Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

pesign-obs-integration-10.0-lp150.5.3 RPM for ppc64le

From OpenSuSE Ports Leap 15.0 for ppc64le

Name: pesign-obs-integration Distribution: openSUSE Leap 15.0
Version: 10.0 Vendor: openSUSE
Release: lp150.5.3 Build date: Wed May 9 02:58:02 2018
Group: Development/Tools/Other Build host: obs-power8-01
Size: 62878 Source RPM: pesign-obs-integration-10.0-lp150.5.3.src.rpm
Packager: https://bugs.opensuse.org
Url: http://en.opensuse.org/openSUSE:UEFI_Image_File_Sign_Tools
Summary: Macros and scripts to sign the kernel and bootloader
This package provides scripts and rpm macros to automate signing of the
boot loader, kernel and kernel modules in the openSUSE Buildservice.

Provides

Requires

License

GPL-2.0

Changelog

* Thu Feb 22 2018 glin@suse.com
  - Provide password file for 'certutil -A' due to the change in
    mozilla-nss 3.35 (boo#1082235)
* Wed Nov 08 2017 jlee@suse.com
  - Modified modsign-repackage, using certificate to try to decrypt
    the signature of kernel module. It can be used to verify the
    integrity of signature.
* Wed Sep 27 2017 jlee@suse.com
  - Michael Schröder improved the original kernel-sign-file script to
    support PKCS#7 kernel module signing. Replacing sign-file.c with
    new kernel-sign-file script. (bsc#1049122)
* Sun Sep 24 2017 coolo@suse.com
  - escape regexp in pesign-gen-repackage-spec for perl 5.26
* Wed Sep 06 2017 jlee@suse.com
  - To support PKCS#7 kernel module signing, copy sign-file.c from
    SLE-15 v4.12 kernel source to replace the kernel-sign-file script
    to align upstream. (bsc#1049122)
* Tue Nov 29 2016 mmarek@suse.cz
  - Copy over any *.log files from the first build (bsc#1012422)
* Thu Mar 03 2016 glin@suse.com
  - Add aarch64 support since pesign also build on aarch64
* Thu Jan 22 2015 mmarek@suse.cz
  - Add support for file verify flags (bnc#905420).
* Thu Jan 22 2015 mmarek@suse.cz
  - Sort the parts of the repackage spec file for easier debugging.
* Tue Sep 16 2014 mls@suse.de
  - fall back to project cert in the followup spec if it
    exists
* Tue Sep 02 2014 ro@suse.de
  - sanitize release line in specfile
* Wed Aug 20 2014 mmarek@suse.cz
  - brp-99-compress-vmlinux: Compress the vmlinux image after
    find-debuginfo (bnc#880848, bnc#884459)
* Tue Aug 12 2014 meissner@suse.com
  - switch gen-hmac to use fipscheck instead of sha256hmac
* Mon Aug 04 2014 mmarek@suse.cz
  - Set BRP_PESIGN_FILES="" in the repackage build to avoid loops.
* Wed Jul 30 2014 mmarek@suse.cz
  - Accept also rpmlintrc files without any <package>- prefix.
* Mon Jul 28 2014 mmarek@suse.cz
  - Use package's rpmlintrc files in the second build.
* Thu Jul 03 2014 mmarek@suse.cz
  - Drop support for signing firmware files (bnc#867199)
* Thu Apr 24 2014 mmarek@suse.cz
  - Fix matching /boot and /lib/firmware in pesign-repackage.spec
* Wed Apr 23 2014 mmarek@suse.com
  - Do not store the buildroot in the .*.hmac file.
* Wed Apr 23 2014 mmarek@suse.com
  - Regenerate the HMAC checksum when signing and EFI binary with
    a checksum (fate#316930, bnc#856310).
* Wed Apr 23 2014 mmarek@suse.com
  - Update README.
* Wed Apr 23 2014 mmarek@suse.cz
  - Add /usr/lib/rpm/pesign/gen-hmac tool to generate a hmac checksum
    for a given file (fate#316930, bnc#856310).
* Thu Apr 03 2014 ro@suse.de
  - pesign-gen-repackage-spec: switch to new rpm style handling
    of weak dependencies
* Thu Jan 16 2014 mmarek@suse.cz
  - Do not sign any files if BRP_PESIGN_FILES is set not an empty
    string (bnc#857599).
* Tue Jan 07 2014 mmarek@suse.cz
  - Fix a typo in the last change.
* Mon Jan 06 2014 mmarek@suse.cz
  - Default to BRP_PESIGN_FILES="*.ko /lib/firmware" (bnc#857599).
* Mon Jan 06 2014 mmarek@suse.cz
  - Add --signatures=<directory> option to modsign-repackage
    (bnc#841627).
* Fri Jun 14 2013 mmarek@suse.cz
  - Put debuginfo packages to %_topdir/OTHER (bnc#824971).
* Thu Mar 28 2013 mmarek@suse.cz
  - Version 10
  - Add modsign-repackage tool to repackage RPMs outside the buildservice
* Tue Mar 26 2013 glin@suse.com
  - Calculate the digest of the padded data section to be consistent
    with the output file (bnc#808594, bnc#811325)
* Fri Mar 15 2013 coolo@suse.com
  - correct the license of the generated package to fix build
* Tue Mar 05 2013 mmarek@suse.cz
  - Do not repackage debuginfo package (bnc#806637)
* Mon Mar 04 2013 mmarek@suse.cz
  - Version 9
  - Add support for triggers (bnc#806737)
* Wed Feb 20 2013 mmarek@suse.cz
  - Do not fail the build if %_topdir/OTHER cannot be created
* Wed Feb 13 2013 mmarek@suse.cz
  - Version 8
  - Hide baselibs from post-build-checks
* Wed Feb 13 2013 mmarek@suse.cz
  - Do not repackage baselibs
* Wed Feb 13 2013 mmarek@suse.cz
  - Version 7
  - Fix for scriptlets with empty body
* Tue Feb 12 2013 mls@suse.de
  - reduce debugging as pesign is now fixed
* Tue Feb 12 2013 mls@suse.de
  - add a bit of debug output to find out why the kernel signatures
    are bad
* Wed Feb 06 2013 mls@suse.de
  - switch to normal brp hook
  - mv stuff in pesign directory instead of cluttering /usr/lib/rpm
* Fri Feb 01 2013 mls@suse.de
  - fix pesign calls
* Fri Feb 01 2013 mmarek@suse.cz
  - Add some preliminary code to sign EFI binaries, marked with
    FIXMEs.
* Wed Jan 30 2013 mmarek@suse.cz
  - Version 6
  - Fix handling packages with NoSource
  - Fix for multiple patterns in %sign_files
* Tue Jan 29 2013 mmarek@suse.cz
  - Version 5
  - Use newc-style cpio archives, as required by the buildservice.
  - Use signing certificates provided by the buildservice.
  - Minor fixes.
* Mon Jan 28 2013 mmarek@suse.cz
  - Version 4
  - Support for firmware signatures.
  - Expect the correct archive with signatures (<name>.cpio.rsasign.sig).
  - Minor fixes.
* Wed Jan 23 2013 mmarek@suse.cz
  - Version 3
  - Switch to storing whole files in the *.cpio.rsasign archive.
  - Append the signatures to kernel modules.
* Fri Jan 18 2013 mmarek@suse.cz
  - Version 2
  - Generates another specfile in pesign-repackage.spec to
    be able to copy nearly all RPM tags from the original packages.
  - Changed to only store sha256 hashes in the *.cpio.rsasign file,
    instead of whole files.
* Thu Dec 13 2012 mmarek@suse.com
  - Created package with macros and scripts to integrate kernel and
    bootloader signing into OBS (fate#314552).

Files

/usr/bin/modsign-repackage
/usr/lib/rpm/brp-suse.d
/usr/lib/rpm/brp-suse.d/brp-99-compress-vmlinux
/usr/lib/rpm/brp-suse.d/brp-99-pesign
/usr/lib/rpm/pesign
/usr/lib/rpm/pesign/gen-hmac
/usr/lib/rpm/pesign/kernel-sign-file
/usr/lib/rpm/pesign/pesign-cert.x509
/usr/lib/rpm/pesign/pesign-gen-repackage-spec
/usr/lib/rpm/pesign/pesign-repackage.spec.in
/usr/share/doc/packages/pesign-obs-integration
/usr/share/doc/packages/pesign-obs-integration/COPYING
/usr/share/doc/packages/pesign-obs-integration/README


Generated by rpm2html 1.8.1

Fabrice Bellet, Tue Nov 9 10:26:55 2021