From 9c8ddd5bd32d26a33027f3160fced03b9afbe9da Mon Sep 17 00:00:00 2001 From: Lans Zhang Date: Wed, 19 Jul 2017 09:56:29 +0800 Subject: IMA: enable RPM file signing if ima is configured Signed-off-by: Lans Zhang --- meta-integrity/classes/sign_rpm_ext.bbclass | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/meta-integrity/classes/sign_rpm_ext.bbclass b/meta-integrity/classes/sign_rpm_ext.bbclass index a5a1dc8..1d0c1cb 100644 --- a/meta-integrity/classes/sign_rpm_ext.bbclass +++ b/meta-integrity/classes/sign_rpm_ext.bbclass @@ -8,7 +8,7 @@ RPM_GPG_BACKEND ?= "local" # SHA-256 is used for the file checksum digest. RPM_FILE_CHECKSUM_DIGEST ?= "8" -RPM_SIGN_FILES = "1" +RPM_SIGN_FILES = "${@bb.utils.contains('DISTRO_FEATURES', 'ima', '1', '0', d)}" RPM_FSK_PATH ?= "${@uks_ima_keys_dir(d) + 'x509_ima.key'}" RPM_FSK_PASSWORD ?= "password" -- cgit v1.2.3-54-g00ecf