summaryrefslogtreecommitdiff
path: root/Cryptlib/OpenSSL
diff options
context:
space:
mode:
authorPhilipp Hahn <hahn@univention.de>2018-04-07 13:06:30 +0200
committerLuca Boccassi <bluca@debian.org>2019-02-15 21:25:37 +0000
commite914483c5becf89cd8ed0acf489b921a42e50b05 (patch)
tree66cc2e328c4be9fdf9c66c5f3b551dffa681022f /Cryptlib/OpenSSL
parent4bb202a09934485b580d01b2780a1b21c2a797ba (diff)
downloadefi-boot-shim-e914483c5becf89cd8ed0acf489b921a42e50b05.tar.gz
efi-boot-shim-e914483c5becf89cd8ed0acf489b921a42e50b05.zip
Disable ephemeral key on Debian
shim creates an ephemeral key, which gets embedded into shim and is used to sign the corresponding mok-manager (mm*.efi) and fall-back-manager (fb*.efi). This makes the build unreproducible. For Debian we will get those two binaries signed by our Debian-UEFI-CA, which is the primary (and only) key embedded in shim.
Diffstat (limited to 'Cryptlib/OpenSSL')
0 files changed, 0 insertions, 0 deletions