Commit Graph

121 Commits

Author SHA256 Message Date
Gary Ching-Pang Lin
ca285f90f5 Accepting request 824673 from home:gary_lin:branches:devel:openSUSE:Factory
Amend the check of %shim_enforce_ms_signature so that we can disable the signature check by defining shim_enforce_ms_signature as 0

OBS-URL: https://build.opensuse.org/request/show/824673
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=162
2020-08-06 10:25:36 +00:00
Gary Ching-Pang Lin
761179927f Accepting request 824566 from home:gary_lin:branches:devel:openSUSE:Factory
Updated openSUSE signature

OBS-URL: https://build.opensuse.org/request/show/824566
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=161
2020-08-06 03:10:22 +00:00
Gary Ching-Pang Lin
1a492cd8bd Accepting request 822928 from home:gary_lin:branches:devel:openSUSE:Factory
Update the license header patch (bsc#1174512)

OBS-URL: https://build.opensuse.org/request/show/822928
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=160
2020-07-27 07:40:45 +00:00
Gary Ching-Pang Lin
ccb8d59de9 Accepting request 822324 from home:gary_lin:branches:devel:openSUSE:Factory
Update the path to grub-tpm.efi in shim-install (bsc#1174320)

OBS-URL: https://build.opensuse.org/request/show/822324
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=159
2020-07-23 08:39:45 +00:00
Gary Ching-Pang Lin
f0bb3978c4 Accepting request 819890 from home:gary_lin:branches:devel:openSUSE:Factory
only check EFI variable copying when Secure Boot is enabled (bsc#1173411)

OBS-URL: https://build.opensuse.org/request/show/819890
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=158
2020-07-10 07:26:45 +00:00
Gary Ching-Pang Lin
f673bb4d2e Accepting request 790062 from home:gary_lin:branches:devel:openSUSE:Factory
Use the full path of efibootmgr to avoid errors when invoking shim-install from packagekitd (bsc#1168104)

OBS-URL: https://build.opensuse.org/request/show/790062
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=157
2020-03-31 09:46:57 +00:00
Gary Ching-Pang Lin
d2c2a9d07b Accepting request 789643 from home:gary_lin:branches:devel:openSUSE:Factory
Use "suse_version" instead of "sle_version" to avoid shim_lib64_share_compat being set in Tumbleweed forever.

OBS-URL: https://build.opensuse.org/request/show/789643
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=156
2020-03-30 06:34:16 +00:00
Gary Ching-Pang Lin
e0cafca96d - Add shim-fix-gnu-efi-3.0.11.patch to fix the build error caused
by the upgrade of gnu-efi

OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=155
2020-03-16 09:43:20 +00:00
Gary Ching-Pang Lin
7ef93b059a Accepting request 751177 from home:michael-chang:branches:devel:openSUSE:Factory
- shim-install: add check for btrfs is used as root file system to enable
  relative path lookup for file. (bsc#1153953)

OBS-URL: https://build.opensuse.org/request/show/751177
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=154
2019-11-27 07:50:22 +00:00
Gary Ching-Pang Lin
441cbe7c4c Accepting request 723852 from home:gary_lin:branches:devel:openSUSE:Factory
Fix a typo in shim-install (bsc#1145802)

OBS-URL: https://build.opensuse.org/request/show/723852
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=153
2019-08-16 04:12:38 +00:00
Gary Ching-Pang Lin
283ffe9359 - Add gcc9-fix-warnings.patch (bsc#1121268).
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=152
2019-04-19 10:33:47 +00:00
Gary Ching-Pang Lin
63fdae9097 Accepting request 679210 from home:marxin:branches:devel:openSUSE:Factory
- Add gcc9-fix-warnings.patch (bsc#1121268).

OBS-URL: https://build.opensuse.org/request/show/679210
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=151
2019-04-19 10:28:20 +00:00
Gary Ching-Pang Lin
34ba35f99d Accepting request 694230 from home:gary_lin:branches:devel:openSUSE:Factory
Add shim-opensuse-signed.efi, the openSUSE shim-15+git47 binary (bsc#1113225)

OBS-URL: https://build.opensuse.org/request/show/694230
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=150
2019-04-15 10:37:44 +00:00
Gary Ching-Pang Lin
21b22c170b Accepting request 693691 from home:gary_lin:branches:devel:openSUSE:Factory
- Disable AArch64 build (FATE#325971)
- Updated shim signature: signature-sles.x86_64.asc (bsc#1120026)

OBS-URL: https://build.opensuse.org/request/show/693691
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=149
2019-04-12 10:19:00 +00:00
Gary Ching-Pang Lin
cffc5113b4 Accepting request 676201 from home:rwill:branches:Base:System
- Fix conditions for '/usr/share/efi'-move  (FATE#326960)

OBS-URL: https://build.opensuse.org/request/show/676201
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=148
2019-02-15 03:26:41 +00:00
Gary Ching-Pang Lin
6613ee1088 Accepting request 668949 from home:gary_lin:branches:devel:openSUSE:Factory
Amend shim.spec to remove $RPM_BUILD_ROOT

OBS-URL: https://build.opensuse.org/request/show/668949
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=147
2019-01-28 03:29:25 +00:00
Gary Ching-Pang Lin
f402a003c4 Accepting request 668546 from home:gary_lin:branches:devel:openSUSE:Factory
- Move 'efi'-executables to '/usr/share/efi'  (FATE#326960)
  (preparing the move to 'noarch' for this package)

OBS-URL: https://build.opensuse.org/request/show/668546
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=146
2019-01-25 09:28:34 +00:00
Gary Ching-Pang Lin
426b9f297b Accepting request 665689 from home:gary_lin:branches:devel:openSUSE:Factory
Update shim-install to handle the partitioned MD devices (bsc#1119762, bsc#1119763)

OBS-URL: https://build.opensuse.org/request/show/665689
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=145
2019-01-14 10:23:56 +00:00
Gary Ching-Pang Lin
f7b3e9f399 Accepting request 660225 from home:gary_lin:branches:devel:openSUSE:Factory
- Update to 15+git47 (bsc#1120026, FATE#325971)
- Retire the old openSUSE 4096 bit certificate

OBS-URL: https://build.opensuse.org/request/show/660225
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=144
2018-12-20 08:53:52 +00:00
Gary Ching-Pang Lin
a0cfc31263 Accepting request 655465 from home:gary_lin:branches:devel:openSUSE:Factory
- Update shim-install to specify the target for grub2-install and
  change the boot efi file name according to the architecture
  (bsc#1118363, FATE#325971)

OBS-URL: https://build.opensuse.org/request/show/655465
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=143
2018-12-06 03:11:43 +00:00
Gary Ching-Pang Lin
3f0c0279d9 Accepting request 634117 from home:gary_lin:branches:devel:openSUSE:Factory
- Enable AArch64 build (FATE#325971)
  + Also add the aarch64 signature files and rename the x86_64
    signature files

OBS-URL: https://build.opensuse.org/request/show/634117
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=142
2018-09-07 09:39:12 +00:00
Gary Ching-Pang Lin
cdcbabe549 Accepting request 612951 from home:gary_lin:branches:devel:openSUSE:Factory
Add shim-bsc1092000-fallback-menu.patch to show a menu before system reset ((bsc#1092000))

OBS-URL: https://build.opensuse.org/request/show/612951
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=141
2018-05-30 03:26:13 +00:00
Gary Ching-Pang Lin
ddc96299d3 Accepting request 595021 from home:gary_lin:branches:devel:openSUSE:Factory
avoid double-freeing after enrolling a key from the disk (bsc#1088585)

OBS-URL: https://build.opensuse.org/request/show/595021
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=140
2018-04-10 04:33:05 +00:00
Gary Ching-Pang Lin
206b9df42b Accepting request 593109 from home:gary_lin:branches:devel:openSUSE:Factory
- Install the certificates with a shim suffix to avoid conflicting
  with other packages (bsc#1087847)

OBS-URL: https://build.opensuse.org/request/show/593109
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=139
2018-04-03 09:13:29 +00:00
Gary Ching-Pang Lin
66ba0f1262 Accepting request 590555 from home:gary_lin:branches:devel:openSUSE:Factory
- Add the missing leading backlash to the DEFAULT_LOADER
  (bsc#1086589)

OBS-URL: https://build.opensuse.org/request/show/590555
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=138
2018-03-23 06:40:17 +00:00
Gary Ching-Pang Lin
81fe5bce9e Accepting request 561805 from home:gary_lin:branches:devel:openSUSE:Factory
Amend the device path matching rule for httpboot (bsc#1065370)

OBS-URL: https://build.opensuse.org/request/show/561805
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=137
2018-01-05 09:03:39 +00:00
Gary Ching-Pang Lin
7c21feb97d Accepting request 561563 from home:gary_lin:branches:devel:openSUSE:Factory
- Update to 14 (bsc#1054712)

OBS-URL: https://build.opensuse.org/request/show/561563
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=136
2018-01-04 08:54:15 +00:00
Gary Ching-Pang Lin
232d61ad7e Accepting request 561561 from home:gary_lin:branches:devel:openSUSE:Factory
- Update to 14
- Adjust make commands in spec
- Drop upstreamed fixes
- Add patches to avoid build failure
- Update SUSE/openSUSE specific patches

OBS-URL: https://build.opensuse.org/request/show/561561
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=135
2018-01-04 08:44:05 +00:00
Gary Ching-Pang Lin
d06322a5c5 Accepting request 560604 from home:Pharaoh_Atem:branches:devel:openSUSE:Factory
- Fix debuginfo + debugsource subpackage generation for RPM 4.14
- Set the RPM groups correctly for debug{info,source} subpackages
- Drop deprecated and out of date Authors information in description

OBS-URL: https://build.opensuse.org/request/show/560604
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=134
2018-01-04 03:48:47 +00:00
Gary Ching-Pang Lin
d76523f457 Accepting request 523848 from home:gary_lin:branches:devel:openSUSE:Factory
- Add shim-back-to-openssl-1.0.2e.patch to avoid rejecting some legit certificates (bsc#1054712)
- Add the stderr mask back while compiling MokManager.efi since the warnings in Cryptlib is back after reverting the openssl commits.

OBS-URL: https://build.opensuse.org/request/show/523848
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=133
2017-09-13 04:49:11 +00:00
Gary Ching-Pang Lin
6e9b303231 Accepting request 519292 from home:gary_lin:branches:devel:openSUSE:Factory
- Print the debug messages in fallback.efi dynamically
- Refresh shim-fallback-workaround-masked-ami-variables.patch
- Measure more components and support TPM better

OBS-URL: https://build.opensuse.org/request/show/519292
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=132
2017-08-29 09:16:30 +00:00
Gary Ching-Pang Lin
5263d48333 Accepting request 518613 from home:gary_lin:branches:devel:openSUSE:Factory
- Add upstream fixes
- Remove the stderr mask while compiling MokManager.efi since the warnings in Cryptlib were fixed.

OBS-URL: https://build.opensuse.org/request/show/518613
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=131
2017-08-25 03:47:51 +00:00
Gary Ching-Pang Lin
e7ea1a4caa Accepting request 518042 from home:gary_lin:branches:devel:openSUSE:Factory
- Add shim-arch-independent-names.patch to use the Arch-independent names. (bsc#1054712)
- Refresh shim-change-debug-file-path.patch
- Disable shim-opensuse-cert-prompt.patch automatically in SLE
- Diable AArch64 until we have a real user and aarch64 signature

OBS-URL: https://build.opensuse.org/request/show/518042
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=130
2017-08-22 06:17:06 +00:00
Gary Ching-Pang Lin
04ada31ea6 Accepting request 510387 from home:bmwiedemann:branches:devel:openSUSE:Factory
Make build reproducible by avoiding race between find and cp

OBS-URL: https://build.opensuse.org/request/show/510387
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=129
2017-07-22 13:51:59 +00:00
Gary Ching-Pang Lin
08ddabe3ce Accepting request 505593 from home:gary_lin:branches:devel:openSUSE:Factory
- Update to 12

OBS-URL: https://build.opensuse.org/request/show/505593
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=128
2017-06-22 04:42:26 +00:00
Gary Ching-Pang Lin
27d4f8e8d6 Accepting request 497867 from home:gary_lin:branches:devel:openSUSE:Factory
Really enable HTTPBoot

OBS-URL: https://build.opensuse.org/request/show/497867
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=127
2017-05-24 02:58:21 +00:00
Gary Ching-Pang Lin
a9fcc4ee9a Accepting request 482059 from home:michael-chang:branches:devel:openSUSE:Factory
- shim-install: add option --suse-enable-tpm (fate#315831)

OBS-URL: https://build.opensuse.org/request/show/482059
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=126
2017-03-23 06:44:52 +00:00
Gary Ching-Pang Lin
649c608132 Accepting request 457353 from home:michael-chang:branches:devel:openSUSE:Factory
- Support %posttrans with marcos provided by update-bootloader-rpm-macros
  package (bsc#997317)

OBS-URL: https://build.opensuse.org/request/show/457353
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=125
2017-02-16 02:17:33 +00:00
Stephan Kulow
ea8904665d Accepting request 443762 from home:gary_lin:branches:devel:openSUSE:Factory
- Add SIGNATURE_UPDATE.txt to state the steps to update signature-*.asc
- Update the comment of strip_signature.sh

OBS-URL: https://build.opensuse.org/request/show/443762
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=123
2016-12-05 08:35:58 +00:00
Gary Ching-Pang Lin
da918f60a8 Accepting request 429445 from home:michael-chang:branches:devel:openSUSE:Factory
- shim-install :
  * add option --no-nvram (bsc#999818)
  * improve removable media and fallback mode handling

OBS-URL: https://build.opensuse.org/request/show/429445
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=121
2016-09-23 04:31:17 +00:00
Gary Ching-Pang Lin
1c133127ad Accepting request 423923 from home:michael-chang:branches:devel:openSUSE:Factory
- shim-install : fix regression of password prompt (bsc#993764)

OBS-URL: https://build.opensuse.org/request/show/423923
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=119
2016-08-31 06:30:53 +00:00
Gary Ching-Pang Lin
3b797a1f59 Accepting request 417039 from home:gary_lin:branches:devel:openSUSE:Factory
- fix the signature length passed to Authenticode (bsc#991885)

OBS-URL: https://build.opensuse.org/request/show/417039
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=117
2016-08-05 08:00:13 +00:00
Gary Ching-Pang Lin
2e4b84ba97 Accepting request 416862 from home:gary_lin:branches:devel:openSUSE:Factory
- Update shim-bsc973496-mokmanager-no-append-write.patch to try append write first 
- Add shim-update-openssl-1.0.2h.patch to update openssl to 1.0.2h
- Bump the requirement of gnu-efi due to the HTTPBoot support

OBS-URL: https://build.opensuse.org/request/show/416862
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=116
2016-08-04 06:19:49 +00:00
Gary Ching-Pang Lin
8fa2e58431 Accepting request 416362 from home:gary_lin:branches:devel:openSUSE:Factory
- Add shim-httpboot-support.patch to support HTTPBoot
- Add shim-update-openssl-1.0.2g.patch to update openssl to 1.0.2g
  and Cryptlib to 5e2318dd37a51948aaf845c7d920b11f47cdcfe6
- Drop patches since they are merged into
  shim-update-openssl-1.0.2g.patch
  + shim-update-openssl-1.0.2d.patch
  + shim-gcc5.patch
  + shim-bsc950569-fix-cryptlib-va-functions.patch
  + shim-fix-aarch64.patch
- Refresh shim-change-debug-file-path.patch
- Add shim-bsc973496-mokmanager-no-append-write.patch to work
  around the firmware that doesn't support APPEND_WRITE (bsc973496)
- shim-install : remove '\n' from the help message (bsc#991188)
- shim-install : print a message if there is no valid EFI partition
  (bsc#991187)

OBS-URL: https://build.opensuse.org/request/show/416362
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=115
2016-08-01 10:00:26 +00:00
Gary Ching-Pang Lin
b08dc48a8d Accepting request 394342 from home:rwill:branches:devel:openSUSE:Factory
- shim-install : support simple MD RAID1 target devices (FATE#314829)

OBS-URL: https://build.opensuse.org/request/show/394342
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=113
2016-05-10 02:05:30 +00:00
Gary Ching-Pang Lin
9244a64416 Accepting request 393612 from home:algraf:branches:devel:openSUSE:Factory
- Add shim-fix-aarch64.patch to fix compilation on AArch64 (bsc#978438)

OBS-URL: https://build.opensuse.org/request/show/393612
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=112
2016-05-05 03:50:45 +00:00
Gary Ching-Pang Lin
ff93d13920 Accepting request 368964 from home:michael-chang:branches:devel:openSUSE:Factory
- shim-install : fix typing ESC can escape to parent config which is
  in command mode and cannot return back (bsc#966701) 
- shim-install : fix no which command for JeOS (bsc#968264)

OBS-URL: https://build.opensuse.org/request/show/368964
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=110
2016-03-09 09:57:29 +00:00
Gary Ching-Pang Lin
04c16aa6a1 Accepting request 347334 from home:jsegitz:branches:devel:openSUSE:Factory
- acquired updated signature from Microsoft

OBS-URL: https://build.opensuse.org/request/show/347334
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=108
2015-12-04 08:00:02 +00:00
Gary Ching-Pang Lin
0bf24d30d2 Accepting request 343340 from home:gary_lin:branches:devel:openSUSE:Factory
- Add shim-bsc950569-fix-cryptlib-va-functions.patch to fix the
  definition of va functions to avoid the potential crash
  (bsc#950569)
- Update shim-opensuse-cert-prompt.patch to avoid setting NULL to
  MokListRT (bsc#950801)
- Drop shim-fix-mokmanager-sections.patch as we are using the
  newer binutils now
- Refresh shim-change-debug-file-path.patch

OBS-URL: https://build.opensuse.org/request/show/343340
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=106
2015-11-10 09:59:11 +00:00
Stephan Kulow
395a47885d Accepting request 337107 from home:jsegitz:branches:devel:openSUSE:Factory
- acquired updated signature from Microsoft

OBS-URL: https://build.opensuse.org/request/show/337107
OBS-URL: https://build.opensuse.org/package/show/devel:openSUSE:Factory/shim?expand=0&rev=104
2015-10-08 08:02:11 +00:00