Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

sbsigntool: rewrite post-install kernel hook #23688

Closed
wants to merge 2 commits into from

Commits on Aug 6, 2020

  1. sbsigntool: rewrite post-install kernel hook

    * run the hook on target filesystem
    * Use ls | awk to check ownership and permission, instead of relying on
      GNU-stat.
    * libify signing code, in order to support uefi bundle in the future
    * Stop append signature to the efi signed by current key/cert.
    
    While we're at it,
    * add post-remove script to remove unsigned file if exist
    sgn committed Aug 6, 2020
    Configuration menu
    Copy the full SHA
    4bd83bc View commit details
    Browse the repository at this point in the history
  2. refind: rewrite kernel post-install hook

    - refind-install only supports installing into
    {/boot,/boot/efi,/efi}/EFI/{BOOT,refind}/refind.conf, there're no point
    trying to fiddling with anything else.
    
    - That configuration file should always exist, simplify all logic behind
      that decision.
    sgn committed Aug 6, 2020
    Configuration menu
    Copy the full SHA
    53bdcc8 View commit details
    Browse the repository at this point in the history