build_library/sbsign_util: Update the SBSIGN_KEY & AZURE_KEYVAULT_URL

Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
This commit is contained in:
Sayan Chowdhury 2025-03-19 16:21:25 +05:30
parent 4866932210
commit 450a8983cc
No known key found for this signature in database
GPG Key ID: B02399319CD05C8B

View File

@ -6,14 +6,14 @@ if [[ ${COREOS_OFFICIAL:-0} -ne 1 ]]; then
SBSIGN_KEY="/usr/share/sb_keys/shim.key" SBSIGN_KEY="/usr/share/sb_keys/shim.key"
SBSIGN_CERT="/usr/share/sb_keys/shim.pem" SBSIGN_CERT="/usr/share/sb_keys/shim.pem"
else else
SBSIGN_KEY="pkcs11:token=flatcar-dev-cert" SBSIGN_KEY="pkcs11:token=flatcar-sb-dev-hsm-sign-2025"
unset SBSIGN_CERT unset SBSIGN_CERT
fi fi
PKCS11_MODULE_PATH="/usr/$(get_sdk_libdir)/pkcs11/azure-keyvault-pkcs11.so" PKCS11_MODULE_PATH="/usr/$(get_sdk_libdir)/pkcs11/azure-keyvault-pkcs11.so"
PKCS11_ENV=( PKCS11_ENV=(
AZURE_KEYVAULT_URL="https://chewi-test.vault.azure.net/" AZURE_KEYVAULT_URL="https://flatcar-sb-dev-kv.vault.azure.net/"
PKCS11_MODULE_PATH="${PKCS11_MODULE_PATH}" PKCS11_MODULE_PATH="${PKCS11_MODULE_PATH}"
AZURE_KEYVAULT_PKCS11_DEBUG=1 AZURE_KEYVAULT_PKCS11_DEBUG=1
) )