Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
Name: pesign-obs-integration | Distribution: openSUSE Tumbleweed |
Version: 10.2+git20240723.d344d91 | Vendor: openSUSE |
Release: 1.1 | Build date: Tue Jul 23 08:05:14 2024 |
Group: Development/Tools/Other | Build host: reproducible |
Size: 93894 | Source RPM: pesign-obs-integration-10.2+git20240723.d344d91-1.1.src.rpm |
Packager: https://bugs.opensuse.org | |
Url: https://en.opensuse.org/openSUSE:UEFI_Image_File_Sign_Tools | |
Summary: Macros and scripts to sign the kernel and bootloader |
This package provides scripts and rpm macros to automate signing of the boot loader, kernel and kernel modules in the openSUSE Buildservice.
GPL-2.0-or-later
* Tue Jul 23 2024 jlee@suse.com - Update to version 10.2+git20240723.d344d91: * Quote % signs in scripts * Export also a VCS tag * specfile: Change license to OR-LATER * specfile: Update rpm constructs * spec.in: Add changelog tag * spec.in: Don't copy changes to OTHER * spec.in: Use SPDX license * Fri Feb 16 2024 jlee@suse.com - Update to version 10.2+git20240216.1e15ef4: * Create changes file for reproducible build * Add support for authenticated uefi variables * Allow to dump the pkcs7 signed data as well * Add -N option to add a NULL param to the digest algo definitions * Add -C option to include certificates in the PKCS7 signature * spec.in: fix rpmlint warnings * Thu Jun 22 2023 Joey Lee <jlee@suse.com> - Modify pesign-obs-integration.changes, add bsc#1211849 to changelog. The supporting of filetriggers and transfiletriggers in pesign-gen-repackage-spec in 10.2+git20230612.4699910 is for bsc#1211849. * Mon Jun 12 2023 jlee@suse.com - Update to version 10.2+git20230612.4699910: * pesign-gen-repackage-spec: support filetriggers and transfiletriggers (bsc#1211849) * Add support for dependency generators * pesign-gen-repackage-spec: fix the filename issue in the scripts of generated ueficert package * Verfiy the signatures before attaching them * Don't copy rpmlintrc to OTHER * Fix %attr issues * Support %lang * Support OrderWithRequires * pesign-repackage.spec.in: Add description for footer_size - Removed the following patches becuase they are merged to 10.2+git20230612.4699910: Patch: order.patch Patch1: attr.patch Patch2: lang.patch Patch3: rpmlintrc.patch Patch4: verify-sig.patch Patch5: dependency-generators.patch - Use README.md instead of README in pesign-obs-integration.spec. * Mon Jan 23 2023 Callum Farmer <gmbr3@opensuse.org> - Add dependency-generators.patch to support copying source files and macros to the re-package build (jsc#PED-2658) * Wed Sep 28 2022 Gary Ching-Pang Lin <glin@suse.com> - Add verify-sig.patch to verify the signatures before attaching them (bsc#1200108, bsc#1203679) * Sat Jul 09 2022 Callum Farmer <gmbr3@opensuse.org> - Update attr.patch to fix ghost symlinks still being affected - Add rpmlintrc.patch to stop copying it to the build output * Wed Jun 22 2022 Callum Farmer <gmbr3@opensuse.org> - Add attr.patch to fix: * Avoid assigning %attr's to symlinks which causes rpmbuild spam * Change perms mask to 07777 to ensure SUID/SGID is copied over - Add lang.patch to support %lang * Wed Jun 15 2022 gmbr3@opensuse.org - Update to version 10.2+git20220504.8690743: * Don't repackage aarch64_ilp32 *-64bit packages * Use pesign for signing on riscv64 * Add padding to grub signature correctly (jsc#SLE-18271 bsc#1192764). * kernel-sign-file: Support appending verbatim PKCS#7 signature. * kernel-sign-file: Move x509 parsing into a function. * Support ppc grub signing (jsc#SLE-18271 bsc#1192764). * Handle packages with epochs as well * Turn off rpm fatal warnings for noarch packages - Upstreamed patches: * 0001-Support-ppc-grub-signing-jsc-SLE-18271-bsc-1192764.patch * 0002-kernel-sign-file-Move-x509-parsing-into-a-function.patch * 0003-kernel-sign-file-Support-appending-verbatim-PKCS-7-s.patch * 0004-Add-padding-to-grub-signature-correctly-jsc-SLE-1827.patch - Added patches: * order.patch - support OrderWithRequires * Fri Jan 21 2022 Michal Suchanek <msuchanek@suse.com> - Support signing grub on powerpc (jsc#SLE-18271 bsc#1192764). + 0001-Support-ppc-grub-signing-jsc-SLE-18271-bsc-1192764.patch + 0002-kernel-sign-file-Move-x509-parsing-into-a-function.patch + 0003-kernel-sign-file-Support-appending-verbatim-PKCS-7-s.patch + 0004-Add-padding-to-grub-signature-correctly-jsc-SLE-1827.patch * Wed Aug 04 2021 lnussel@suse.de - Update to version 10.2+git20210804.ff18da1: * brp-99-pesign: fix that the signature of shim be broken * Fri Jul 30 2021 lnussel@suse.de - Update to version 10.2+git20210730.0cb100c: * Sign kernel also in module dir (boo#1184804) (replaces pesign-kernel-in-lib.diff) - switch package to obs_scm to avoid recompression * Fri Jul 23 2021 dmueller@suse.com - Update to version git master (10.2): * Add support for GZIP and ZSTD module compression (bsc#1188636) * Always pad the EFI image when calculating the hash * Version bump to 10.2 * approach issue#22 false noarch subpackage - drop pesign-obs-integration-bsc1183747-always-pad-efi-images.patch pesign-obs-integration-support-gzip-zstd-compression.patch (merged) * Mon Jun 21 2021 Gary Ching-Pang Lin <glin@suse.com> - Add pesign-obs-integration-support-gzip-zstd-compression.patch to support gzip and zstd module compression * Fri Apr 23 2021 Ludwig Nussel <lnussel@suse.de> - find kernel also in /lib (boo#1184804, pesign-kernel-in-lib.diff) * Fri Mar 19 2021 Gary Ching-Pang Lin <glin@suse.com> - Add pesign-obs-integration-bsc1183747-always-pad-efi-images.patch to fix the potential hash mismatching (bsc#1183747)
/usr/bin/modsign-repackage /usr/bin/modsign-verify /usr/lib/rpm/brp-suse.d /usr/lib/rpm/brp-suse.d/brp-99-compress-vmlinux /usr/lib/rpm/brp-suse.d/brp-99-pesign /usr/lib/rpm/pesign /usr/lib/rpm/pesign/gen-hmac /usr/lib/rpm/pesign/kernel-sign-file /usr/lib/rpm/pesign/pesign-gen-repackage-spec /usr/lib/rpm/pesign/pesign-repackage.spec.in /usr/share/doc/packages/pesign-obs-integration /usr/share/doc/packages/pesign-obs-integration/README.md /usr/share/licenses/pesign-obs-integration /usr/share/licenses/pesign-obs-integration/COPYING
Generated by rpm2html 1.8.1
Fabrice Bellet, Wed Nov 13 00:41:02 2024