<feed xmlns='http://www.w3.org/2005/Atom'>
<title>efi-boot-shim.git/include, branch Release_3.3.3</title>
<subtitle> (mirror of https://github.com/vyos/efi-boot-shim.git)
</subtitle>
<id>https://git.amelek.net/vyos/efi-boot-shim.git/atom?h=Release_3.3.3</id>
<link rel='self' href='https://git.amelek.net/vyos/efi-boot-shim.git/atom?h=Release_3.3.3'/>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/'/>
<updated>2016-06-09T19:32:37+00:00</updated>
<entry>
<title>shim: make the PE loader less overzealous on rejections</title>
<updated>2016-06-09T19:32:37+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2016-06-09T19:32:37+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=14a59055aa85e3e91b12a8ff53cf3216b8977e65'/>
<id>urn:sha1:14a59055aa85e3e91b12a8ff53cf3216b8977e65</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Fix console_print_box*() parameters.</title>
<updated>2015-06-16T15:41:32+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2015-06-11T18:36:35+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=7bb0d6f71d7deeb82ca17ec20839fe10dc572c1d'/>
<id>urn:sha1:7bb0d6f71d7deeb82ca17ec20839fe10dc572c1d</id>
<content type='text'>
When we made lib build with the correct CFLAGS, it inherited
-Werror=sign-compare, and I fixed up some parameters on
console_print_box() and console_print_box_at() to avoid sign comparison
errors.

The fixups were *completely wrong*, as some behavior relies on negative
values.  So this fixes them in a completely different way, by casting
appropriately to signed types where we're doing comparisons.

Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Make lib/ build right with the cflags it should be using...</title>
<updated>2015-04-13T23:55:25+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2015-02-25T21:33:59+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=7fdbd9d48a4e447d4ea42268afb80a1ee84b633b'/>
<id>urn:sha1:7fdbd9d48a4e447d4ea42268afb80a1ee84b633b</id>
<content type='text'>
... but isn't.

Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Align the sections we're loading, and check for validity /after/ discarding.</title>
<updated>2015-04-13T23:55:25+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2015-02-06T22:48:07+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=d01421eb5ae67daa9a2d341099b3e58fdb2f9f9e'/>
<id>urn:sha1:d01421eb5ae67daa9a2d341099b3e58fdb2f9f9e</id>
<content type='text'>
Turns out a) the codegen on aarch64 generates code that has real
alignment needs, and b) if we check the length of discardable sections
before discarding them, we error for no reason.

So do the error checking in the right order, and always enforce some
alignment because we know we have to.

Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Make sure we don't try to load a binary from a different arch.</title>
<updated>2014-08-27T20:40:57+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2014-08-27T20:39:51+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=fa2a35ce78b3dc4e9b29f47a9ebc675a97a9a7c7'/>
<id>urn:sha1:fa2a35ce78b3dc4e9b29f47a9ebc675a97a9a7c7</id>
<content type='text'>
Since in theory you could, for example, get an x86_64 binary signed that
also behaves as an ARM executable, we should be checking this before
people build on other architectures.

Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Make sure we default to assuming we're locked down.</title>
<updated>2014-06-25T14:55:56+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2014-06-25T14:55:56+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=eb4cb6a50981f9ef4698b3847bd32e70081ab71d'/>
<id>urn:sha1:eb4cb6a50981f9ef4698b3847bd32e70081ab71d</id>
<content type='text'>
If "SecureBoot" exists but "SetupMode" does not, assume "SetupMode" says
we're not in Setup Mode.

Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>MokManager: handle the error status from ReadKeyStroke</title>
<updated>2014-06-25T14:02:18+00:00</updated>
<author>
<name>Gary Ching-Pang Lin</name>
<email>glin@suse.com</email>
</author>
<published>2013-12-03T07:52:02+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=22254e2633d58edd0176ccdfab9dd35171f89963'/>
<id>urn:sha1:22254e2633d58edd0176ccdfab9dd35171f89963</id>
<content type='text'>
On some machines, even though the key event was signaled, ReadKeyStroke
still got EFI_NOT_READY. This commit handles the error status to avoid
console_get_keystroke from returning unexpected keys.

Signed-off-by: Gary Ching-Pang Lin &lt;glin@suse.com&gt;

Conflicts:
	MokManager.c
</content>
</entry>
<entry>
<title>Fix path generation for Dhcpv4 bootloader.</title>
<updated>2013-11-21T16:48:24+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2013-11-20T17:20:23+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=e62b69a5b0b87c6df7a4fc23906134945309e927'/>
<id>urn:sha1:e62b69a5b0b87c6df7a4fc23906134945309e927</id>
<content type='text'>
Right now we always look for e.g. "\grubx64.efi", which is completely
wrong.  This makes it look for the path shim was loaded from and modify
that to end in a sanitized version of our default loader name.

Resolves: rhbz#1032583

Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Try to actually make debug printing look reasonable.</title>
<updated>2013-10-04T15:51:09+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2013-10-04T14:22:46+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=880f9de4123561d18e5c230b4f6e614c5eab960d'/>
<id>urn:sha1:880f9de4123561d18e5c230b4f6e614c5eab960d</id>
<content type='text'>
Signed-off-by: Peter Jones &lt;pjones@redhat.com&gt;
</content>
</entry>
<entry>
<title>Add ident-like blobs to shim.efi for version checking.</title>
<updated>2013-10-03T15:11:09+00:00</updated>
<author>
<name>Peter Jones</name>
<email>pjones@redhat.com</email>
</author>
<published>2013-10-03T15:01:36+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/efi-boot-shim.git/commit/?id=fc986307fb200fdf493b9dd083ad39ae3561b0c9'/>
<id>urn:sha1:fc986307fb200fdf493b9dd083ad39ae3561b0c9</id>
<content type='text'>
I feel dirty.
</content>
</entry>
</feed>
