From 87161cd1c3eb2c09970867feb656e3e827fc11e9 Mon Sep 17 00:00:00 2001 From: Louis Abel Date: Mon, 15 May 2023 09:45:08 -0700 Subject: [PATCH] update to der for ppc --- SOURCES/rocky-fwupd.der | Bin 0 -> 1316 bytes SOURCES/rocky-grub2.der | Bin 0 -> 1316 bytes SOURCES/rocky-kernel.der | Bin 0 -> 1317 bytes SOURCES/rocky-shim.der | Bin 0 -> 1315 bytes SPECS/rocky-release.spec | 23 ++++++++++++++++++----- 5 files changed, 18 insertions(+), 5 deletions(-) create mode 100644 SOURCES/rocky-fwupd.der create mode 100644 SOURCES/rocky-grub2.der create mode 100644 SOURCES/rocky-kernel.der create mode 100644 SOURCES/rocky-shim.der diff --git a/SOURCES/rocky-fwupd.der b/SOURCES/rocky-fwupd.der new file mode 100644 index 0000000000000000000000000000000000000000..bdfb2bd1487056d43d156dd7df9ed8c816c24643 GIT binary patch literal 1316 zcmXqLVpT9`V&Pc8%*4pV#K>>J%f_kI=F#?@mywa1mBFC#iXpcFCmVAp3!5-gXt1H6 z0Y8Yt!NcK_nv+k6x{Ml^HLH^GV}8c6%FJ;%DH(Yf>Lu*6M?Ey^U^c(Qd5gE^U@VcQWJ9x zH4M~1N|<@%Atw4{=9N|`1g9pK0*!LY&o5C30uj!RhH3^XaQAaEiisD4)MS=aIuwDN zk^|DGmtT}_AScdiWNct!Xk=(%YG`a21>~9lxrR`#LF4s7;B9RKO^COZkiG3zURsc% z5S*Ew2MQnO)S?mvLjyyiecr^l2sw@!Ss9p{82cFvni#v7niv}ywzy4y7Zze_up<0c z|DM?SFEiu#6L+n4;Afg46&A2~&Vi~qNeKc6-{l-q&UCbR*Y)e5n>9y7sJ^&_=h6NA zdM0LhVpgV;+YQQAI37y1y~naL^wgVKuVPKF1x{3*H!Z0$$DsK7ge%|8c4!=S+8m}f z-;r7QY4%qR@k<&KfkvIXkFD-F6n6MYewDrROvAF{}tBG*^$f( zueb?blP|{v%sox8Ced{x`epU)ujbF7pHx?sM&&#SSlS-a719&B>>I zIrqI%Rsvtg(0T&yGHX9==D?2l@fhEB=N$>qkWwJh-5o4jMw`4Ry7?&Iud~4o0w_-XIx zZNKwEqMG2|l(*9kT1*I9A#v2L+Ap}bnCr}`|C}i+{Z8-bIKA&BTY3HZ_guQW)_GJ; zdo;7+t}NTZfWs<*1t0g^dh_zajEdH6v5HBnb#}MTObs;oxYOD3{QOTR!j*Q_?)p={ KaqrhdjVl4W>*as| literal 0 HcmV?d00001 diff --git a/SOURCES/rocky-grub2.der b/SOURCES/rocky-grub2.der new file mode 100644 index 0000000000000000000000000000000000000000..4e5186435b107715c62ded5b35364abe75ecc6a6 GIT binary patch literal 1316 zcmXqLVpT9`V&Pc8%*4pV#3*3E%f_kI=F#?@mywa1mBFC#iXpcFCmVAp3!5-gXt1H6 z0Y8Yt!NcK_nv+k6x{Ml^HLH^GV}8c6%FJ;%DH(Yf>Lu*6M?Ey^U^c(Qd5gE^U@VcQWJ9x zH4M~1N|<@%Atw4{=9N|`1g9pK0*!LY&o5C30uj!RhH3^XaQAaEiisD4)MS=aIuwDN zk^|DGmtT}_AScdiWNct!Xk=(%YG`a41>~9lxrR`#LF4s7;B9RKO^COZkiG3*RGMU@ z5S*Ew2MQnO)S?mvLjyyiecr^l2sw@!Ss9p{82cFvni#v7niv}y7IGc5&i=1@MCWkh zul`-yd(Pg!BhI6(i!Qq zXWIm)ZE1}^>yzuTLUBrs)Z}!>OHsoJA2Of@y*(0ID@zIlJo3V4gR;24YK08zgf+-{&*y5qr?2@ zK;@MFC4BnwHcLvqEcKtg6TSUxf25@OOjYeWQtlVt=6BqSxp|6Pq;#JBCa&)Zp}%qt zd~18Vr+(qN+@KX_4s}&DO5AZ#y?b`o;;lv97hgWnjPfggvUH{Mo8J#6DM@Qxv@l-i zk-EYvT<^Ey?7Q2$US0@d(%iRZZ|3p{r8i4T^4a8UyaHH0IaXEKX37_yDEMyC_+Ia; zLsZKV<(})ISM0Uqz2kpxvHB3DsC?FxbG7etRwiaf2FAq|24&z}B`eIx_@9NzfWd$d zm=t9BK|B^_CiVscF%VxB#OE>KV&l+eV`ODzXJ$5#1&Q;qh_Q&Mr#xHtq`JJ?a>ta6 z%D?jp)~AIX1m`tbWflnou?7(zo$Tw^{9cGQp4#!UEloc4ky!o_1t$RMSD zY4eM(J5o$vbgbQSgmbp7?fzPUR>{3nOLpv?uHnV%YB~Mtmo-!6w>_My$+7GHuk}|w z_VXRvrm-ehc-^tbm07iqb(9KB_TAfMa{fkobvc*#gB!d;CtdZQZuVX=|HG-fE(c}T zt&4aoHR->T*Vbua-xt}|->7$49+>4VT5n|6{zol$K||DurSS=;!&dZv;F1peXS7v+ zM!D^BWw)u7S=$;ftp3ije@^56#kun*neTn)VPAhEYt|fHwY_2LaeY241&iEwzOnn9 z7tFcY%~#hV;?TyGosaH)^ZM`2-1==d)6e+kxGh|nO_BjVbB@~YufJca^g_`ryNo$- M;RLy34zeM}06~rIqyPW_ literal 0 HcmV?d00001 diff --git a/SOURCES/rocky-kernel.der b/SOURCES/rocky-kernel.der new file mode 100644 index 0000000000000000000000000000000000000000..b1f1fe1a490c0160784bf85015dbc7c33a528928 GIT binary patch literal 1317 zcmXqLVpTL~V&PoC%*4pV#3*RM%f_kI=F#?@mywa1mBFC#iXpcFCmVAp3!5-gXt1H6 z0Y8Yt!NcK_nv+k6x{Ml^HLH^GV}8c6%FJ;%DH(Yf>Lu*6M?Ey^U^c(Qd5gE^U@VcQWJ9x zH4M~1N|<@%Atw4{=9N|`1g9pK0*!LY&o5C30uj!RhH3^XaQAaEiisD4)MS=aIuwDN zk^|DGmtT}_AScdiWNct!Xk=(%YG`a31>~9lxrR`#LF0`<;B6fPEr_?3k-hDmT9lWX zqY#{#o(Bpb=hUJS1w#WvqP^b4xCl9t8Ce;an;82U44N3bn3@4>F3mQ z-tofnfEv5Z{V#HC%HO^)%Xl#9u*dX}H)l0f_lGAYb20B~{BwC-(Tt9r&uoHi(9xU|VuP2_y`B>n=x2qWz@9zsOTi$Qgd?*pEIbm@Cr8F0!}8 zjCa1><>{A<{~s=pzhC9!@b2cTPZQZYe{%&d*udt+Au3ZiZ7+YpC6gVjSvQsYgH<^6 zU9D2ZLzTSLrXHTMxuje*VXn?hhc9oM4`sezYm~_~v*_g4&YPF5YIa|%`!U<#rAslJ z|8dszQoVSc^Q%tFHdgjj`QCQhbx$EA{oc;Whnbie85kE=7?gptm8>u$<9`+=0|o;= zU|Nvn2k}^#nb;c)#6Wyi5TD0@i;Y8@jggg=otfD{79`HcBE}-Z#=8CMjS!c@7RCU9 z#cs>YR`90EgEO0~GK++PSc8aZ9W;;DZOClC^6jK# zFuxPS*;^<5IOlGx@O6JvEKW)O8{+b-L@@&?>%qbfuZQK&d zaNbt_nd-vWq{dyBiyO2mZrx)E^<9wBxVDDdRZuD3r?zZcf<{Urb7D;Hwgbm^pWf&q z&*X6_hksxBl90CT%|Dv{7ksK$zrQa~L)m?=ntp-9xx`SNypPuspY}}X?wfj9T8DMI z_L|f;HdPlC)U3lA>(%D-IEy>_|2A;?WVG~l!TGF=-SHO>d|`?Epe$|o{NA7AX^sr{ K+|x5Z`T+old*Z$T literal 0 HcmV?d00001 diff --git a/SOURCES/rocky-shim.der b/SOURCES/rocky-shim.der new file mode 100644 index 0000000000000000000000000000000000000000..d183199089d3bb411b69b29ba08085c306219176 GIT binary patch literal 1315 zcmXqLVwE>&Vqssv%*4pV#3*dQ%f_kI=F#?@mywa1mBFC#iXpcFCmVAp3!5-gXt1H6 z0Y8Yt!NcK_nv+k6x{Ml^HLH^GV}8c6%FJ;%DH(Yf>Lu*6M?Ey^U^c(Qd5gE^U@VcQWJ9x zH4M~1N|<@%Atw4{=9N|`1g9pK0*!LY&o5C30uj!RhH3^XaQAaEiisD4)MS=aIuwDN zk^|DGmtT}_AScdiWNct!Xk=(%YG`5>1>~9lxrR`#LF2VS;B74f4T!fDQM{dznX3?- znVts<9_Q4e5(Ps8L!v$2#JC7KiWylMn41{;84Q{jyO^378yWVln}0T{()ptQ%p00^ zJ{tBi|Bo-ZHRa8ZV-B(UlP3%9eXg=_m#ph_!M)p-TGUELPMNl@W#hHjCkx#-@NBv0 za;edVnZGXb$cG1y)z?eP>}1+3@mhe<(>8!xVQ=7-kV_L^SPI{qcm7l1?^hN(JO6hC ztkvtg9T<1aW81ggoz=(A1l+$-wCdoi?X2?auH2}R+@}!`wt9ldxp{AnZQaXwYQx!c zi?5{KUh<6R+h-?FcCJxg>t))e1+8 zFfsYySK0}u3>05q5!)&6`zOxpom%oc48%ZuRS=)YfQyYon~jl`m7ST{Ko%s<$0EievSU&DN2R^aH@@xv zn=jl|6<09Z#o%;QU#BaeWW%>dHJg4O{h<}`=H4VVHG}FCtXrg4%rFS7yy~_&mpk`D z@BLNJCI$a*wA`Vv;c@(DedZTd!ZQ4AD?Hi{*iUGcUGC66DXHJr(`}Q}h2VQ3_g5um z9WvQF@v?|_6uXM_{i(-gH;bIK+5UJ%w9^aYEcumlfBgRU>(vbh?gwY(s*?jM4qLfg zII*mp;d4Lxj^w@%Xa%=bi##+bdMg$Z0GN;ClI`V8-Xz7tg9{;uuk8uxh5(Ybtc*3*?o&pz1nNT2Oov_IR|1BZ>~mMbm`mAkyV5_TH^%vAu1 literal 0 HcmV?d00001 diff --git a/SPECS/rocky-release.spec b/SPECS/rocky-release.spec index c2fff43..3921ab1 100644 --- a/SPECS/rocky-release.spec +++ b/SPECS/rocky-release.spec @@ -20,7 +20,7 @@ %define distro_code Blue Onyx %define major 9 %define minor 3 -%define rocky_rel 0%{?rllh:.%{rllh}}%{!?rllh:.2} +%define rocky_rel 0%{?rllh:.%{rllh}}%{!?rllh:.3} %define rpm_license BSD-3-Clause %define dist .el%{major} %define home_url https://rockylinux.org/ @@ -158,6 +158,11 @@ Source1403: rocky-fwupd.cer Source1404: rocky-grub2.cer Source1405: rocky-kernel.cer Source1406: rocky-shim.cer +# all certs in DER format +Source1413: rocky-fwupd.der +Source1414: rocky-grub2.der +Source1415: rocky-kernel.der +Source1416: rocky-shim.der %description %{distro_name} release files. @@ -308,9 +313,14 @@ install -d -m 0755 %{buildroot}%{_datadir}/pki/sb-certs/ install -m 0644 %{SOURCE1400} %{buildroot}%{_datadir}/pki/sb-certs/ install -m 0644 %{SOURCE1401} %{buildroot}%{_datadir}/pki/sb-certs/ install -m 0644 %{SOURCE1402} %{buildroot}%{_datadir}/pki/sb-certs/ +install -m 0644 %{SOURCE1403} %{buildroot}%{_datadir}/pki/sb-certs/ install -m 0644 %{SOURCE1404} %{buildroot}%{_datadir}/pki/sb-certs/ install -m 0644 %{SOURCE1405} %{buildroot}%{_datadir}/pki/sb-certs/ install -m 0644 %{SOURCE1406} %{buildroot}%{_datadir}/pki/sb-certs/ +install -m 0644 %{SOURCE1413} %{buildroot}%{_datadir}/pki/sb-certs/ +install -m 0644 %{SOURCE1414} %{buildroot}%{_datadir}/pki/sb-certs/ +install -m 0644 %{SOURCE1415} %{buildroot}%{_datadir}/pki/sb-certs/ +install -m 0644 %{SOURCE1416} %{buildroot}%{_datadir}/pki/sb-certs/ # Placeholders # x86_64 @@ -329,10 +339,10 @@ ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-shim.cer %{buildroot}%{_datadi # ppc64le ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-root-ca.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-ca-ppc64le.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-kernel.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-kernel-ppc64le.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-grub2.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-grub2-ppc64le.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-fwupd.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-fwupd-ppc64le.cer -ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-shim.cer %{buildroot}%{_datadir}/pki/sb-certs/secureboot-shim-ppc64le.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-kernel.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-kernel-ppc64le.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-grub2.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-grub2-ppc64le.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-fwupd.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-fwupd-ppc64le.cer +ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-shim.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-shim-ppc64le.cer # armhfp ln -sr %{buildroot}%{_datadir}/pki/sb-certs/rocky-root-ca.der %{buildroot}%{_datadir}/pki/sb-certs/secureboot-ca-armhfp.cer @@ -437,6 +447,9 @@ install -m 0644 %{SOURCE404} %{buildroot}/%{_prefix}/lib/sysctl.d/50-redhat.conf %{_datadir}/pki/sb-certs/* %changelog +* Mon May 15 2023 Louis Abel - 9.3-0.3 +- Use DER format for ppc64le certificates for now + * Tue Apr 25 2023 Louis Abel - 9.3-0.2 - Update secure boot certificates