bootloader upgrade
The macros package depends on the latest fde-tools:
https://build.opensuse.org/request/show/1112138
OBS-URL: https://build.opensuse.org/request/show/1112452
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=203
|
2023-09-22 08:46:59 +00:00 |
|
|
|
b90dab54cc
|
Accepting request 1087321 from home:gary_lin:branches:devel:openSUSE:Factory
- Update shim-install to amend full disk encryption support
b540061e041b Adopt TPM 2.0 Key File for grub2 TPM 2.0 protector
f2e8143ce831 Use the long name to specify the grub2 key protector
72830120e5ea cryptodisk: support TPM authorized policies
49e7a0d307f3 Do not use tpm_record_pcrs unless the command is in command.lst
OBS-URL: https://build.opensuse.org/request/show/1087321
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=202
|
2023-05-25 12:41:58 +00:00 |
|
|
|
84a3ac6c45
|
Accepting request 1078223 from home:joeyli:branches:devel:openSUSE:Factory
Removed POST_PROCESS_PE_FLAGS=-N from the build command in shim.spec (bsc#1205588)
OBS-URL: https://build.opensuse.org/request/show/1078223
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=201
|
2023-04-10 06:10:02 +00:00 |
|
|
|
8dffdb384c
|
Accepting request 1057932 from home:joeyli:branches:devel:openSUSE:Factory
Removed shim-bsc1198101-opensuse-cert-prompt.patch (bsc#1198101)
OBS-URL: https://build.opensuse.org/request/show/1057932
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=200
|
2023-01-12 09:08:02 +00:00 |
|
|
|
171b8de0fc
|
Accepting request 1041831 from home:joeyli:branches:devel:openSUSE:Factory
Modified shim-install, add patches to support full disk encryption: (jsc#PED-922)
OBS-URL: https://build.opensuse.org/request/show/1041831
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=199
|
2022-12-09 09:53:50 +00:00 |
|
|
|
34a594d236
|
Accepting request 1037456 from home:joeyli:branches:devel:openSUSE:Factory
Add POST_PROCESS_PE_FLAGS=-N to the build command in shim.spec to disable the NX compatibility flag when using post-process-pe because grub2 is not ready. (bsc#1205588)
OBS-URL: https://build.opensuse.org/request/show/1037456
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=198
|
2022-11-23 07:50:36 +00:00 |
|
|
|
ccd71ae517
|
Accepting request 1037005 from home:joeyli:branches:devel:openSUSE:Factory
Add shim-Enable-the-NX-compatibility-flag-by-default.patch to enable the NX compatibility flag by default. (jsc#PED-127)
OBS-URL: https://build.opensuse.org/request/show/1037005
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=197
|
2022-11-21 05:00:30 +00:00 |
|
|
|
958db7043d
|
Accepting request 1036528 from home:joeyli:branches:devel:openSUSE:Factory
Drop upstreamed patch shim-Enable-TDX-measurement-to-RTMR-register.patch (jsc#PED-1273)
OBS-URL: https://build.opensuse.org/request/show/1036528
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=196
|
2022-11-18 04:37:27 +00:00 |
|
|
|
b7972463e9
|
Accepting request 1036423 from home:joeyli:branches:devel:openSUSE:Factory
Update to 15.7 (bsc#1198458)(jsc#PED-127)
OBS-URL: https://build.opensuse.org/request/show/1036423
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=195
|
2022-11-17 10:52:49 +00:00 |
|
|
|
e8b8c97820
|
Accepting request 1035798 from home:joeyli:branches:devel:openSUSE:Factory
Add shim-jscPED-127-upgrade-shim-in-SLE15-SP5.patch for backporting the following patches between 15.6 with aa1b289a1a (jsc#PED-127)
OBS-URL: https://build.opensuse.org/request/show/1035798
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=194
|
2022-11-15 09:50:55 +00:00 |
|
|
|
63e4498fc9
|
Accepting request 1006812 from home:michael-chang:branches:devel:openSUSE:Factory
- shim-install: ensure grub.cfg created is not overwritten after
installing grub related files
OBS-URL: https://build.opensuse.org/request/show/1006812
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=193
|
2022-09-30 06:58:17 +00:00 |
|
|
|
2386bd59cb
|
Accepting request 1002927 from home:KHanich:branches:devel:openSUSE:Factory
- Add logic to shim.spec to only set sbat policy when efivarfs is writeable.
(bsc#1201066)
OBS-URL: https://build.opensuse.org/request/show/1002927
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=192
|
2022-09-16 06:35:39 +00:00 |
|
|
|
a379c7b18b
|
Accepting request 993203 from home:joeyli:branches:devel:openSUSE:Factory
Add logic to shim.spec for detecting --set-sbat-policy option before using mokutil to set sbat policy. (bsc#1202120)
OBS-URL: https://build.opensuse.org/request/show/993203
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=191
|
2022-08-05 05:58:36 +00:00 |
|
|
|
63fb624566
|
Accepting request 991618 from home:joeyli:branches:devel:openSUSE:Factory
Change the URL in SBAT section to mail:security@suse.de. (bsc#1193282)
OBS-URL: https://build.opensuse.org/request/show/991618
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=190
|
2022-07-29 02:47:14 +00:00 |
|
|
|
3bb7cc18a5
|
Accepting request 991171 from home:joeyli:branches:devel:openSUSE:Factory
Revoked the change in shim.spec for use common SBAT values (boo#1193282) (bsc#1198458)
OBS-URL: https://build.opensuse.org/request/show/991171
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=189
|
2022-07-26 04:16:19 +00:00 |
|
|
|
20e705b979
|
Accepting request 971203 from home:lnussel:branches:Base:System
- use common SBAT values (boo#1193282)
OBS-URL: https://build.opensuse.org/request/show/971203
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=188
|
2022-07-14 02:23:22 +00:00 |
|
|
|
7410f7aef0
|
Accepting request 985418 from home:joeyli:branches:devel:openSUSE:Factory
Update to 15.6 (bsc#1198458)
OBS-URL: https://build.opensuse.org/request/show/985418
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=187
|
2022-06-28 05:59:27 +00:00 |
|
|
|
182fd24b7c
|
Accepting request 903339 from home:gary_lin:branches:devel:openSUSE:Factory
avoid deleting the mirrored RT variables (bsc#1187696)
OBS-URL: https://build.opensuse.org/request/show/903339
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=186
|
2021-07-01 06:13:57 +00:00 |
|
|
|
4e7f70bc3a
|
Accepting request 901235 from home:gary_lin:branches:devel:openSUSE:Factory
- Add shim-bsc1185232-fix-config-table-copying.patch to avoid
buffer overflow when copying data to the MOK config table
(bsc#1185232)
OBS-URL: https://build.opensuse.org/request/show/901235
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=185
|
2021-06-22 02:03:16 +00:00 |
|