summaryrefslogtreecommitdiffstats
Commit message (Expand)AuthorAgeFilesLines
* user-key-store.bbclass: Depend on gnupg-native to always use provided gpgJason Wessel2019-12-131-1/+1
* rpm-integrity: Use _append for PACKAGECONFIGOvidiu Panait2019-12-131-1/+3
* sign_rpm_ext.bbclass: check the length of GPG_PATHLiwei Song2019-12-051-0/+4
* sign_rpm_ext.bbclass: remove prefuncs for do_package_write_rpm andChangqing Li2019-11-291-3/+0
* efitools: do not do_sign if GRUB_SIGN_VERIFY not enabledHongxu Jia2019-11-191-0/+3
* efitools-native: Fix compilation problem with latest /usr/include/efiHongxu Jia2019-11-192-1/+1
* sbsigntool-native: specify TMPDIRJoe Slater2019-11-141-1/+1
* cryptsetup_%.bbappend: Fix for nativeRobert Yang2019-11-141-1/+1
* kernel-initramfs-efi-secure-boot.inc: Copy .sig files and .p7bJason Wessel2019-11-141-5/+3
* lvm2: Fix hanging dmcrypt volumes on bootJason Wessel2019-11-082-0/+45
* layer.conf gpg boot key sample: Add the gpg boot key sample filesJason Wessel2019-11-085-0/+95
* secure boot: Make SELoader optional and copy sig files when GRUB_SIGN_VERIFY=1Jason Wessel2019-11-087-30/+62
* packagegroup-luks.inc: Addlvm2-udevrulesJason Wessel2019-11-081-0/+1
* create-user-key-store.sh: Update for OSTree and ease of useJason Wessel2019-11-081-71/+306
* grub: Make SELoader optional and add gpg verify supportJason Wessel2019-11-085-74/+253
* cryptfs-tpm2: Add support for QEMU swtpm tpm2Jason Wessel2019-11-082-0/+34
* sign_rpm_ext.bbclass, user-key-store.bbclass: Add boot loader signingJason Wessel2019-11-082-24/+69
* secure-core-image: Remove packagegroup-core-lsbJason Wessel2019-11-081-1/+1
* efitools: Fix compilation problem with latest /usr/include/efiJason Wessel2019-11-082-0/+40
* shim: Fix compilation problem with latest /usr/include/efiJason Wessel2019-11-082-0/+40
* efitools: Uprev to fix LockDown.efi for UEFI built after 2018Jason Wessel2019-11-084-80/+30
* sign_rpm_ext.bbclass: fix check_rpm_public_key failed while host not install ...Sandy2019-11-071-4/+11
* sign_rpm_ext.bbclass: fix compile fail since missing gpg (#123)Sandy2019-11-061-0/+3
* grub-efi/boot-menu.inc: remove invalid menuentry (#122)Zhao Yi2019-11-011-5/+0
* conf/layer.conf: Add zeus to LAYERSERIES_COMPAT (#121)muvarov2019-11-019-9/+9
* lib-evm-utils: using the correct algo for v2 signature (#120)Yunguo Wei2019-10-102-0/+27
* linux-yocto-integrity.inc: fix 'uks_modsign_keys_dir' is not defined (#119)Hongxu Jia2019-10-071-2/+6
* Merge pull request #118 from lumag/drop-privkeysJia Zhang2019-10-014-61/+10
|\
| * meta-integrity: fix documentationDmitry Eremin-Solenikov2019-09-301-4/+5
| * linux-yocto-integrity: fix modsign key pathDmitry Eremin-Solenikov2019-09-161-1/+3
| * packagegroup-ima: RRECOMMEND certificates rather than private keysDmitry Eremin-Solenikov2019-09-161-2/+2
| * key-store: drop private keys packagesDmitry Eremin-Solenikov2019-09-161-54/+0
* | Merge pull request #117 from 2005songliwei/masterJia Zhang2019-09-121-1/+1
|\ \ | |/ |/|
| * secure-core:allow other layer overwrite INITRAMFS_IMAGEJiang Lu2019-09-121-1/+1
* | Merge pull request #116 from lumag/masterJia Zhang2019-09-042-13/+65
|\ \
| * | seloader: use pkcs7 drivers from OVMFDmitry Eremin-Solenikov2019-09-041-13/+6
| * | ovmf: package PKCS7 verification driversDmitry Eremin-Solenikov2019-09-041-0/+59
* | | Merge pull request #115 from lumag/masterJia Zhang2019-09-0411-315/+89
|\| |
| * | ima-inspect: add patch to fix compilation with newer ima-evm-utilsDmitry Eremin-Solenikov2019-09-042-1/+17
| * | ima-evm-utils: update to release 1.2.1Dmitry Eremin-Solenikov2019-09-043-307/+7
| * | grub-efi: support mok2 verify in multiboot2 protocolDmitry Eremin-Solenikov2019-09-042-0/+55
| * | meta-tpm2: tpm2-tools: update to version 3.2.0Dmitry Eremin-Solenikov2019-09-041-2/+2
| * | meta-tpm2: tpm2-tss: update to version 2.2.3Dmitry Eremin-Solenikov2019-09-043-5/+8
|/ /
* | Merge pull request #113 from 2005songliwei/masterJia Zhang2019-08-271-0/+10
|\|
| * grub-efi: fix uid contamination by host QA warningLiwei Song2019-08-261-0/+10
|/
* Merge pull request #112 from yizhao1/fix2Jia Zhang2019-08-191-2/+2
|\
| * meta-signing-key/conf/layer.conf: use weak assignment for RPM_GPG_NAME and RP...Yi Zhao2019-08-191-2/+2
* | fixup! meta-secure-core: use bb.fatal instead of bb.build.FuncFailedYi Zhao2019-08-191-1/+1
|/
* meta-secure-core: use bb.fatal instead of bb.build.FuncFailedYi Zhao2019-08-192-8/+6
* meta-secure-core: add linux-yocto-dev bbappendYi Zhao2019-08-135-0/+5