diff --git a/SOURCES/rocky-fwupd.der b/SOURCES/rocky-fwupd.der new file mode 100644 index 0000000..bdfb2bd Binary files /dev/null and b/SOURCES/rocky-fwupd.der differ diff --git a/SOURCES/rocky-grub2.der b/SOURCES/rocky-grub2.der new file mode 100644 index 0000000..4e51864 Binary files /dev/null and b/SOURCES/rocky-grub2.der differ diff --git a/SOURCES/rocky-kernel.der b/SOURCES/rocky-kernel.der new file mode 100644 index 0000000..b1f1fe1 Binary files /dev/null and b/SOURCES/rocky-kernel.der differ diff --git a/SOURCES/rocky-shim.der b/SOURCES/rocky-shim.der new file mode 100644 index 0000000..d183199 Binary files /dev/null and b/SOURCES/rocky-shim.der differ diff --git a/SPECS/rocky-release.spec b/SPECS/rocky-release.spec index c2fff43..3921ab1 100644 --- a/SPECS/rocky-release.spec +++ b/SPECS/rocky-release.spec @@ -20,7 +20,7 @@ %define distro_code Blue Onyx %define major 9 %define minor 3 -%define rocky_rel 0%{?rllh:.%{rllh}}%{!?rllh:.2} +%define rocky_rel 0%{?rllh:.%{rllh}}%{!?rllh:.3} %define rpm_license BSD-3-Clause %define dist .el%{major} %define home_url https://rockylinux.org/ @@ -158,6 +158,11 @@ Source1403: rocky-fwupd.cer Source1404: rocky-grub2.cer Source1405: rocky-kernel.cer Source1406: rocky-shim.cer +# all certs in DER format +Source1413: rocky-fwupd.der +Source1414: rocky-grub2.der +Source1415: rocky-kernel.der +Source1416: rocky-shim.der %description %{distro_name} release files. @@ -308,9 +313,14 @@ install -d -m 0755 %{buildroot}%{_datadir}/pki/sb-certs/ install -m 0644 %{SOURCE1400} %{buildroot}%{_datadir}/pki/sb-certs/ install -m 0644 %{SOURCE1401} %{buildroot}%{_datadir}/pki/sb-certs/ install -m 0644 %{SOURCE1402} %{buildroot}%{_datadir}/pki/sb-certs/ +install -m 0644 %{SOURCE1403} %{buildroot}%{_datadir}/pki/sb-certs/ install -m 0644 %{SOURCE1404} %{buildroot}%{_datadir}/pki/sb-certs/ install -m 0644 %{SOURCE1405} %{buildroot}%{_datadir}/pki/sb-certs/ install -m 0644 %{SOURCE1406} %{buildroot}%{_datadir}/pki/sb-certs/ +install -m 0644 %{SOURCE1413} %{buildroot}%{_datadir}/pki/sb-certs/ +install -m 0644 %{SOURCE1414} %{buildroot}%{_datadir}/pki/sb-certs/ +install -m 0644 %{SOURCE1415} %{buildroot}%{_datadir}/pki/sb-certs/ +install -m 0644 %{SOURCE1416} %{buildroot}%{_datadir}/pki/sb-certs/ # Placeholders # x86_64 @@ -329,10 +339,10 @@ ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-shim.cer %{buildroot}%{_datadi # ppc64le ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-root-ca.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-ca-ppc64le.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-kernel.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-kernel-ppc64le.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-grub2.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-grub2-ppc64le.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-fwupd.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-fwupd-ppc64le.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-shim.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-shim-ppc64le.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-kernel.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-kernel-ppc64le.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-grub2.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-grub2-ppc64le.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-fwupd.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-fwupd-ppc64le.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-shim.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-shim-ppc64le.cer # armhfp ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-root-ca.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-ca-armhfp.cer @@ -437,6 +447,9 @@ install -m 0644 %{SOURCE404} %{buildroot}/%{_prefix}/lib/sysctl.d/50-redhat.conf %{_datadir}/pki/sb-certs/* %changelog +* Mon May 15 2023 Louis Abel - 9.3-0.3 +- Use DER format for ppc64le certificates for now + * Tue Apr 25 2023 Louis Abel - 9.3-0.2 - Update secure boot certificates