Sayan Chowdhury
99bfcf5f32
shim, coreos-sb-keys, grub_install.sh: retab to spaces
...
Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2024-02-26 12:01:10 +01:00
Sayan Chowdhury
4648be9dbb
sys-boot/grub: Make sed silently fail when updating sbat
...
Co-authored-by: Mathieu Tortuyaux <mtortuyaux@microsoft.com>
2024-02-26 12:01:10 +01:00
Sayan Chowdhury
97ebc770ea
sys-boot/shim: Move from cros_workon to upstream
...
Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2024-02-26 12:01:10 +01:00
Sayan Chowdhury
04005652dd
build_library: Drop redundant config from grub.cfg
...
Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2024-02-26 12:01:10 +01:00
Sayan Chowdhury
c1bdbd9d90
build_image_util: Sign the vmlinuz with the shim key
...
Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2024-02-26 12:01:10 +01:00
Jeremi Piotrowski
6ff9f8b098
Add support for secure boot in qemu_template.sh
...
We have an existing qemu_uefi_secure format definition, but it is
necessary to update it so that it actually works. Qemu needs to be
passed the correct flags to enable SMM, we need to switch to the Q35
machine, and we need to copy over the secboot variant of the OVMF
firmware.
2024-02-26 12:01:09 +01:00
Sayan Chowdhury
fc28e72322
sys-boot/grub: install file with sbat contents, add --sbat to script
...
This is just the contents of the section, but the section
itself is written by grub-mkimage. sbat.csv needs to be passed
with --sbat.
Signed-off-by: Jeremi Piotrowski <jpiotrowski@microsoft.com>
Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2024-02-26 12:01:09 +01:00
Jeremi Piotrowski
64556256db
grub_install: switch to BOARD_GRUB by default
...
Signed-off-by: Jeremi Piotrowski <jpiotrowski@microsoft.com>
2024-02-26 12:01:09 +01:00
Sayan Chowdhury
0479480ef1
grub_install.sh: Sign the GRUB/MM with the proper keys
...
Add the linux.mod file back
Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2024-02-26 12:01:09 +01:00
Sayan Chowdhury
b42e3ad58b
sys-boot/shim: Update shim to include signing keys, and build mm.efi
...
Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2024-02-26 12:01:09 +01:00
Sayan Chowdhury
348a26201a
coreos-sb-keys: Add the shim keys
...
Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2024-02-26 12:01:09 +01:00
Sayan Chowdhury
65fe1f4cdb
sys-boot/shim: make the shim buildable
...
Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2024-02-26 12:01:09 +01:00
Sayan Chowdhury
fc4acb6b40
sys-boot/shim: updates to 15.7
...
Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2024-02-26 12:01:09 +01:00
Jeremi Piotrowski
8019f7fd9f
vm_image_util.sh: update path to arm64 UEFI firmware
...
The arm64 firmware is now called AAVMF with the updated edk2-aarch64
ebuild.
2024-02-26 12:01:09 +01:00
Sayan Chowdhury
58806c5342
eclass/rpm: Add from Gentoo
...
It's from Gentoo commit 78e5f99cb41eaa50da930e7ab2dc7993fa243e1f.
2024-02-26 12:01:09 +01:00
Sayan Chowdhury
af68df3d43
coreos-devel/board-packages: remove edk2-ovmf from arm64 dependencies
...
This package is not used, we use edk2-aarch64 on arm64 but and it is
fetched during image_to_vm.sh because the ebuild simply wraps a binary
file.
Original Author: Jeremi Piotrowski <jpiotrowski@microsoft.com>
Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2024-02-26 12:01:09 +01:00
Sayan Chowdhury
ceb1480e48
sys-firmware/edk2-aarch64: drop old package and replace with new
...
Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2024-02-26 12:01:09 +01:00
Sayan Chowdhury
984233b9e8
coreo-base/coreos: Add mokutil to the base amd64 image
...
Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2024-02-26 12:01:09 +01:00
Sayan Chowdhury
6e497dbd0d
sys-boot/mokutil: Add from Gentoo
...
It's from Gentoo commit cf90a21600e8d81c12b7e1143f43cd28f58dd70d.
2024-02-26 10:53:45 +01:00
Krzesimir Nowak
08baf293ef
changelog: Add an entry
2024-02-26 10:31:23 +01:00
Krzesimir Nowak
c6ec4f22c3
.github: Drop dev-python/pyparsing from automation
2024-02-26 10:31:23 +01:00
Krzesimir Nowak
7c19269514
dev-python/pyparsing: Remove unused package
...
dev-python/packaging used to pull it in, but not anymore.
2024-02-26 10:31:23 +01:00
Krzesimir Nowak
3af1e37643
overlay profiles: Drop accept keywords for app-emulation/qemu
2024-02-26 10:06:05 +01:00
Krzesimir Nowak
ad6b2c6476
overlay profiles: Updated accept keywords for app-crypt/mit-krb5
2024-02-26 10:04:50 +01:00
Krzesimir Nowak
f1cee356c0
overlay profiles: Add accept keywords for net-libs/libpsl
2024-02-26 09:51:13 +01:00
Krzesimir Nowak
84ac7b1cb0
overlay profiles: Add accept keywords for app-arch/xz-utils
2024-02-26 09:50:59 +01:00
Flatcar Buildbot
3c2a94bc3c
sys-libs/zlib: Sync with Gentoo
...
It's from Gentoo commit 3fe97570438a126e8c274b6ff29a60b81198f277.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
36f109af80
sys-libs/libcap: Sync with Gentoo
...
It's from Gentoo commit eef4caf31a0d3c276e17b270fc18285cae367802.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
d3194e51df
sys-fs/xfsprogs: Sync with Gentoo
...
It's from Gentoo commit 53a7b5d448f2079ba8eac7801f9f2673dbda6438.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
7bb026fbc5
sys-fs/multipath-tools: Sync with Gentoo
...
It's from Gentoo commit 5d080387eead3b713ae6e98fb36dda7c0b184c4d.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
d0f0f10210
sys-devel/gettext: Sync with Gentoo
...
It's from Gentoo commit 1922bfee73c961edf09e5f28a5bfdbaaa378fe7a.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
4531763808
sys-devel/gcc: Sync with Gentoo
...
It's from Gentoo commit fdddc3f25ee18636c46f1a82080b9cb2ed105db1.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
584f938985
sys-apps/smartmontools: Sync with Gentoo
...
It's from Gentoo commit 49a34318d9702773834a4af66768ec6978dfdec6.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
f93303f2f0
sys-apps/portage: Sync with Gentoo
...
It's from Gentoo commit 2f7307ca3409281a895c9b34b522e7180b347414.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
2bf44d3250
sys-apps/iproute2: Sync with Gentoo
...
It's from Gentoo commit 1f3fda4a39e4454386cf673e5fb3dc2dd873fd0c.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
1207275c92
sys-apps/gawk: Sync with Gentoo
...
It's from Gentoo commit 1594979c559b2cf5fac400f2bfdffb2a6cfa170a.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
530fdfdc45
profiles: Sync with Gentoo
...
It's from Gentoo commit 9cd8aa5ef22ce927f5c5ad4d317e786794bd7626.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
d5b1886c23
net-libs/libpsl: Sync with Gentoo
...
It's from Gentoo commit 46077a5486958d8f3512a0557d95a7ff759e58fb.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
db4b89361b
net-libs/libnftnl: Sync with Gentoo
...
It's from Gentoo commit e0d76503ba1f48d45abe952932054b3cec85b018.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
1eca2ffbaf
net-libs/libnetfilter_conntrack: Sync with Gentoo
...
It's from Gentoo commit 9af9987a199037372852eac1f4455087757ad61f.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
1eb951bb05
net-dns/dnsmasq: Sync with Gentoo
...
It's from Gentoo commit 6e7e22b8a35b61837d8b8dcbbe5ed4da27df9d96.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
3946f96dd9
net-dns/c-ares: Sync with Gentoo
...
It's from Gentoo commit 75f9e2140367bcc87c167c9012f4a30302f28d0e.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
451f8f7e52
eclass/toolchain: Sync with Gentoo
...
It's from Gentoo commit 0c5af65cfb92b7702f170999488c970fc278d9a2.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
a8504512ec
dev-vcs/git: Sync with Gentoo
...
It's from Gentoo commit 282afb33e96398d2076652a2aa44c97512c434ea.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
c1ad175dd1
dev-util/perf: Sync with Gentoo
...
It's from Gentoo commit 5986c3f9e460646d703ea15d6d51ba99f6cda59e.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
fb5c2f0ee0
dev-util/bpftool: Sync with Gentoo
...
It's from Gentoo commit bdfd15b0e299313dd6151e3e71e4274e9c21a2f9.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
abf626d675
dev-python/typing-extensions: Sync with Gentoo
...
It's from Gentoo commit 856b2bef5caeac960ff0751f69c4c66a0c7fde8d.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
3068a107e9
dev-python/trove-classifiers: Sync with Gentoo
...
It's from Gentoo commit e199ef39f3e92c0ff745959e134c721c374357b5.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
26f92ecace
dev-python/setuptools: Sync with Gentoo
...
It's from Gentoo commit dc5d8c1c9d81602c68277c3b0a4ad7d9088fced2.
2024-02-26 09:24:31 +01:00
Flatcar Buildbot
a94c7d6455
dev-python/packaging: Sync with Gentoo
...
It's from Gentoo commit e02617b956bb454bff6d80426e8d7444567350ae.
2024-02-26 09:24:31 +01:00