[shim/f19] Update to 0.4

Peter Jones pjones at fedoraproject.org
Tue Jun 11 19:25:49 UTC 2013


commit 732f24bf7f68f68747863b1f94934c3268644d32
Author: Peter Jones <pjones at redhat.com>
Date:   Tue Jun 11 15:25:15 2013 -0400

    Update to 0.4
    
    Signed-off-by: Peter Jones <pjones at redhat.com>

 ...him_cert-for-verifying-MoK-fedora-will-do.patch |   34 ++++++++++++++++++++
 1 files changed, 34 insertions(+), 0 deletions(-)
---
diff --git a/0001-Don-t-use-shim_cert-for-verifying-MoK-fedora-will-do.patch b/0001-Don-t-use-shim_cert-for-verifying-MoK-fedora-will-do.patch
new file mode 100644
index 0000000..1720b36
--- /dev/null
+++ b/0001-Don-t-use-shim_cert-for-verifying-MoK-fedora-will-do.patch
@@ -0,0 +1,34 @@
+From 878dc1a6a76eab7d9fee897ecc978e55e3fc80ed Mon Sep 17 00:00:00 2001
+From: Peter Jones <pjones at redhat.com>
+Date: Mon, 10 Jun 2013 18:08:50 -0400
+Subject: [PATCH] Don't use shim_cert for verifying MoK; fedora will do its own
+ signing.
+
+Signed-off-by: Peter Jones <pjones at redhat.com>
+---
+ shim.c | 2 ++
+ 1 file changed, 2 insertions(+)
+
+diff --git a/shim.c b/shim.c
+index 94b9710..4edd0b6 100644
+--- a/shim.c
++++ b/shim.c
+@@ -702,6 +702,7 @@ static EFI_STATUS verify_buffer (char *data, int datasize,
+ 		return status;
+ 	}
+ 
++#if 0
+ 	/*
+ 	 * Check against the shim build key
+ 	 */
+@@ -713,6 +714,7 @@ static EFI_STATUS verify_buffer (char *data, int datasize,
+ 		Print(L"Binary is verified by the vendor certificate\n");
+ 		return status;
+ 	}
++#endif
+ 
+ 
+ 	/*
+-- 
+1.8.2.1
+


More information about the scm-commits mailing list