Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | initrdscripts-secure-core: don't install sysvinit | Lans Zhang | 2017-07-26 | 1 | -2/+0 | |
| | | | | | | /sbin/init should be covered by rootfs not here. Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | user-key-store.bbclass: set SYSTEM_TRUSTED only if ima is configured | Lans Zhang | 2017-07-25 | 1 | -1/+1 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | user-key-store.bbclass: don't run check_deploy_keys in parallel | Lans Zhang | 2017-07-25 | 1 | -0/+2 | |
| | | | | | | | | | | | Set lockfile for task check_deploy_keys() to avoid the race error from 'cp -af': cp: cannot create regular file '.../tmp/deploy/images/intel-x86-64/ sample-keys/uefi_sb_keys/DBX/DBX.key': File exists Signed-off-by: Wenzong Fan <wenzong.fan@windriver.com> Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | IMA: move the default policy file to /etc/ima directory | Lans Zhang | 2017-07-25 | 2 | -8/+10 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | meta-efi-secure-boot/README: update to reflect using fallback to chainloader ↵ | Lans Zhang | 2017-07-25 | 1 | -12/+17 | |
| | | | | | | SELoader Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | shim: use fallback loading SELoader | Lans Zhang | 2017-07-24 | 4 | -24/+69 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | sbsigntool: code style fixup | Lans Zhang | 2017-07-24 | 1 | -21/+40 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | efivar: clean up | Lans Zhang | 2017-07-24 | 2 | -57/+0 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | meta-efi-secure-boot: depend on meta-perl | Lans Zhang | 2017-07-24 | 2 | -17/+1 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | shim: update to the latest | Lans Zhang | 2017-07-24 | 2 | -35/+2 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | openssl-tpm-engine: fix cmdline parsing failure on arm platform | Lans Zhang | 2017-07-21 | 2 | -0/+35 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | tpm2simulator: add the native build | Lans Zhang | 2017-07-21 | 2 | -0/+65 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | trouser: a minor fix for debug package | Lans Zhang | 2017-07-21 | 1 | -1/+1 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | IMA: allow to write policy but deny to read policy | Lans Zhang | 2017-07-20 | 1 | -1/+1 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | meta-tpm2: code style fixup | Lans Zhang | 2017-07-20 | 6 | -6/+9 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | tss2.0-tss: don't create tss user account | Lans Zhang | 2017-07-20 | 1 | -6/+0 | |
| | | | | | | | This user account is created by tpm2-abrmd which replaces the resourcemgr originally supplied by this recipe. Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | tpm2-abrmd: update to the latest and code style fixup | Lans Zhang | 2017-07-20 | 2 | -326/+39 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | tpm2.0-tools: clean up .m4 | Lans Zhang | 2017-07-20 | 4 | -232/+2 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | tpm2.0-tss: update to the latest and code style fixup | Lans Zhang | 2017-07-20 | 7 | -642/+45 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | tpm2.0-tools: update to the latest and code style fixup | Lans Zhang | 2017-07-20 | 3 | -43/+31 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | meta-secure-core: define the oe index name | Lans Zhang | 2017-07-20 | 7 | -0/+16 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | tpm-tools: update to the latest and code style fixup | Lans Zhang | 2017-07-20 | 5 | -45/+43 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | tss-testsuite: update to the latest and code style fixup | Lans Zhang | 2017-07-20 | 4 | -99/+66 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | tpm-quote-tools: update to the latest and code style fixup | Lans Zhang | 2017-07-20 | 2 | -26/+27 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | pcr-extend: update to the latest and code style fixup | Lans Zhang | 2017-07-20 | 2 | -21/+27 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | openssl-tpm-engine: update to the latest and code style fixup | Lans Zhang | 2017-07-20 | 1 | -37/+45 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | meta-secure-core: define new image type secure-core-minimal-image | Lans Zhang | 2017-07-20 | 3 | -30/+35 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | meta-tpm: code style fixup | Lans Zhang | 2017-07-20 | 7 | -18/+56 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | cryptfs-tpm2: change the SECTION | Lans Zhang | 2017-07-20 | 1 | -1/+1 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | trousers: update to the latest and code style fixup | Lans Zhang | 2017-07-20 | 4 | -120/+117 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | README: RPM5 signing is not supported | Lans Zhang | 2017-07-19 | 1 | -1/+1 | |
| | | | | | | Instead, RPM4 is supported from now on. Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | README: don't include meta-secure-core as the sub-layer | Lans Zhang | 2017-07-19 | 1 | -2/+0 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | README update | Lans Zhang | 2017-07-19 | 1 | -9/+46 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | sign_rpm_ext: remove the test lines | Lans Zhang | 2017-07-19 | 1 | -4/+0 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | IMA: enable RPM file signing if ima is configured | Lans Zhang | 2017-07-19 | 1 | -1/+1 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | rpm: allow to enable IMA signing | Lans Zhang | 2017-07-18 | 12 | -0/+805 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | seloader: sync up with upstream | Lans Zhang | 2017-07-13 | 1 | -1/+1 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | Add the missing COPYING.MIT files | Lans Zhang | 2017-07-13 | 5 | -0/+85 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | meta-efi-secure-boot/README.md: update | Lans Zhang | 2017-07-13 | 1 | -134/+162 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | libfile-slurp: code style fixup | Lans Zhang | 2017-07-13 | 1 | -4/+6 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | seloader,libsign: fix homepage URLs | Lans Zhang | 2017-07-13 | 2 | -2/+2 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | cryptfs-tpm2: add author and homepage info | Lans Zhang | 2017-07-13 | 1 | -0/+3 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | efitools: code style fixup | Lans Zhang | 2017-07-13 | 3 | -21/+22 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | create-user-key-store.sh: add the support of the creation for RPM signing | Lans Zhang | 2017-07-13 | 2 | -0/+67 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | seloader, libsign, cryptfs-tpm2: code style fixup | Lans Zhang | 2017-07-13 | 3 | -20/+28 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | grub-efi: carry forward mok2verify to grub-2.02 | Lans Zhang | 2017-07-13 | 2 | -76/+156 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | packagegroup-efi-secure-boot: make sure grub never be installed | Lans Zhang | 2017-07-12 | 1 | -0/+2 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | grub-efi: rebased to 2.02 | Lans Zhang | 2017-07-12 | 4 | -110/+24 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | Add .github/CODEOWNERS | Lans Zhang | 2017-07-12 | 1 | -0/+1 | |
| | | | | Signed-off-by: Lans Zhang <jia.zhang@windriver.com> | |||||
* | Fix the occurrence of checking the existence of signing keys | Lans Zhang | 2017-07-12 | 9 | -10/+8 | |
| | | | | | | packagegroups are not the end consumers of using user-key-store. Signed-off-by: Lans Zhang <jia.zhang@windriver.com> |