<feed xmlns='http://www.w3.org/2005/Atom'>
<title>efi-boot-shim.git/Makefile, branch 15</title>
<subtitle> (mirror of https://github.com/vyos/efi-boot-shim.git)
</subtitle>
<id>https://git.amelek.net/vyos/efi-boot-shim.git/atom?h=15</id>
<link rel='self' href='https://git.amelek.net/vyos/efi-boot-shim.git/atom?h=15'/>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/'/>
<updated>2018-04-05T18:49:17+00:00</updated>
<entry>
<title>Bump version to 15</title>
<updated>2018-04-05T18:49:17+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2018-03-22T21:38:59+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=51413d1deb0df0debdf1d208723131ff0e36d3a3'/>
<id>urn:sha1:51413d1deb0df0debdf1d208723131ff0e36d3a3</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Fix lib/ rebuild-on-change dependencies in the Makefile</title>
<updated>2018-04-05T18:49:17+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2018-04-05T17:30:59+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=bbaa96cdb2f4df7af79916fbb0f7912426d53ec4'/>
<id>urn:sha1:bbaa96cdb2f4df7af79916fbb0f7912426d53ec4</id>
<content type='text'>
Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Make sure fallback.efi gets errlog.o as well</title>
<updated>2018-03-12T20:26:07+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2018-03-12T20:26:07+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=a2f3794356db2d9458a56e745a218d84fb1a91c8'/>
<id>urn:sha1:a2f3794356db2d9458a56e745a218d84fb1a91c8</id>
<content type='text'>
Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>shim: Make our variable validation and mirroring table driven.</title>
<updated>2018-03-12T20:21:43+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2017-10-18T21:33:09+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=4181a16f62951c6078802bdea735947c69999acd'/>
<id>urn:sha1:4181a16f62951c6078802bdea735947c69999acd</id>
<content type='text'>
This makes it so shim's idea of Mok variables all resides in one table
of data, and we don't need a bunch of nearly identical ad-hoc functions
to handle each of them.

Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Move includes around to clean the source tree up a bit.</title>
<updated>2018-03-12T20:21:43+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2017-10-19T19:44:12+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=dc62a3c4dc3dd590fbba32c46b717088a132eb5e'/>
<id>urn:sha1:dc62a3c4dc3dd590fbba32c46b717088a132eb5e</id>
<content type='text'>
Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Add "make scan-build" target.</title>
<updated>2018-03-12T20:21:43+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2017-10-18T18:32:00+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=8c42b9389f09a3630606abfbf463ace4d31d57da'/>
<id>urn:sha1:8c42b9389f09a3630606abfbf463ace4d31d57da</id>
<content type='text'>
Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Add 'make coverity' target.</title>
<updated>2018-03-12T20:21:43+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2017-09-26T18:19:45+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=d184bf10752d92eb44ac23139dce5f0f1ece4d0d'/>
<id>urn:sha1:d184bf10752d92eb44ac23139dce5f0f1ece4d0d</id>
<content type='text'>
Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Split makefiles up a bit</title>
<updated>2018-03-12T20:21:43+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2017-09-26T18:27:40+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=b681123a874aa693fc64b0947fd6459feeab6b33'/>
<id>urn:sha1:b681123a874aa693fc64b0947fd6459feeab6b33</id>
<content type='text'>
Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Fix failure to boot on systems without a TPM</title>
<updated>2018-03-08T16:18:33+00:00</updated>
<author>
<name>Hans de Goede</name>
<email>hdegoede@redhat.com</email>
</author>
<published>2018-03-08T14:23:27+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=79cdb2a215de2ace7d1bf0a294165a04b726c70a'/>
<id>urn:sha1:79cdb2a215de2ace7d1bf0a294165a04b726c70a</id>
<content type='text'>
This commit fixes 2 issues with the TPM support code:

1) Remove "REQUIRE_TPM ?=" line from the Makefile, further down the Makefile
checks if REQUIRE_TPM is undefined, but the above line sets it to an empty
string, which is not the same as undefined. Without this handle_image fails
after the tpm_log_pe() call even if REQUIRE_TPM=1 once was not set when
building the shim

2) When secure-boot is disabled then shim_verify() would exit with the
status of tpm_log_pe(), which on systems with a TPM is an error. Combined
with the recent change to always install the shim protocols, this causes
grub to refuse to boot any kernel since the verify() call now always fails.
This commit fixes this by explicitly setting status = EFI_SUCCESS when
secure-boot is disabled.

Signed-off-by: Hans de Goede &lt;hdegoede@redhat.com&gt;
</content>
</entry>
<entry>
<title>Add REQUIRE_TPM flag to treat TPM related errors as critical</title>
<updated>2018-03-06T19:42:32+00:00</updated>
<author>
<name>Tamas K Lengyel</name>
<email>lengyelt@ainfosec.com</email>
</author>
<published>2017-11-08T22:10:18+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=ba06a4362d22b41887bb4121694e0562cefa5385'/>
<id>urn:sha1:ba06a4362d22b41887bb4121694e0562cefa5385</id>
<content type='text'>
Currently TPM related errors are being silently discarded.

Signed-off-by: Tamas K Lengyel &lt;lengyelt@ainfosec.com&gt;
</content>
</entry>
</feed>
