diff --git a/sdk_container/src/third_party/coreos-overlay/coreos-base/coreos-sb-keys/coreos-sb-keys-0.0.3.ebuild b/sdk_container/src/third_party/coreos-overlay/coreos-base/coreos-sb-keys/coreos-sb-keys-0.0.3.ebuild index e4c528394f..55426f7d77 100644 --- a/sdk_container/src/third_party/coreos-overlay/coreos-base/coreos-sb-keys/coreos-sb-keys-0.0.3.ebuild +++ b/sdk_container/src/third_party/coreos-overlay/coreos-base/coreos-sb-keys/coreos-sb-keys-0.0.3.ebuild @@ -21,7 +21,7 @@ src_install() { newins "${FILESDIR}/KEK.crt" KEK.crt newins "${FILESDIR}/DB.key" DB.key newins "${FILESDIR}/DB.crt" DB.crt - newins "${FILESDIR}/shim.key" shim.key - newins "${FILESDIR}/shim.der" shim.der - newins "${FILESDIR}/shim.pem" shim.pem + newins "${FILESDIR}/shim.key" shim.key + newins "${FILESDIR}/shim.der" shim.der + newins "${FILESDIR}/shim.pem" shim.pem } diff --git a/sdk_container/src/third_party/coreos-overlay/sys-boot/shim/shim-9999.ebuild b/sdk_container/src/third_party/coreos-overlay/sys-boot/shim/shim-9999.ebuild index e00a6a19e9..33dc032e66 100644 --- a/sdk_container/src/third_party/coreos-overlay/sys-boot/shim/shim-9999.ebuild +++ b/sdk_container/src/third_party/coreos-overlay/sys-boot/shim/shim-9999.ebuild @@ -27,8 +27,8 @@ RDEPEND="" # to be addressed by patching this check out after making sure that # our copy of gnu-efi is as usable as the bundled one. DEPEND=" - dev-libs/openssl - coreos-base/coreos-sb-keys + dev-libs/openssl + coreos-base/coreos-sb-keys " src_unpack() { @@ -50,8 +50,8 @@ src_compile() { elif use arm64; then emake_args+=( ARCH=aarch64 ) fi - emake_args+=( ENABLE_SBSIGN=1 ) - emake_args+=( VENDOR_CERT_FILE="${FILESDIR}/shim.der" ) + emake_args+=( ENABLE_SBSIGN=1 ) + emake_args+=( VENDOR_CERT_FILE="/usr/share/sb_keys/shim.der" ) emake "${emake_args[@]}" || die } @@ -65,6 +65,6 @@ src_install() { fi insinto /usr/lib/shim newins "shim${suffix}.efi" 'shim.efi' - newins "mm${suffix}.efi" "mm${suffix}.efi" - newins "fb${suffix}.efi" "fb${suffix}.efi" + newins "mm${suffix}.efi" "mm${suffix}.efi" + newins "fb${suffix}.efi" "fb${suffix}.efi" }