From 2d24b1302670bda2cc3c433c8fe9384eaafd58ac Mon Sep 17 00:00:00 2001 From: Louis Abel Date: Tue, 25 Apr 2023 12:14:47 -0700 Subject: [PATCH] update secureboot certificates --- SOURCES/rocky-driver.cer | 29 ++++++++++++++++++++++++ SOURCES/rocky-fwupd.cer | 30 +++++++++++++++++++++++++ SOURCES/rocky-grub2.cer | 30 +++++++++++++++++++++++++ SOURCES/rocky-kernel.cer | 30 +++++++++++++++++++++++++ SOURCES/rocky-kpatch.cer | 29 ++++++++++++++++++++++++ SOURCES/rocky-shim.cer | 30 +++++++++++++++++++++++++ SOURCES/rockydup1.x509 | Bin 1296 -> 1293 bytes SOURCES/rockykpatch1.x509 | Bin 1289 -> 1293 bytes SPECS/rocky-release.spec | 46 ++++++++++++++++++++++++-------------- 9 files changed, 207 insertions(+), 17 deletions(-) create mode 100644 SOURCES/rocky-driver.cer create mode 100644 SOURCES/rocky-fwupd.cer create mode 100644 SOURCES/rocky-grub2.cer create mode 100644 SOURCES/rocky-kernel.cer create mode 100644 SOURCES/rocky-kpatch.cer create mode 100644 SOURCES/rocky-shim.cer diff --git a/SOURCES/rocky-driver.cer b/SOURCES/rocky-driver.cer new file mode 100644 index 0000000..559dcd0 --- /dev/null +++ b/SOURCES/rocky-driver.cer @@ -0,0 +1,29 @@ +-----BEGIN CERTIFICATE----- +MIIFCTCCA/GgAwIBAgIBDjANBgkqhkiG9w0BAQsFADCB1DELMAkGA1UEBhMCVVMx +ETAPBgNVBAgMCERlbGF3YXJlMQ4wDAYDVQQHDAVEb3ZlcjEtMCsGA1UECgwkUm9j +a3kgRW50ZXJwcmlzZSBTb2Z0d2FyZSBGb3VuZGF0aW9uMSEwHwYDVQQLDBhSZWxl +YXNlIGVuZ2luZWVyaW5nIHRlYW0xKDAmBgNVBAMMH1JvY2t5IExpbnV4IFNlY3Vy +ZSBCb290IFJvb3QgQ0ExJjAkBgkqhkiG9w0BCQEWF3NlY3VyaXR5QHJvY2t5bGlu +dXgub3JnMB4XDTIzMDQxMjE4NTEyMFoXDTI0MDQxMTE4NTEyMFowgdgxCzAJBgNV +BAYTAlVTMREwDwYDVQQIDAhEZWxhd2FyZTEOMAwGA1UEBwwFRG92ZXIxLTArBgNV +BAoMJFJvY2t5IEVudGVycHJpc2UgU29mdHdhcmUgRm91bmRhdGlvbjEhMB8GA1UE +CwwYUmVsZWFzZSBlbmdpbmVlcmluZyB0ZWFtMSwwKgYDVQQDDCNSb2NreSBMaW51 +eCBEcml2ZXIgU2lnbmluZyBDZXJ0IDEwMTEmMCQGCSqGSIb3DQEJARYXc2VjdXJp +dHlAcm9ja3lsaW51eC5vcmcwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIB +gQDAvHcZPrCh2MNBAASPDI22IDhsvww8IEK5s1dipx80+o5ikJvaTpmbbCclIq2u +yljNU4ACdzIijDqMzYC8kLMtXJHmJ2UqTUd4pT0ZKalbVt6xrhQaiTL1pdy0S3mJ +0K3g91hahIu9uT0tYc2MZrrwhZh6ugCt+epSvk3UN6g1jVfBPWeQwzqazsDTrqbz +8xEBfGNC4RcdmWVN6M2KNhoKUmIJ3y6Uz3jxcj8ke06r2872FJFr2OpoY8ti0bq3 +9uy+qQR+GhmPFwP0bgItAGYu3wwc5aAsandaF6tK77lefM/IyVNRQTUElOYt0ywv +IALu0fDg9joHwYb9aaU4vCHhgddYtCqs491NIzoK6wEMa3lIKsW1qeKW6eeRWf/0 +/sLfCWGR8v5xarpFhJlC10bw0cQ+Ksn8xfQ/o4b/WPqy5sBpYg4UXPX4LBg1xjh4 +2f6kup3mBZYupayJMU3xtD7p849dJdPPTVJwcZUcRFRCXcAFPHKGfg1MtdhSrIRO +TjMCAwEAAaNgMF4wDAYDVR0TAQH/BAIwADAOBgNVHQ8BAf8EBAMCB4AwHQYDVR0O +BBYEFM5TfwxhXAOBFKy7ASM6W2K5OhlxMB8GA1UdIwQYMBaAFEwsa9fWTugVgcq4 +6YZmH2XiFm/EMA0GCSqGSIb3DQEBCwUAA4IBAQDF7D7WxEkEbTwZAmqtPFckBKGH +EP6TOWeoTqEGQoqyv39EWrOuKbJiuvMXF+0xMfU9IN2s1c5KtGYe+JnbJGQx1lRb +OG/syTdF2azAo+suTAR4YJy91d6Ivd55P8LmAISeg0Z6QkiSbsLrHGWbb/bNAATq +GPr3xwFIT8IN9+jDHRbMIJsEVA+/i7JvNfD87zOG1/PJDc6JRMnDlH3Urccaujy3 +P+WpoGuMfqPqnI2tPrvUbJ2vwS+OnlVx5k50quKdQi83elyjdVpsxFPPSKfFzRTd +x5t7mwCak9gNm5sKGLXiGlRi+gryJLk7K4CkqPsYWQ/5SGnwkocPNXwJFiUC +-----END CERTIFICATE----- diff --git a/SOURCES/rocky-fwupd.cer b/SOURCES/rocky-fwupd.cer new file mode 100644 index 0000000..bf248f2 --- /dev/null +++ b/SOURCES/rocky-fwupd.cer @@ -0,0 +1,30 @@ +-----BEGIN CERTIFICATE----- +MIIFIDCCBAigAwIBAgIBDzANBgkqhkiG9w0BAQsFADCB1DELMAkGA1UEBhMCVVMx +ETAPBgNVBAgMCERlbGF3YXJlMQ4wDAYDVQQHDAVEb3ZlcjEtMCsGA1UECgwkUm9j +a3kgRW50ZXJwcmlzZSBTb2Z0d2FyZSBGb3VuZGF0aW9uMSEwHwYDVQQLDBhSZWxl +YXNlIGVuZ2luZWVyaW5nIHRlYW0xKDAmBgNVBAMMH1JvY2t5IExpbnV4IFNlY3Vy +ZSBCb290IFJvb3QgQ0ExJjAkBgkqhkiG9w0BCQEWF3NlY3VyaXR5QHJvY2t5bGlu +dXgub3JnMB4XDTIzMDQxMjE4NTEzMVoXDTI0MDQxMTE4NTEzMVowgdcxCzAJBgNV +BAYTAlVTMREwDwYDVQQIDAhEZWxhd2FyZTEOMAwGA1UEBwwFRG92ZXIxLTArBgNV +BAoMJFJvY2t5IEVudGVycHJpc2UgU29mdHdhcmUgRm91bmRhdGlvbjEhMB8GA1UE +CwwYUmVsZWFzZSBlbmdpbmVlcmluZyB0ZWFtMSswKQYDVQQDDCJSb2NreSBMaW51 +eCBGd3VwZCBTaWduaW5nIENlcnQgMTAxMSYwJAYJKoZIhvcNAQkBFhdzZWN1cml0 +eUByb2NreWxpbnV4Lm9yZzCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGB +ALRGl+5WVDUwqFfaj7xdn+lpXg9huqtADwKYGlZQo5zAepxiYBDB7mzCI2lBOO6K ++sFGOwhYVS8XGEnFvw8uNDZuFjo1k4cwdqhBwmU93gSpVcrsmupdNdZRkSWelmJ5 +bDBz15DU9za4KMNCs1Ymn0EDI+Vr9QgX0igYUTKJu8ariMJWw+Rvej9D2T0EFVd5 +7pW/Se0cXns38A9yoqo5CH5CRSl2WydYotxj310/KCrwGi1QBlcvdyL1EGHOQcbJ +gcnGsEyzrtsU1r8xUvYZQxpdXptQS90mkdhx7GfnNleMZD6BrQu7AANh0Gvn1n6n +z2k3hp8LenfPeATIHxF/V60ts3j5dOv2KPwCEJ5wLSJ/IB/rZiHgmguCmaRzcxVC +nzLnELeaO9zz6aXSxWf/1AWJm1kDoddFjQpgRNywzAwhBvrlM4/EteuF2Ytj/puK +/mb/UQo3YCQLzocJc0Do2drDQXsJDivTbfy7QRZREhRyIXs3NTBvnQH/GYFMTouc +ZwIDAQABo3gwdjAMBgNVHRMBAf8EAjAAMA4GA1UdDwEB/wQEAwIHgDAWBgNVHSUB +Af8EDDAKBggrBgEFBQcDAzAdBgNVHQ4EFgQUpOlUSfT3so5OBpQSUKHO9o09344w +HwYDVR0jBBgwFoAUTCxr19ZO6BWByrjphmYfZeIWb8QwDQYJKoZIhvcNAQELBQAD +ggEBAKJZnLxppk8EVvaQ9QUaQSNfcozXn6CaRI+/e0kKRgkqplHO7G7Glw5hEIX5 +AUIQOviahgnM/vkYqrCT9yYXtw8XcV5jXlPaqae7xS/0kncw/RRiynWFbf8bJC2e +D7UtpvMDL9vTqn7n394CQp085EaVueQTXJ2k2SibvYZ5zihGvIm42XUOcrsO2kdG +dsAJu1UMOOBQ+T9BSz+50GEmEb1k7ZbBOJBSqBjFRntOU41zCszK/wlkqU7LuIjL +vukGd3+v7wotuq5IeZbimXjdHQbBUMMkUXDxvNrs6dCYeIW2XSFiqyy7hZllUTTx +uUNBz5/yyFciun26/HexvfXCgak= +-----END CERTIFICATE----- diff --git a/SOURCES/rocky-grub2.cer b/SOURCES/rocky-grub2.cer new file mode 100644 index 0000000..d59b444 --- /dev/null +++ b/SOURCES/rocky-grub2.cer @@ -0,0 +1,30 @@ +-----BEGIN CERTIFICATE----- +MIIFIDCCBAigAwIBAgIBEDANBgkqhkiG9w0BAQsFADCB1DELMAkGA1UEBhMCVVMx +ETAPBgNVBAgMCERlbGF3YXJlMQ4wDAYDVQQHDAVEb3ZlcjEtMCsGA1UECgwkUm9j +a3kgRW50ZXJwcmlzZSBTb2Z0d2FyZSBGb3VuZGF0aW9uMSEwHwYDVQQLDBhSZWxl +YXNlIGVuZ2luZWVyaW5nIHRlYW0xKDAmBgNVBAMMH1JvY2t5IExpbnV4IFNlY3Vy +ZSBCb290IFJvb3QgQ0ExJjAkBgkqhkiG9w0BCQEWF3NlY3VyaXR5QHJvY2t5bGlu +dXgub3JnMB4XDTIzMDQxMjE4NTEzNVoXDTI0MDQxMTE4NTEzNVowgdcxCzAJBgNV +BAYTAlVTMREwDwYDVQQIDAhEZWxhd2FyZTEOMAwGA1UEBwwFRG92ZXIxLTArBgNV +BAoMJFJvY2t5IEVudGVycHJpc2UgU29mdHdhcmUgRm91bmRhdGlvbjEhMB8GA1UE +CwwYUmVsZWFzZSBlbmdpbmVlcmluZyB0ZWFtMSswKQYDVQQDDCJSb2NreSBMaW51 +eCBHcnViMiBTaWduaW5nIENlcnQgMTAxMSYwJAYJKoZIhvcNAQkBFhdzZWN1cml0 +eUByb2NreWxpbnV4Lm9yZzCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGB +AKEKwTtr/yXELMOB+o+6K7zN39wXDCyxHxIDLD2ykcdVkUAhfC2Du32dLl+R8A0D +7x8EL1dpI6R2/zswS02LVmq+x3M9OdGfWSHm7UjBPcTe2p0BrGEYpjdMnwt56Eod +x5hnxrYuNJS+bHaSzBvNzYYRlrSFX81MbUioIZR8GpNnQafZ4+jdjt1lunO7r3TS +pAAjt1ufoPJKV0dbzdBLtS4ZbM1E3pvSfJWDq7zaT4mMzE4OmroxmA2J0kObhSgP +7ZMwal6L9jqdO/HEYrFAn1tRI2SPpA4vHzykdUo5L+buFdvmv1kZN5klK9waR9Dt +b4jeXNnKCxR1nj+yCvdgVfpswPaG7bx/oc5tUqjMwop4gRjcRCXdzbqjtXKL0enk +KVpOd+SlqUPs++CSIhsq0TgzoUhlqDpXLvshm923iunQUgIpvqy9aadYIuykdG8G +HjxKUATyQXp6PWkfcchw9ziB7y71QFqExCOM11XUPyofS1/7tDrwWiEjzTUJq03n +BQIDAQABo3gwdjAMBgNVHRMBAf8EAjAAMA4GA1UdDwEB/wQEAwIHgDAWBgNVHSUB +Af8EDDAKBggrBgEFBQcDAzAdBgNVHQ4EFgQUJ2TmruR7d3s5uJRoef2ecK9mVsEw +HwYDVR0jBBgwFoAUTCxr19ZO6BWByrjphmYfZeIWb8QwDQYJKoZIhvcNAQELBQAD +ggEBABon0rPo9bhkNeiIrbTECZs9Pb99EIUZvZV0uL2XKEoFRTmX1fSslR+24ZUp +CLrf+q/VSL8OxrYorG0TrsbjeWp94ywicDS+3ro0z9hne3cKF+DYDRLJRS/ls0uo +n/DK3UTBHa6uWO0akv9CSrWWVveiPX/Yf0SnUWpLFX8yPof8Jm2ggFrIpV9gy1ao +j/AKG1b+MrUvmHc9pyNGlXlqtoHQq/cEv5yBv6Ntn5I3ve5IP3/YapqcLSa9Vide +jkwEcKJHuew+825TCbNGTS04WMKxqYni3vZK/0sDhfa7Avlfg160CmmCGVBMnMU/ +v3/fdSLoITZrdgNRoZAexkAdVDM= +-----END CERTIFICATE----- diff --git a/SOURCES/rocky-kernel.cer b/SOURCES/rocky-kernel.cer new file mode 100644 index 0000000..a05cb05 --- /dev/null +++ b/SOURCES/rocky-kernel.cer @@ -0,0 +1,30 @@ +-----BEGIN CERTIFICATE----- +MIIFITCCBAmgAwIBAgIBETANBgkqhkiG9w0BAQsFADCB1DELMAkGA1UEBhMCVVMx +ETAPBgNVBAgMCERlbGF3YXJlMQ4wDAYDVQQHDAVEb3ZlcjEtMCsGA1UECgwkUm9j +a3kgRW50ZXJwcmlzZSBTb2Z0d2FyZSBGb3VuZGF0aW9uMSEwHwYDVQQLDBhSZWxl +YXNlIGVuZ2luZWVyaW5nIHRlYW0xKDAmBgNVBAMMH1JvY2t5IExpbnV4IFNlY3Vy +ZSBCb290IFJvb3QgQ0ExJjAkBgkqhkiG9w0BCQEWF3NlY3VyaXR5QHJvY2t5bGlu +dXgub3JnMB4XDTIzMDQxMjE4NTEzOVoXDTI0MDQxMTE4NTEzOVowgdgxCzAJBgNV +BAYTAlVTMREwDwYDVQQIDAhEZWxhd2FyZTEOMAwGA1UEBwwFRG92ZXIxLTArBgNV +BAoMJFJvY2t5IEVudGVycHJpc2UgU29mdHdhcmUgRm91bmRhdGlvbjEhMB8GA1UE +CwwYUmVsZWFzZSBlbmdpbmVlcmluZyB0ZWFtMSwwKgYDVQQDDCNSb2NreSBMaW51 +eCBLZXJuZWwgU2lnbmluZyBDZXJ0IDEwMTEmMCQGCSqGSIb3DQEJARYXc2VjdXJp +dHlAcm9ja3lsaW51eC5vcmcwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIB +gQDA27rW8p7tVaKJLHEsiRoEl3F7vpcGT5/PljpBeD3lasKZ+IJSd3QlflB5KZ7S +t/IETA2ieo2CBsAe5HPcL4LIJTMjPz/w5s+SnDzmjQtH18kKqIyxXD8GZZFAJ/xK +z/L5GF9UaUH7ZnE5TkKMz0HQp1B8Pmm/6Gw8d+3oNmjgksNIl1TszSklv1dhYwoD +uoH8065ymIi55jwifu9rWByvpwL9HO8zHyxXHmdoSAYBe62mY1cn1OChT78uF2YJ +4xDg9tVoOO/fEqanjzqDwmWXMsKII/H/qcj3ZbMMXqm7sScld2YanF3X2VvfQgi2 +guQKdfv8k0YHxeRwnRSGBxS9dDYNnz7Tl9Iz/8NwH996TEDu2erykQeJ+wpToLAG +SggVHHGWvQ9w0jS4BWrZI49TJAgvRTplF1UiSiaVw5SzdHclYJ0smUD07IPCae+t +MmkKmXLJ9YnZ0zp8u9Z++Jsw6URzBk/HBWd1Ll8sz6rLHYF5jHpN20a63iBUZ965 +k8MCAwEAAaN4MHYwDAYDVR0TAQH/BAIwADAOBgNVHQ8BAf8EBAMCB4AwFgYDVR0l +AQH/BAwwCgYIKwYBBQUHAwMwHQYDVR0OBBYEFAYFt/XYVERxhAFQEKNGpjaoDWUf +MB8GA1UdIwQYMBaAFEwsa9fWTugVgcq46YZmH2XiFm/EMA0GCSqGSIb3DQEBCwUA +A4IBAQAsh0wBFKwBM2E0ajmRZrZ4QZ1ACYha8653e1l+oqjxF7vVMpYYcYnNP0Ap +xX6waYPU9skZUw9CAM3ayU4JnbF4TUfscxR1DSblreP3CHI0cKcYAn7EW8v1Y1Kp +zWr+aZSxkrG0VQDPPR/mJaFdYoG603OAKnja3gRVTaBoga18C0URIl9MfXa2YChk +YQNhXG22wMe7y7FEHwJI0mwPvnekVIa3g/iC/3DyfyffvlEoI0e9Ji9wQM5hVSxu +8dZh5YyQi46V0xssBZcrrGXsPHrQICY7VoF/Jp8MQxdBT/swQvIypdtwz2pou1/R +wPQEXvAjGz7n3vzHZkEA3kdnafFO +-----END CERTIFICATE----- diff --git a/SOURCES/rocky-kpatch.cer b/SOURCES/rocky-kpatch.cer new file mode 100644 index 0000000..b886ab7 --- /dev/null +++ b/SOURCES/rocky-kpatch.cer @@ -0,0 +1,29 @@ +-----BEGIN CERTIFICATE----- +MIIFCTCCA/GgAwIBAgIBEjANBgkqhkiG9w0BAQsFADCB1DELMAkGA1UEBhMCVVMx +ETAPBgNVBAgMCERlbGF3YXJlMQ4wDAYDVQQHDAVEb3ZlcjEtMCsGA1UECgwkUm9j +a3kgRW50ZXJwcmlzZSBTb2Z0d2FyZSBGb3VuZGF0aW9uMSEwHwYDVQQLDBhSZWxl +YXNlIGVuZ2luZWVyaW5nIHRlYW0xKDAmBgNVBAMMH1JvY2t5IExpbnV4IFNlY3Vy +ZSBCb290IFJvb3QgQ0ExJjAkBgkqhkiG9w0BCQEWF3NlY3VyaXR5QHJvY2t5bGlu +dXgub3JnMB4XDTIzMDQxMjE4NTE0MloXDTI0MDQxMTE4NTE0MlowgdgxCzAJBgNV +BAYTAlVTMREwDwYDVQQIDAhEZWxhd2FyZTEOMAwGA1UEBwwFRG92ZXIxLTArBgNV +BAoMJFJvY2t5IEVudGVycHJpc2UgU29mdHdhcmUgRm91bmRhdGlvbjEhMB8GA1UE +CwwYUmVsZWFzZSBlbmdpbmVlcmluZyB0ZWFtMSwwKgYDVQQDDCNSb2NreSBMaW51 +eCBLcGF0Y2ggU2lnbmluZyBDZXJ0IDEwMTEmMCQGCSqGSIb3DQEJARYXc2VjdXJp +dHlAcm9ja3lsaW51eC5vcmcwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIB +gQC/k4GyJKctyXNB51dU3TTQ28S7j+OimjM4LmA3qQVNq4go/+DWnbT9NpRb248h +T6Dl5HIQ9yKNdt9zPD6fjZG+V8lRpdLnpGUFMWfjyMlGx1JTjtRzZ0QquO8P3gl3 +JMfLj0uKH+pGXV7QSFA3YiczG2A1jwf2qfDUjQJw87xFT+DYI2GWKrQqOyLnwRRl +OeyJkvDOyqh/RVOsVX42bamzmATRCOmixzRGrk3+Ksv/0FV/eVUoqd8yib2AGlMf +vMqPBRbrIURbHO4/wgcjhcNl4JioGk2V5FLVwG83dLOfwkJd2zp6I8dR8m1shEbj +3zxtqc59JpW7WWhqXbwqCvFSQijVdkui/xyPCCr6o0b9zQWRaBArYbSxds48dgO5 +ZVHvTTCfSTPYYhtepZYMINuaWIbX3DD3wMOEK2kmNU5Qjg459RDZMb0Rl/PhbGuS +F/GbkOVQhllENKjAxsGFi+IfApB2Dvz+EyWouvQlKDRBw5G0KHqauy/aWkeWeRzp +n3kCAwEAAaNgMF4wDAYDVR0TAQH/BAIwADAOBgNVHQ8BAf8EBAMCB4AwHQYDVR0O +BBYEFLXuB8c35X7L6u1JOlE3l2OwYxLFMB8GA1UdIwQYMBaAFEwsa9fWTugVgcq4 +6YZmH2XiFm/EMA0GCSqGSIb3DQEBCwUAA4IBAQDN7zB5Kt9p1GJ9kftxgn22XueV +YGDB0ct/28aUC7JK+xQQzvIwPDRXpSW7hHUfSfiau6U5xANRF0DCo6J69wFfcfmQ +s+FsxsbCqYA6gdjpY2SV0G3H+KxujHlNLkR/TL6L9cS7w88H/2oxu9DpgZAJdGkV +hNCzLWy8Om4KBY4EZgop4xTQ5YeaS5oGtzoK22f8iCPUhrTttry39SCn/7l5xn9K +O1jadHWDuchS2sDabirES83+h1GMa/f3AMToyxfk1vHP3Mpke1Gy/VT6Cbo0aVSn +cIghoSavIh9ME4XCn9ZbPesM5Zc92PBRLeTPwwBiERoxr14VDofFygnjgZHb +-----END CERTIFICATE----- diff --git a/SOURCES/rocky-shim.cer b/SOURCES/rocky-shim.cer new file mode 100644 index 0000000..68ad726 --- /dev/null +++ b/SOURCES/rocky-shim.cer @@ -0,0 +1,30 @@ +-----BEGIN CERTIFICATE----- +MIIFHzCCBAegAwIBAgIBEzANBgkqhkiG9w0BAQsFADCB1DELMAkGA1UEBhMCVVMx +ETAPBgNVBAgMCERlbGF3YXJlMQ4wDAYDVQQHDAVEb3ZlcjEtMCsGA1UECgwkUm9j +a3kgRW50ZXJwcmlzZSBTb2Z0d2FyZSBGb3VuZGF0aW9uMSEwHwYDVQQLDBhSZWxl +YXNlIGVuZ2luZWVyaW5nIHRlYW0xKDAmBgNVBAMMH1JvY2t5IExpbnV4IFNlY3Vy +ZSBCb290IFJvb3QgQ0ExJjAkBgkqhkiG9w0BCQEWF3NlY3VyaXR5QHJvY2t5bGlu +dXgub3JnMB4XDTIzMDQxMjE4NTE0NloXDTI0MDQxMTE4NTE0NlowgdYxCzAJBgNV +BAYTAlVTMREwDwYDVQQIDAhEZWxhd2FyZTEOMAwGA1UEBwwFRG92ZXIxLTArBgNV +BAoMJFJvY2t5IEVudGVycHJpc2UgU29mdHdhcmUgRm91bmRhdGlvbjEhMB8GA1UE +CwwYUmVsZWFzZSBlbmdpbmVlcmluZyB0ZWFtMSowKAYDVQQDDCFSb2NreSBMaW51 +eCBTaGltIFNpZ25pbmcgQ2VydCAxMDExJjAkBgkqhkiG9w0BCQEWF3NlY3VyaXR5 +QHJvY2t5bGludXgub3JnMIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEA +va6fzVp5Q9FPmdgpPkwoPxz/x6TalOz4xkBdL5OTEr3nJKG6HUWXEb22pTh9GVmU +lq6EsdZd5KFHsAy00UTSgTwDD35ZxPDg4yevGRy5ArMY6xABST1QCyC9UdRU0pHo +ORPZns/ycfvqOLmJ/4hQrS6O21Fexki29ruJe8bMUN/YcqrB6rcFH67U2HwZvihQ +VquQFM6e7Ma1vQHKsM3Oo9Rl26TmDM6/D835QxlZzaBbXd+Pk4kpP7+wUHKYMUQb +fDBd5/a4UHFM0hfc6qhBOFYWH1PqK2DKMCHr1Ba5H038XkruJnfX9V1u4LJLOwHc +UdsWOE3Ab0Rp+cULz/aV18TgwAVs+vH9KWlERjwrP60wpbwxZ5gRUKJedctDcuA9 +nF4K28eH23wVZpANo95Rv9IVcqytchDK+gA89Dy36rkmrsxvvcPkTrenW9S03Ntw +gtzxoA8mtPfp2lE9DbhShEIQKIhI6V2BJot5u2eW1aLrZy0P19HOdSDOYqAR96ON +AgMBAAGjeDB2MAwGA1UdEwEB/wQCMAAwDgYDVR0PAQH/BAQDAgeAMBYGA1UdJQEB +/wQMMAoGCCsGAQUFBwMDMB0GA1UdDgQWBBS4omfxIr1D2Pa//WSUx7Q5Rlm8SjAf +BgNVHSMEGDAWgBRMLGvX1k7oFYHKuOmGZh9l4hZvxDANBgkqhkiG9w0BAQsFAAOC +AQEAWOZ77k0XIDa6AELFLyyKUHSw9uJ8svnF+CpQ7N6SJiYwe8gFtBuomDBRedVG +s20LbdCN36rmklP/gTm4ILDjX/MvA+g6ExwPhqhIh8A/kIUdp0CHkmKPTUlGskLQ +U95U36phasI0vZHTFEtaByQb35XHHbMUyTy346hbQugzah+pnfj7/vrq2EAL4M0e +e2NQeMM6RNDIpncA848Hk8QM7E+FuS5xtvWxx6Zf50kQVrd4JMweKKNQCun0cJjz +Xejn9bJ4gmDWBV/3n7q3zoG8S5ws09ma5anFzeCy4i8GzltPBvXAwzKddyGmVRvU +r/6FWYLGuSOudzH6eQldyZRW2w== +-----END CERTIFICATE----- diff --git a/SOURCES/rockydup1.x509 b/SOURCES/rockydup1.x509 index 2e079abe363a8e7e0790d0d1be165625b7d9f12c..1c37228ad6ea59100986c2f20859d3894f2dec00 100644 GIT binary patch delta 788 zcmV+v1MB>d3XKX7FoFdMFoFZ|paTK{0s;XJkr3-1GcYtUGBG$cF)}b(7Y#BrFf=hS zF*r3bGB8>&f!LE70fQ|pFe(NERRjYJBT{c;Yk43{X>N6RAVhL$c4cxPQ)y>zX>MmA zLuGPwATcm8kj$)9T z+D@69Y$qimt***g%~OB^cQPW3I*iSLypXdkT#@D{WhzZac%?lVDXCjl-m$I}8i_LX zrQEbjd5O@i;P+Tsgp0koJuP9)jApvpH>fp#jaR`vXOP1>n$Ez} zuBP+z5dnN-Lg5!3nPpAr&5AY}3Q}ST-!7ETc=2*SBzsP)+s^hBk!#rMXk*J_(Ym+x z?7pc4ei|8%7X$Qe0xbY$F5e6s<)AETcUl*#O7FQ|e9y?qQ&B-R1eE42(=0C_0`Af9 z;PyHP!G`^5r8vBQA>o17ShOmvky-!r{=(l0VUhCw zaca6ngqcFuM)1+ZJ}Sxl#q>X;hW}XlvgW{PVh$8s_4q6pHO4r2+5V)uo#q9WE~TuA zF-`HbKI!w1T_w}cO;T`il^jG=LS4WGJaUG94NSGzQmljnPEIqEl>;&q&QpI3VO#@& z6s)@eBRX4RxjGqfliLF|f5q%R*2GB!Z9EwQYOOq1Bm|*{5dM=nXQ)o0211Imzkftp zv#u$!V!HDe7ws`I^*tcntkup+v}PXoncE~}G1gRDIB)F9H$~a3z@zIfOaypfoW0fF zh`ruk!gr0*&dO}E&Zo=yvWt(sI%>V@I82b0e0Z3264fp87e;pRgAe#hK55J4D zZ#D4z?=yzi^T`d)iA2f6lzr5##~Qjkw?E~nplghNqw1WEtvYk43{X>N6RAVhL$c4cxPRd8fsbY&n@ zX=iR}Zf77vWpZ?p&MA}f0U&?B$Vx?(NdO=k_*l`5aG$(6RxzLPJ2UE=*8vYMjGfm7 zC*`S4Yw0F&py__8fl>WP&r~c(0s6tj$QdjXJs-7+x;XP`TOSEH-P{N!Wc?YoxR@oW zWz*97$Q<`mL%ZMhh#Baq1v(#qEk;)kMDacx8VZk4gw~-O6BDN+bCZ7<{M+Sk3;lTH z2q?-W4o=OQnI8A>NMvDmOuR2_93Dtf+&n9?JHqzPQk%%$>WmZx8+KH`ZMKzsG3604 z=_^OdWqr|hb_Qg|rbJ(zVH9*9`&=C$cj`c+S_{jA4$Kxfw^3gp02hg`I2VEO@obhd zY&$~yQXq|=_RN;h#nXS6KjS-EBlMdF(4$G~QM`#fa-CcTWZH2ixdzW~CKj43SJt&Y z2u$2Sn&AP@IU_}z`Zw*P<`hQO)GwjAm@}6XqRZ?Pr-G%!mdbxm3bTtA8z^!>$Xm@X ztSP_3opgP1r3ep~o2$(<@2>*^4&9TI12Pn|$xqC> z<0nP29nG4WIVP<9?E->Jb^`Q)XMcH(QRcjU_0$twS&Vd<)4 zB7b=SrQ-)`Ci1@!%};PvD%fn}<1)NxjE#%;^pFr@hY@s}b!LqrXG)2Gy)#Z%iEQe| zb$U9*Eu)50N_H(4QZkUigP| VW3XKX7FoFdMFoFZ|paTK{0s;XNkr3-1GcYtUGBG$cF*Gt-7Y#BrFf=hS zF*r3bG%{K+f!LE70fQ|pFe(NERRjYJBT{c;Yk43{X>N6RAWLvzbYo~BQ)y>zX>MmA zLuGPwATcm8k<>Yb@_acpU-*Y@ZpN)~eSIJSO(&waQ1uQd5r9b7w>< zxbF|%33nvN%a2QnAL>S3UeHKTH)1C<8(=k$2llD()Qtjg^SniWPvF=iVU{YiDmxmfv29PU5D2P1{UW#E{o8cmhtQq{n3H*~X~!a`l!I(j3=QSxnUghu1vJZ-7Y zeI}K=S!ilqyebNR@lrx4)pkpw{~V79D*B^F{mliDXb>x5w6S*1Jaz-QWl`@v2c^$^)Hy%Cr5;cRP?7x9~rD0-T^FWOp1mU$cl>7RL%jsr3jweAPUH|2iI z>g`E7Q8$-kuwxR%lhgw>f6ebOc`Dy&)M9;+`*DJOwqECzU|_+~%YWO(lnb&-`xFq) z@-RF!SEVJpgmoWD_?o+=Im81|7eK4hnh>8 z2Dds2+h_cUBh-ep?Y6wP^&qGJxp~HaN;_EEbajKd$Wq$C+HNYuOU?d=QH*Q%_W;D` z%NOL<@z31KWP4Gv{Z#r1x-@B2r*McNp(d{)A50U4!k^Y#J?jkRmp$0A(FCm?z*lchY#yWK}jm<#--quc7+5Wx3ZmP z)y627bmsGx%bQ^(dkD0joS9Bl$}Px$ijGEgRPLp_GJh!TuV?TGY9RWWT2=g6GkW6L zXXJG;&mNsv*XKH}E)CE|fs%L{NBpn=77pTv4~OYg+(y*Lc$5gwfzVJ^*yIvZrQBn92hVs+h)G@kke`d?A6#D3XD+IYu^*A_Lc4;buq-aNF4ni?6nfUf{#H!rj#iM z5dB0sNCUVX$CHu+G8A)?_l#8Sh2OC`8%DA^6x}KObrh4>12um`m0E(;Vo>WJKYa?t z^2rUU)|UVi#N!eAPOj(PU7g1YJUsCoN~OGeE7*!;XQy{})gXV{LP7kTwSo`pwCY?Q2BCX0xB*mvS$J;s>5+*9RL6T diff --git a/SPECS/rocky-release.spec b/SPECS/rocky-release.spec index 03fe069..bb84c49 100644 --- a/SPECS/rocky-release.spec +++ b/SPECS/rocky-release.spec @@ -20,7 +20,7 @@ %define distro_code Blue Onyx %define major 9 %define minor 3 -%define rocky_rel 0%{?rllh:.%{rllh}}%{!?rllh:.1} +%define rocky_rel 0%{?rllh:.%{rllh}}%{!?rllh:.2} %define rpm_license BSD-3-Clause %define dist .el%{major} %define home_url https://rockylinux.org/ @@ -153,7 +153,11 @@ Source1300: rocky.1.gz Source1400: rockydup1.x509 Source1401: rockykpatch1.x509 Source1402: rocky-root-ca.der -Source1403: rocky-signing.der +# +Source1403: rocky-fwupd.cer +Source1404: rocky-grub2.cer +Source1405: rocky-kernel.cer +Source1406: rocky-shim.cer %description %{distro_name} release files. @@ -309,33 +313,38 @@ install -m 0644 %{SOURCE1403} %{buildroot}%{_datadir}/pki/sb-certs/ # Placeholders # x86_64 ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-root-ca.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-ca-x86_64.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-signing.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-kernel-x86_64.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-signing.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-grub2-x86_64.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-signing.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-fwupd-x86_64.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-kernel.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-kernel-x86_64.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-grub2.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-grub2-x86_64.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-fwupd.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-fwupd-x86_64.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-shim.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-shim-x86_64.cer # aarch64 ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-root-ca.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-ca-aarch64.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-signing.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-kernel-aarch64.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-signing.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-grub2-aarch64.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-signing.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-fwupd-aarch64.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-kernel.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-kernel-aarch64.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-grub2.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-grub2-aarch64.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-fwupd.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-fwupd-aarch64.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-shim.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-shim-aarch64.cer # ppc64le ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-root-ca.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-ca-ppc64le.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-signing.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-kernel-ppc64le.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-signing.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-grub2-ppc64le.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-signing.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-fwupd-ppc64le.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-kernel.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-kernel-ppc64le.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-grub2.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-grub2-ppc64le.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-fwupd.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-fwupd-ppc64le.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-shim.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-shim-ppc64le.cer # armhfp ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-root-ca.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-ca-armhfp.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-signing.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-kernel-armhfp.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-signing.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-grub2-armhfp.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-signing.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-fwupd-armhfp.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-kernel.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-kernel-armhfp.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-grub2.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-grub2-armhfp.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-fwupd.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-fwupd-armhfp.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-shim.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-shim-armhfp.cer # s390x ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-root-ca.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-ca-s390x.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-signing.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-kernel-s390x.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-signing.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-grub2-s390x.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-signing.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-fwupd-s390x.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-kernel.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-kernel-s390x.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-grub2.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-grub2-s390x.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-fwupd.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-fwupd-s390x.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-shim.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-shim-s390x.cer # symlinks for everybody for x in $(ls %{buildroot}%{_datadir}/pki/sb-certs); do @@ -426,6 +435,9 @@ install -m 0644 %{SOURCE404} %{buildroot}/%{_prefix}/lib/sysctl.d/50-redhat.conf %{_datadir}/pki/sb-certs/* %changelog +* Tue Apr 25 2023 Louis Abel - 9.3-0.2 +- Update secure boot certificates + * Thu Apr 06 2023 Louis Abel - 9.3-0.1 - Bump main version to 9.3 - Enable obex