Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

pesign-obs-integration-10.2+git20240723.d344d91-1.2 RPM for aarch64

From OpenSuSE Ports Tumbleweed for aarch64

Name: pesign-obs-integration Distribution: openSUSE Tumbleweed
Version: 10.2+git20240723.d344d91 Vendor: openSUSE
Release: 1.2 Build date: Tue Jul 23 08:05:14 2024
Group: Development/Tools/Other Build host: reproducible
Size: 93894 Source RPM: pesign-obs-integration-10.2+git20240723.d344d91-1.2.src.rpm
Packager: http://bugs.opensuse.org
Url: https://en.opensuse.org/openSUSE:UEFI_Image_File_Sign_Tools
Summary: Macros and scripts to sign the kernel and bootloader
This package provides scripts and rpm macros to automate signing of the
boot loader, kernel and kernel modules in the openSUSE Buildservice.

Provides

Requires

License

GPL-2.0-or-later

Changelog

* Tue Jul 23 2024 jlee@suse.com
  - Update to version 10.2+git20240723.d344d91:
    * Quote % signs in scripts
    * Export also a VCS tag
    * specfile: Change license to OR-LATER
    * specfile: Update rpm constructs
    * spec.in: Add changelog tag
    * spec.in: Don't copy changes to OTHER
    * spec.in: Use SPDX license
* Fri Feb 16 2024 jlee@suse.com
  - Update to version 10.2+git20240216.1e15ef4:
    * Create changes file for reproducible build
    * Add support for authenticated uefi variables
    * Allow to dump the pkcs7 signed data as well
    * Add -N option to add a NULL param to the digest algo definitions
    * Add -C option to include certificates in the PKCS7 signature
    * spec.in: fix rpmlint warnings
* Thu Jun 22 2023 Joey Lee <jlee@suse.com>
  - Modify pesign-obs-integration.changes, add bsc#1211849 to changelog.
    The supporting of filetriggers and transfiletriggers in
    pesign-gen-repackage-spec in 10.2+git20230612.4699910 is for
    bsc#1211849.
* Mon Jun 12 2023 jlee@suse.com
  - Update to version 10.2+git20230612.4699910:
    * pesign-gen-repackage-spec: support filetriggers and transfiletriggers (bsc#1211849)
    * Add support for dependency generators
    * pesign-gen-repackage-spec: fix the filename issue in the scripts of generated ueficert package
    * Verfiy the signatures before attaching them
    * Don't copy rpmlintrc to OTHER
    * Fix %attr issues
    * Support %lang
    * Support OrderWithRequires
    * pesign-repackage.spec.in: Add description for footer_size
  - Removed the following patches becuase they are merged to
    10.2+git20230612.4699910:
      Patch:          order.patch
      Patch1:         attr.patch
      Patch2:         lang.patch
      Patch3:         rpmlintrc.patch
      Patch4:         verify-sig.patch
      Patch5:         dependency-generators.patch
  - Use README.md instead of README in pesign-obs-integration.spec.
* Mon Jan 23 2023 Callum Farmer <gmbr3@opensuse.org>
  - Add dependency-generators.patch to support copying source files
    and macros to the re-package build (jsc#PED-2658)
* Wed Sep 28 2022 Gary Ching-Pang Lin <glin@suse.com>
  - Add verify-sig.patch to verify the signatures before attaching
    them (bsc#1200108, bsc#1203679)
* Sat Jul 09 2022 Callum Farmer <gmbr3@opensuse.org>
  - Update attr.patch to fix ghost symlinks still being affected
  - Add rpmlintrc.patch to stop copying it to the build output
* Wed Jun 22 2022 Callum Farmer <gmbr3@opensuse.org>
  - Add attr.patch to fix:
    * Avoid assigning %attr's to symlinks which causes rpmbuild spam
    * Change perms mask to 07777 to ensure SUID/SGID is copied over
  - Add lang.patch to support %lang
* Wed Jun 15 2022 gmbr3@opensuse.org
  - Update to version 10.2+git20220504.8690743:
    * Don't repackage aarch64_ilp32 *-64bit packages
    * Use pesign for signing on riscv64
    * Add padding to grub signature correctly (jsc#SLE-18271 bsc#1192764).
    * kernel-sign-file: Support appending verbatim PKCS#7 signature.
    * kernel-sign-file: Move x509 parsing into a function.
    * Support ppc grub signing (jsc#SLE-18271 bsc#1192764).
    * Handle packages with epochs as well
    * Turn off rpm fatal warnings for noarch packages
  - Upstreamed patches:
    * 0001-Support-ppc-grub-signing-jsc-SLE-18271-bsc-1192764.patch
    * 0002-kernel-sign-file-Move-x509-parsing-into-a-function.patch
    * 0003-kernel-sign-file-Support-appending-verbatim-PKCS-7-s.patch
    * 0004-Add-padding-to-grub-signature-correctly-jsc-SLE-1827.patch
  - Added patches:
    * order.patch - support OrderWithRequires
* Fri Jan 21 2022 Michal Suchanek <msuchanek@suse.com>
  - Support signing grub on powerpc (jsc#SLE-18271 bsc#1192764).
    + 0001-Support-ppc-grub-signing-jsc-SLE-18271-bsc-1192764.patch
    + 0002-kernel-sign-file-Move-x509-parsing-into-a-function.patch
    + 0003-kernel-sign-file-Support-appending-verbatim-PKCS-7-s.patch
    + 0004-Add-padding-to-grub-signature-correctly-jsc-SLE-1827.patch
* Wed Aug 04 2021 lnussel@suse.de
  - Update to version 10.2+git20210804.ff18da1:
    * brp-99-pesign: fix that the signature of shim be broken
* Fri Jul 30 2021 lnussel@suse.de
  - Update to version 10.2+git20210730.0cb100c:
    * Sign kernel also in module dir (boo#1184804)
      (replaces pesign-kernel-in-lib.diff)
  - switch package to obs_scm to avoid recompression
* Fri Jul 23 2021 dmueller@suse.com
  - Update to version git master (10.2):
    * Add support for GZIP and ZSTD module compression (bsc#1188636)
    * Always pad the EFI image when calculating the hash
    * Version bump to 10.2
    * approach issue#22 false noarch subpackage
  - drop pesign-obs-integration-bsc1183747-always-pad-efi-images.patch
    pesign-obs-integration-support-gzip-zstd-compression.patch (merged)
* Mon Jun 21 2021 Gary Ching-Pang Lin <glin@suse.com>
  - Add pesign-obs-integration-support-gzip-zstd-compression.patch
    to support gzip and zstd module compression
* Fri Apr 23 2021 Ludwig Nussel <lnussel@suse.de>
  - find kernel also in /lib (boo#1184804, pesign-kernel-in-lib.diff)
* Fri Mar 19 2021 Gary Ching-Pang Lin <glin@suse.com>
  - Add pesign-obs-integration-bsc1183747-always-pad-efi-images.patch
    to fix the potential hash mismatching (bsc#1183747)

Files

/usr/bin/modsign-repackage
/usr/bin/modsign-verify
/usr/lib/rpm/brp-suse.d
/usr/lib/rpm/brp-suse.d/brp-99-compress-vmlinux
/usr/lib/rpm/brp-suse.d/brp-99-pesign
/usr/lib/rpm/pesign
/usr/lib/rpm/pesign/gen-hmac
/usr/lib/rpm/pesign/kernel-sign-file
/usr/lib/rpm/pesign/pesign-gen-repackage-spec
/usr/lib/rpm/pesign/pesign-repackage.spec.in
/usr/share/doc/packages/pesign-obs-integration
/usr/share/doc/packages/pesign-obs-integration/README.md
/usr/share/licenses/pesign-obs-integration
/usr/share/licenses/pesign-obs-integration/COPYING


Generated by rpm2html 1.8.1

Fabrice Bellet, Sat Nov 9 01:51:09 2024