summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorLans Zhang <jia.zhang@windriver.com>2017-07-19 09:56:29 +0800
committerLans Zhang <jia.zhang@windriver.com>2017-07-19 09:56:29 +0800
commit9c8ddd5bd32d26a33027f3160fced03b9afbe9da (patch)
treea80322c00b44295fd79a16e7901e96a78c65bd82
parentea2ae90be4dbeaedc435c002bd1929692599ada9 (diff)
downloadmeta-secure-core-9c8ddd5bd32d26a33027f3160fced03b9afbe9da.tar.gz
IMA: enable RPM file signing if ima is configured
Signed-off-by: Lans Zhang <jia.zhang@windriver.com>
-rw-r--r--meta-integrity/classes/sign_rpm_ext.bbclass2
1 files changed, 1 insertions, 1 deletions
diff --git a/meta-integrity/classes/sign_rpm_ext.bbclass b/meta-integrity/classes/sign_rpm_ext.bbclass
index a5a1dc8..1d0c1cb 100644
--- a/meta-integrity/classes/sign_rpm_ext.bbclass
+++ b/meta-integrity/classes/sign_rpm_ext.bbclass
@@ -8,7 +8,7 @@ RPM_GPG_BACKEND ?= "local"
8# SHA-256 is used for the file checksum digest. 8# SHA-256 is used for the file checksum digest.
9RPM_FILE_CHECKSUM_DIGEST ?= "8" 9RPM_FILE_CHECKSUM_DIGEST ?= "8"
10 10
11RPM_SIGN_FILES = "1" 11RPM_SIGN_FILES = "${@bb.utils.contains('DISTRO_FEATURES', 'ima', '1', '0', d)}"
12RPM_FSK_PATH ?= "${@uks_ima_keys_dir(d) + 'x509_ima.key'}" 12RPM_FSK_PATH ?= "${@uks_ima_keys_dir(d) + 'x509_ima.key'}"
13RPM_FSK_PASSWORD ?= "password" 13RPM_FSK_PASSWORD ?= "password"
14 14