diff options
| author | Philipp Hahn <hahn@univention.de> | 2018-04-07 13:06:30 +0200 |
|---|---|---|
| committer | Luca Boccassi <bluca@debian.org> | 2019-02-15 21:25:37 +0000 |
| commit | e914483c5becf89cd8ed0acf489b921a42e50b05 (patch) | |
| tree | 66cc2e328c4be9fdf9c66c5f3b551dffa681022f /Cryptlib/OpenSSL/crypto/buffer/buf_err.c | |
| parent | 4bb202a09934485b580d01b2780a1b21c2a797ba (diff) | |
| download | efi-boot-shim-e914483c5becf89cd8ed0acf489b921a42e50b05.tar.gz efi-boot-shim-e914483c5becf89cd8ed0acf489b921a42e50b05.zip | |
Disable ephemeral key on Debian
shim creates an ephemeral key, which gets embedded into shim and is used
to sign the corresponding mok-manager (mm*.efi) and fall-back-manager
(fb*.efi).
This makes the build unreproducible.
For Debian we will get those two binaries signed by our Debian-UEFI-CA,
which is the primary (and only) key embedded in shim.
Diffstat (limited to 'Cryptlib/OpenSSL/crypto/buffer/buf_err.c')
0 files changed, 0 insertions, 0 deletions
