Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

pesign-obs-integration-10.2+git20230612.4699910-2.1 RPM for s390x

From OpenSuSE Ports Tumbleweed for s390x

Name: pesign-obs-integration Distribution: openSUSE:Factory:zSystems
Version: 10.2+git20230612.4699910 Vendor: openSUSE
Release: 2.1 Build date: Fri Jun 23 22:08:01 2023
Group: Development/Tools/Other Build host: s390zp21
Size: 92466 Source RPM: pesign-obs-integration-10.2+git20230612.4699910-2.1.src.rpm
Packager: https://bugs.opensuse.org
Url: https://en.opensuse.org/openSUSE:UEFI_Image_File_Sign_Tools
Summary: Macros and scripts to sign the kernel and bootloader
This package provides scripts and rpm macros to automate signing of the
boot loader, kernel and kernel modules in the openSUSE Buildservice.

Provides

Requires

License

GPL-2.0-only

Changelog

* Thu Jun 22 2023 Joey Lee <jlee@suse.com>
  - Modify pesign-obs-integration.changes, add bsc#1211849 to changelog.
    The supporting of filetriggers and transfiletriggers in
    pesign-gen-repackage-spec in 10.2+git20230612.4699910 is for
    bsc#1211849.
* Mon Jun 12 2023 jlee@suse.com
  - Update to version 10.2+git20230612.4699910:
    * pesign-gen-repackage-spec: support filetriggers and transfiletriggers (bsc#1211849)
    * Add support for dependency generators
    * pesign-gen-repackage-spec: fix the filename issue in the scripts of generated ueficert package
    * Verfiy the signatures before attaching them
    * Don't copy rpmlintrc to OTHER
    * Fix %attr issues
    * Support %lang
    * Support OrderWithRequires
    * pesign-repackage.spec.in: Add description for footer_size
  - Removed the following patches becuase they are merged to
    10.2+git20230612.4699910:
      Patch:          order.patch
      Patch1:         attr.patch
      Patch2:         lang.patch
      Patch3:         rpmlintrc.patch
      Patch4:         verify-sig.patch
      Patch5:         dependency-generators.patch
  - Use README.md instead of README in pesign-obs-integration.spec.
* Mon Jan 23 2023 Callum Farmer <gmbr3@opensuse.org>
  - Add dependency-generators.patch to support copying source files
    and macros to the re-package build (jsc#PED-2658)
* Wed Sep 28 2022 Gary Ching-Pang Lin <glin@suse.com>
  - Add verify-sig.patch to verify the signatures before attaching
    them (bsc#1200108, bsc#1203679)
* Sat Jul 09 2022 Callum Farmer <gmbr3@opensuse.org>
  - Update attr.patch to fix ghost symlinks still being affected
  - Add rpmlintrc.patch to stop copying it to the build output
* Wed Jun 22 2022 Callum Farmer <gmbr3@opensuse.org>
  - Add attr.patch to fix:
    * Avoid assigning %attr's to symlinks which causes rpmbuild spam
    * Change perms mask to 07777 to ensure SUID/SGID is copied over
  - Add lang.patch to support %lang
* Wed Jun 15 2022 gmbr3@opensuse.org
  - Update to version 10.2+git20220504.8690743:
    * Don't repackage aarch64_ilp32 *-64bit packages
    * Use pesign for signing on riscv64
    * Add padding to grub signature correctly (jsc#SLE-18271 bsc#1192764).
    * kernel-sign-file: Support appending verbatim PKCS#7 signature.
    * kernel-sign-file: Move x509 parsing into a function.
    * Support ppc grub signing (jsc#SLE-18271 bsc#1192764).
    * Handle packages with epochs as well
    * Turn off rpm fatal warnings for noarch packages
  - Upstreamed patches:
    * 0001-Support-ppc-grub-signing-jsc-SLE-18271-bsc-1192764.patch
    * 0002-kernel-sign-file-Move-x509-parsing-into-a-function.patch
    * 0003-kernel-sign-file-Support-appending-verbatim-PKCS-7-s.patch
    * 0004-Add-padding-to-grub-signature-correctly-jsc-SLE-1827.patch
  - Added patches:
    * order.patch - support OrderWithRequires
* Fri Jan 21 2022 Michal Suchanek <msuchanek@suse.com>
  - Support signing grub on powerpc (jsc#SLE-18271 bsc#1192764).
    + 0001-Support-ppc-grub-signing-jsc-SLE-18271-bsc-1192764.patch
    + 0002-kernel-sign-file-Move-x509-parsing-into-a-function.patch
    + 0003-kernel-sign-file-Support-appending-verbatim-PKCS-7-s.patch
    + 0004-Add-padding-to-grub-signature-correctly-jsc-SLE-1827.patch
* Wed Aug 04 2021 lnussel@suse.de
  - Update to version 10.2+git20210804.ff18da1:
    * brp-99-pesign: fix that the signature of shim be broken
* Fri Jul 30 2021 lnussel@suse.de
  - Update to version 10.2+git20210730.0cb100c:
    * Sign kernel also in module dir (boo#1184804)
      (replaces pesign-kernel-in-lib.diff)
  - switch package to obs_scm to avoid recompression
* Fri Jul 23 2021 dmueller@suse.com
  - Update to version git master (10.2):
    * Add support for GZIP and ZSTD module compression (bsc#1188636)
    * Always pad the EFI image when calculating the hash
    * Version bump to 10.2
    * approach issue#22 false noarch subpackage
  - drop pesign-obs-integration-bsc1183747-always-pad-efi-images.patch
    pesign-obs-integration-support-gzip-zstd-compression.patch (merged)
* Mon Jun 21 2021 Gary Ching-Pang Lin <glin@suse.com>
  - Add pesign-obs-integration-support-gzip-zstd-compression.patch
    to support gzip and zstd module compression
* Fri Apr 23 2021 Ludwig Nussel <lnussel@suse.de>
  - find kernel also in /lib (boo#1184804, pesign-kernel-in-lib.diff)
* Fri Mar 19 2021 Gary Ching-Pang Lin <glin@suse.com>
  - Add pesign-obs-integration-bsc1183747-always-pad-efi-images.patch
    to fix the potential hash mismatching (bsc#1183747)
* Mon Dec 21 2020 Gary Ching-Pang Lin <glin@suse.com>
  - Update to version 10.2:
    * Fix the wrongly created noarch subpackages
      (issue#22, bsc#1180242)
* Wed Oct 21 2020 dmueller@suse.com
  - Update to version 10.1+1602850462:
    * Compress kernel modules in batch and in parallel (bsc#1188636)
    * Forward _binary_payload to the repackaged rpm (bsc#1175882)
  - remove 0001-Forward-_binary_payload-to-the-repackaged-rpm.patch,
    parallel-compression.patch (upstream)
* Thu Oct 15 2020 dmueller@suse.com
  - Sync from git master directly
  - drop 0001-Add-support-for-kernel-module-compression.patch
    0001-Enable-find_provides-and-requires.patch
    0001-Initialize-compress-variable.patch
    0001-Keep-the-files-in-the-OTHER-directory.patch
    0001-Passthrough-license-tag.patch
    0001-brp-99-compress-vmlinux-support-xz-compressed-vmlinu.patch
    0001-sign-stage3.bin-from-s390-tools-with-sign-files-bsc-.patch
    pesign-sign-s390x-kernel.patch (upstream)
  - add parallel-compression.patch
* Wed Sep 02 2020 Gary Ching-Pang Lin <glin@suse.com>
  - Add 0001-Forward-_binary_payload-to-the-repackaged-rpm.patch to
    forward _binary_payload to the repackaged rpm (bsc#1175882)
* Fri Jul 17 2020 Gary Ching-Pang Lin <glin@suse.com>
  - Add 0001-Enable-find_provides-and-requires.patch
    (bsc#1114605, bsc#1180279)
    + Enable this patch again since virtualbox-kmp is split from
      the main package so the customized %find_provides for
      virtualbox-x11-guest won't be affected anymore.
* Wed Feb 26 2020 Marcus Meissner <meissner@suse.com>
  - pesign-sign-s390x-kernel.patch: Sign also the non-PE (e.g. s390x)
    kernels with just kernel-sign-file (bsc#1163524)
* Wed Feb 19 2020 Marcus Meissner <meissner@suse.com>
  - 0001-sign-stage3.bin-from-s390-tools-with-sign-files-bsc-.patch
    Hard code signing of stage3.bin of s390-tools (bsc#1163524)

Files

/usr/bin/modsign-repackage
/usr/bin/modsign-verify
/usr/lib/rpm/brp-suse.d
/usr/lib/rpm/brp-suse.d/brp-99-compress-vmlinux
/usr/lib/rpm/brp-suse.d/brp-99-pesign
/usr/lib/rpm/pesign
/usr/lib/rpm/pesign/gen-hmac
/usr/lib/rpm/pesign/kernel-sign-file
/usr/lib/rpm/pesign/pesign-gen-repackage-spec
/usr/lib/rpm/pesign/pesign-repackage.spec.in
/usr/share/doc/packages/pesign-obs-integration
/usr/share/doc/packages/pesign-obs-integration/README.md
/usr/share/licenses/pesign-obs-integration
/usr/share/licenses/pesign-obs-integration/COPYING


Generated by rpm2html 1.8.1

Fabrice Bellet, Sat Mar 9 12:50:11 2024