From 49fadf7ef0925917c42104cfc9e75bd4d9753921 Mon Sep 17 00:00:00 2001 From: Jia Zhang Date: Fri, 1 Sep 2017 20:28:38 +0800 Subject: Update BB_HASHBASE_WHITELIST Signed-off-by: Jia Zhang --- meta-integrity/conf/layer.conf | 4 ++++ meta-signing-key/conf/layer.conf | 10 +++++++--- 2 files changed, 11 insertions(+), 3 deletions(-) diff --git a/meta-integrity/conf/layer.conf b/meta-integrity/conf/layer.conf index 23f4a28..67eb755 100644 --- a/meta-integrity/conf/layer.conf +++ b/meta-integrity/conf/layer.conf @@ -22,3 +22,7 @@ LAYERRECOMMENDS_integrity = "\ tpm2 \ tpm \ " + +BB_HASHBASE_WHITELIST_append += "\ + RPM_FSK_PATH \ +" diff --git a/meta-signing-key/conf/layer.conf b/meta-signing-key/conf/layer.conf index e0b171b..7b7127e 100644 --- a/meta-signing-key/conf/layer.conf +++ b/meta-signing-key/conf/layer.conf @@ -44,6 +44,10 @@ SAMPLE_RPM_KEYNAME ??= "SecureCore" RPM_GPG_NAME ?= "${SAMPLE_RPM_KEYNAME}" RPM_GPG_PASSPHRASE ?= "SecureCore" -BB_HASHBASE_WHITELIST_append += " IMA_SIGNING_BLACKLIST IMA_KEYS_DIR \ - RPM_KEYS_DIR UEFI_SB_KEYS_DIR EV_CERT \ - MOK_SB_KEYS_DIR MSFT_DB_CERT MSFT_KEK_CERT" +BB_HASHBASE_WHITELIST_append += "\ + SYSTEM_TRUSTED_KEYS_DIR \ + IMA_KEYS_DIR \ + RPM_KEYS_DIR \ + UEFI_SB_KEYS_DIR MOK_SB_KEYS_DIR \ + EV_CERT MSFT_DB_CERT MSFT_KEK_CERT \ +" -- cgit v1.2.3-54-g00ecf