<feed xmlns='http://www.w3.org/2005/Atom'>
<title>efi-boot-shim.git/Makefile, branch 0.7</title>
<subtitle> (mirror of https://github.com/vyos/efi-boot-shim.git)
</subtitle>
<id>https://git.amelek.net/vyos/efi-boot-shim.git/atom?h=0.7</id>
<link rel='self' href='https://git.amelek.net/vyos/efi-boot-shim.git/atom?h=0.7'/>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/'/>
<updated>2013-11-06T19:07:05+00:00</updated>
<entry>
<title>Bump version to 0.7.</title>
<updated>2013-11-06T19:07:05+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2013-11-06T19:07:05+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=617b42d8ffc8be12bca36b256293ca3f3b71e2c5'/>
<id>urn:sha1:617b42d8ffc8be12bca36b256293ca3f3b71e2c5</id>
<content type='text'>
Do not use 0.6; on some machines it misunderstands the SetupMode
variable.

Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Make tag its own make target, and make it sign tags.</title>
<updated>2013-10-31T15:16:32+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2013-10-31T15:16:32+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=cb874edd0bbb02e69c91512b879713769675402b'/>
<id>urn:sha1:cb874edd0bbb02e69c91512b879713769675402b</id>
<content type='text'>
Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Bump version to 0.6</title>
<updated>2013-10-31T15:12:24+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2013-10-31T15:12:24+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=56ebe598fedc6250b3ce9b4e8d9947ce3d9df919'/>
<id>urn:sha1:56ebe598fedc6250b3ce9b4e8d9947ce3d9df919</id>
<content type='text'>
Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Revert "additional bounds-checking on section sizes"</title>
<updated>2013-10-23T14:50:36+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2013-10-23T14:50:36+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=56fb385a172890cf4c20c9daa89bb6cccf9c1b4e'/>
<id>urn:sha1:56fb385a172890cf4c20c9daa89bb6cccf9c1b4e</id>
<content type='text'>
This reverts commit 21e40f0174814b3d91836e38c7cf95c8f2f1f3a4.

In principle I like the idea of what's going on here, but
generate_hash() really does need to have the expected result.
</content>
</entry>
<entry>
<title>additional bounds-checking on section sizes</title>
<updated>2013-10-22T15:23:51+00:00</updated>
<author>
<name>Kees Cook</name>
<email>kees@outflux.net</email>
</author>
<published>2012-12-03T23:52:48+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=21e40f0174814b3d91836e38c7cf95c8f2f1f3a4'/>
<id>urn:sha1:21e40f0174814b3d91836e38c7cf95c8f2f1f3a4</id>
<content type='text'>
This adds additional bounds-checking on the section sizes. Also adds
-Wsign-compare to the Makefile and replaces some signed variables with
unsigned counteparts for robustness.

Signed-off-by: Kees Cook &lt;kees@ubuntu.com&gt;
</content>
</entry>
<entry>
<title>Bump version to 0.5</title>
<updated>2013-10-04T21:04:21+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2013-10-04T21:04:12+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=baebb090ea1f65c205ac1fe2b83b42bb979a4907'/>
<id>urn:sha1:baebb090ea1f65c205ac1fe2b83b42bb979a4907</id>
<content type='text'>
Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Add ident-like blobs to shim.efi for version checking.</title>
<updated>2013-10-03T15:11:09+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2013-10-03T15:01:36+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=fc986307fb200fdf493b9dd083ad39ae3561b0c9'/>
<id>urn:sha1:fc986307fb200fdf493b9dd083ad39ae3561b0c9</id>
<content type='text'>
I feel dirty.
</content>
</entry>
<entry>
<title>Remove "shim.cer" on "make clean".</title>
<updated>2013-10-02T14:48:41+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2013-10-02T14:48:41+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=91c5a05037598425757b3a9ab76619ff2f48fc20'/>
<id>urn:sha1:91c5a05037598425757b3a9ab76619ff2f48fc20</id>
<content type='text'>
If we don't do this, an old key winds up being reused and
MokManager.efi.signed is signed with a different key than shim_cert
reflects.

Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Conditionalize overriding the security policy.</title>
<updated>2013-10-01T18:03:16+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2013-10-01T17:55:27+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=f330528786fb02f1771c76818ffc8f1793f5d2f7'/>
<id>urn:sha1:f330528786fb02f1771c76818ffc8f1793f5d2f7</id>
<content type='text'>
Make OVERRIDE_SECURITY_POLICY a build option.

Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Merge console_control.h and console.h</title>
<updated>2013-10-01T18:03:16+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2013-10-01T17:43:25+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=4537217422a4e1bf145e135d89284cf7887ad826'/>
<id>urn:sha1:4537217422a4e1bf145e135d89284cf7887ad826</id>
<content type='text'>
Since these are topically the same thing, they can live together.

Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
</feed>
