- Jan 08, 2025
-
-
Steve McIntyre authored
for our generated packages. Closes: #1092425
-
- Jan 04, 2025
-
-
Steve McIntyre authored
-
Steve McIntyre authored
shim: Build without requiring root See merge request !17
-
- Dec 28, 2024
-
-
Niels Thykier authored
Closes: #1089432
-
- May 26, 2024
-
-
Steve McIntyre authored
Remove Ubuntu CA and dbx files from the repository See merge request !16
-
-
- May 05, 2024
-
-
Steve McIntyre authored
-
- May 04, 2024
-
-
Steve McIntyre authored
-
Steve McIntyre authored
-
Steve McIntyre authored
-
Steve McIntyre authored
Closes: #1069054
-
Steve McIntyre authored
-
- May 03, 2024
-
-
Steve McIntyre authored
Force shim to use the latest revocations by default to block some older grub / peimage issues. This is: "shim,4\ngrub,4\ngrub.peimage,2\n" This should work with the current released grub builds in all of buster, bullseye, bookwork and trixie/unstable. Let's not leave known security holes in the wild.
-
Steve McIntyre authored
0001-sbat-Add-grub.peimage-2-to-latest-CVE-2024-2312.patch 0002-sbat-Also-bump-latest-for-grub-4-and-to-todays-date.patch
-
Steve McIntyre authored
Add a new simple script to do this: check_nx
-
Steve McIntyre authored
Debian kernels are no longer signed for i386, it's time to stop supporting i386 SB.
-
Steve McIntyre authored
-
Steve McIntyre authored
-
- May 02, 2024
-
-
Steve McIntyre authored
-
Bastien Roucariès authored
-
- Apr 29, 2024
-
-
Steve McIntyre authored
Apply multi-arch hints. + shim-unsigned: Add Multi-Arch: same. See merge request !15
-
Bastien Roucariès authored
-
Bastien Roucariès authored
-
Bastien Roucariès authored
-
Bastien Roucariès authored
-
Changes-By: apply-multiarch-hints
-
- Apr 17, 2024
-
-
Steve McIntyre authored
Tests See merge request !14
-
- Apr 16, 2024
-
-
Bastien Roucariès authored
-
- Apr 15, 2024
-
-
Bastien Roucariès authored
-
Bastien Roucariès authored
-
Bastien Roucariès authored
-
Bastien Roucariès authored
-
Bastien Roucariès authored
-
Bastien Roucariès authored
-
Bastien Roucariès authored
-
- Jan 20, 2024
-
-
Steve McIntyre authored
otherwise our build won't be reproducible, doh!
-
- Nov 02, 2023
-
-
Steve McIntyre authored
We used to use efisiglist to generate the DBX list. Newer versions of the pesign package don't include it any more, and the recommended replacement tool is now efisecdb from efivar. Tweak the generate_dbx_list script to work with both old and new. Let's make backports easy...
-
- Jan 31, 2023
-
-
Steve McIntyre authored
-
- Jan 30, 2023
-
-
Steve McIntyre authored
-
- Jan 29, 2023
-
-
Steve McIntyre authored
-