From patchwork Tue Apr 15 12:22:00 2025 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Gokhan Cetin X-Patchwork-Id: 4174 Return-Path: Received: from shymkent.ilbers.de ([unix socket]) by shymkent (Cyrus 2.5.10-Debian-2.5.10-3+deb9u2) with LMTPA; Tue, 15 Apr 2025 14:23:23 +0200 X-Sieve: CMU Sieve 2.4 Received: from mail-wr1-f64.google.com (mail-wr1-f64.google.com [209.85.221.64]) by shymkent.ilbers.de (8.15.2/8.15.2/Debian-8+deb9u1) with ESMTPS id 53FCNMnK004914 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT) for ; Tue, 15 Apr 2025 14:23:22 +0200 Received: by mail-wr1-f64.google.com with SMTP id ffacd0b85a97d-3912b54611dsf3173401f8f.1 for ; Tue, 15 Apr 2025 05:23:22 -0700 (PDT) ARC-Seal: i=2; a=rsa-sha256; t=1744719797; cv=pass; d=google.com; s=arc-20240605; b=SaBr76rgjNv3ig6ovgg2P03teHr1Izud34+439ZmFq60fBK3LtD4Us2K6t8Rbfba1z PlnyB9CecjJQ6EqgHX3BPg6liuijQUgJfKM2aiu1dJKmOebTmh1dRZ90paolg6gQOp21 ykpNZEFxldV+z1bmyeruunkNIAF4EtwJaXTJ616wDZJh/lgPjolUUy6JQ0vAgC+okbdP chu8uIgbQbLQ8UbH17pIYy1EyRaAHA8uywM/EBKFGyhQSwA7xpSWcih7AyLx244LMUh5 JTIW243SwfWfCLNzISPKA7RC9ks2QiVaAoVQh4RNj7r4gleQcFtCShuYK+70LqguHLWV 93uA== ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to:feedback-id:mime-version :references:in-reply-to:message-id:date:subject:cc:to:from :dkim-signature; bh=241GqQUc7kai8PfqW/mLLPV/dmbugexgU+pzjbryk4I=; fh=LEWD2JAlEAs2mFWfbAUG9cXuKEph3KKSlC2aPnUZ1AY=; b=NBXDxcdEayYA6hzWsTxAnlaQW8DrJBUkrRfCiHx90eFicEY8bL/r73Ree6CrfvGkrK eTfg2/fWXCxghBC+PBOBzliSBPp/fBQJcBX62YF/ZJJERP/v5fb/cCGpDeZ5YqRPfMoA fen9ARXM+mi25IosKPTJ0iZrXE114I5qz/mMiSZnzsvZMWbqZM7s9zvwsUxAkN//g79x 5yL+1yXV11GsZbrRxy/c3dMRxn05IM4fOkg6lQVIrwNJbdbxj0XrYwm+bH96kqeoqCGb dp/zkSGf2XkSYIJOWiM58zmRvEvYsGjFV84oFwpHyHsVQQKmMAJ8IMkDqxCbOjixzdAu 1eSw==; darn=isar-build.org ARC-Authentication-Results: i=2; gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm2 header.b="FBPy/wB8"; spf=pass (google.com: domain of fm-1328731-2025041512231280871d2099925da7ad-qpwuo5@rts-flowmailer.siemens.com designates 185.136.65.227 as permitted sender) smtp.mailfrom=fm-1328731-2025041512231280871d2099925da7ad-QPWUO5@rts-flowmailer.siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=googlegroups.com; s=20230601; t=1744719797; x=1745324597; darn=isar-build.org; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to :x-original-authentication-results:x-original-sender:feedback-id :mime-version:references:in-reply-to:message-id:date:subject:cc:to :from:from:to:cc:subject:date:message-id:reply-to; bh=241GqQUc7kai8PfqW/mLLPV/dmbugexgU+pzjbryk4I=; b=hDtQo493mzkUuRHqtNkirCXWzqFhiUSY3vbwVeT8EqJyoIWshKmN97QyyRmfh7XqoG 33jEF73Dlhec5x2JfTVKoj5P5iHg4SoDzTWUcyA2qUXcl1L1osGZUOpype+dTWpqPSx1 M693BiHu8ViPx6AQXXYSNbP1pzKfZ/n3aZwOjYcToBS+vxGJul5P8orJc4Z/NI1FSBKM ToSEHQPzBumNE5pz5Is1P4GgC1LpdC/fSKt07n9ys73is/ZjquexhEXPlcNB2nEfZc0p 2bOZt1wrRvF/XZPk6v90Ji+I8QxPY850aM8M5UGa+w+ox8MATah6FE9lN2M2bvo51B5/ 24mA== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1744719797; x=1745324597; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :x-spam-checked-in-group:list-id:mailing-list:precedence:reply-to :x-original-authentication-results:x-original-sender:feedback-id :mime-version:references:in-reply-to:message-id:date:subject:cc:to :from:x-beenthere:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=241GqQUc7kai8PfqW/mLLPV/dmbugexgU+pzjbryk4I=; b=PMPzl5iT0riOYHVL6urG70GNotOkOPzJFHP3fvV7JX9RPQuB2ODr8Vj1UHDwo4JLEg MIQIe9jrBtvDPO9q6qCybfmHfyGq9OCD5HddSeff06lzaUtLNNzrxyVno/b5Yl/he5qk QoN7LBacGxO4G1vXhPeqZc2ZH6in0n24DojR2vzjmZjocG2ca4TJMVbN+mY96QdjE7Kb t8CdejMfC2KHjjLmOaS7+UsK6mrc1ttTqgfELt/lwv6kDgw9Z856DS7bJyhkjVgwoqoX EUh5XllBgdCjVQ0NBwKSH+FUlV+mUrk+kgEWTCEZphXspdrd+VV42TTAiiWSlKpWGVTM dUjA== X-Forwarded-Encrypted: i=2; AJvYcCXxu5JGkSJimb+RVF20usWXhbbz/BJX/9N7qG7MN0hf6DpfRtGb2Ras0OucCgjC3vjZs7XKLvw=@isar-build.org X-Gm-Message-State: AOJu0YzMqBYM5BsHxHPUf8nS4Od85fhAQZMBvac0MCn60x67H2J+bhxD j0xuilR4X3Vd9ipHRRGO7UDPkCF4rVKUobvx/bBJMNFtmHctfK0B X-Google-Smtp-Source: AGHT+IHEx5oIOLiivhvnvWzDGIf+vPp2owWWdAt34YLobiAH5ZVbRZBsFpw8TNLSHH60fYNBQ6ISfQ== X-Received: by 2002:a05:6000:2911:b0:39c:30fc:20 with SMTP id ffacd0b85a97d-39eaaebe985mr12004411f8f.37.1744719796055; Tue, 15 Apr 2025 05:23:16 -0700 (PDT) X-BeenThere: isar-users@googlegroups.com; h=ARLLPAIWUg1Jhg7urKDtMqKHBLwlPSDQqXmBoQyvXRwQeQFjtQ== Received: by 2002:a05:600c:3b89:b0:43d:1776:2ec2 with SMTP id 5b1f17b1804b1-43f2c5b1aa2ls4179815e9.2.-pod-prod-09-eu; Tue, 15 Apr 2025 05:23:13 -0700 (PDT) X-Received: by 2002:a05:600c:b8f:b0:43c:fe15:41c9 with SMTP id 5b1f17b1804b1-43f3a93f343mr140689875e9.9.1744719793533; Tue, 15 Apr 2025 05:23:13 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1744719793; cv=none; d=google.com; s=arc-20240605; b=CpwuyG67wY9xlgViEs1wQO7EVvRVVgzz601uEct5pLM4jiX3cZqKVxnObB1shwCcbK hlCIKyBdrTF8NvKG7XA/XDTAiB3Otv8V/4M/WSbKtkHtnMpuuOOKfvjekGsj8VD4/4dc tdAnIUmhEw3EzI3q+4TJfSn+9bW3+NbdwQF/JKXftmNshJ9Xe8/3gXQUqkn14tOciavP FvYo8lhrKB07QUfmZ1hHabHE4GQdjZ4UVpwzbfvIp8T0sSLl5Ev4wg0pinZ9bBcCvi+N tiWcEMsKq1RCI2tow3yyu8Dj2XVnR1DtdmhwAdXEdUxB6luqMQeu5I/L4mu1jztazRBL 1WYw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=feedback-id:content-transfer-encoding:mime-version:references :in-reply-to:message-id:date:subject:cc:to:from:dkim-signature; bh=cGVcRVuVOOJtcyuaa+qyHrE/ERVxdZVxdUlgeivczkw=; fh=KIkufVpSufRdX0kM67eXsuyWX/d3XYb6xMZvLts8gs4=; b=MUK/nOa2b9VTxqX7KQXwzC11z3A3HuzaoECGviD1bOdmswJksEWT0qnGKYuAVb5jWX vTZU7QnR/f7vlo+DviUs+m0MwccxXWv227MD8j79tYz3E6iT+LWRXMkdaRsjoBHygCah cduZFbf5suBuLWa+GRc4LC2uKL7nUFcksYh/VUGWBko2A9UBQhZz3BQ6UHO45hC3+EoR 9NkUjC7VPTClR+B6Yc/8SQ7ICrjxvtGxsv45aMyZY6Y37RIyvgXeVutKWDUcN7CvNG1/ //5HZMrhVmoIcVPuMalIR7nK2AgHu+Zy3nQ5apTxgbEV/SEXBPZ7XnfqidBPsvwSIJQg MnEw==; dara=google.com ARC-Authentication-Results: i=1; gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm2 header.b="FBPy/wB8"; spf=pass (google.com: domain of fm-1328731-2025041512231280871d2099925da7ad-qpwuo5@rts-flowmailer.siemens.com designates 185.136.65.227 as permitted sender) smtp.mailfrom=fm-1328731-2025041512231280871d2099925da7ad-QPWUO5@rts-flowmailer.siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com Received: from mta-65-227.siemens.flowmailer.net (mta-65-227.siemens.flowmailer.net. [185.136.65.227]) by gmr-mx.google.com with ESMTPS id 5b1f17b1804b1-44045ab6d79si654685e9.0.2025.04.15.05.23.13 for (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Tue, 15 Apr 2025 05:23:13 -0700 (PDT) Received-SPF: pass (google.com: domain of fm-1328731-2025041512231280871d2099925da7ad-qpwuo5@rts-flowmailer.siemens.com designates 185.136.65.227 as permitted sender) client-ip=185.136.65.227; Received: by mta-65-227.siemens.flowmailer.net with ESMTPSA id 2025041512231280871d2099925da7ad for ; Tue, 15 Apr 2025 14:23:13 +0200 X-Patchwork-Original-From: "'Gokhan Cetin' via isar-users" From: Gokhan Cetin To: isar-users@googlegroups.com Cc: gokhan.cetin@siemens.com Subject: [PATCH 1/5] module-signer-example: define virtual package name as module-signer Date: Tue, 15 Apr 2025 14:22:00 +0200 Message-Id: <20250415122204.120360-2-gokhan.cetin@siemens.com> In-Reply-To: <20250415122204.120360-1-gokhan.cetin@siemens.com> References: <20250415122204.120360-1-gokhan.cetin@siemens.com> MIME-Version: 1.0 X-Flowmailer-Platform: Siemens Feedback-ID: 519:519-1328731:519-21489:flowmailer X-Original-Sender: gokhan.cetin@siemens.com X-Original-Authentication-Results: gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm2 header.b="FBPy/wB8"; spf=pass (google.com: domain of fm-1328731-2025041512231280871d2099925da7ad-qpwuo5@rts-flowmailer.siemens.com designates 185.136.65.227 as permitted sender) smtp.mailfrom=fm-1328731-2025041512231280871d2099925da7ad-QPWUO5@rts-flowmailer.siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com X-Original-From: Gokhan Cetin Reply-To: Gokhan Cetin Precedence: list Mailing-list: list isar-users@googlegroups.com; contact isar-users+owners@googlegroups.com List-ID: X-Spam-Checked-In-Group: isar-users@googlegroups.com X-Google-Group-Id: 914930254986 List-Post: , List-Help: , List-Archive: , List-Unsubscribe: , X-Spam-Status: No, score=-4.9 required=5.0 tests=DKIMWL_WL_MED,DKIM_SIGNED, DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF,MAILING_LIST_MULTI, RCVD_IN_DNSWL_BLOCKED,RCVD_IN_MSPIKE_H2,RCVD_IN_RP_CERTIFIED, RCVD_IN_RP_RNBL,RCVD_IN_RP_SAFE,SPF_PASS autolearn=unavailable autolearn_force=no version=3.4.2 X-Spam-Checker-Version: SpamAssassin 3.4.2 (2018-09-13) on shymkent.ilbers.de X-getmail-retrieved-from-mailbox: =?utf-8?q?INBOX?= This will help to easily manage dependencies on providers implemented in downstreams. Signed-off-by: Gokhan Cetin --- .../module-signer-example/module-signer-example.bb | 3 +++ 1 file changed, 3 insertions(+) diff --git a/meta-isar/recipes-devtools/module-signer-example/module-signer-example.bb b/meta-isar/recipes-devtools/module-signer-example/module-signer-example.bb index 001e8cc8..58a84d01 100644 --- a/meta-isar/recipes-devtools/module-signer-example/module-signer-example.bb +++ b/meta-isar/recipes-devtools/module-signer-example/module-signer-example.bb @@ -9,6 +9,9 @@ inherit dpkg-raw DPKG_ARCH = "all" +PROVIDES = "module-signer" +DEBIAN_PROVIDES = "module-signer" + DEPENDS = "sb-mok-keys" DEBIAN_DEPENDS += "openssl, sb-mok-keys" From patchwork Tue Apr 15 12:22:01 2025 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Gokhan Cetin X-Patchwork-Id: 4175 Return-Path: Received: from shymkent.ilbers.de ([unix socket]) by shymkent (Cyrus 2.5.10-Debian-2.5.10-3+deb9u2) with LMTPA; Tue, 15 Apr 2025 14:23:25 +0200 X-Sieve: CMU Sieve 2.4 Received: from mail-wr1-f64.google.com (mail-wr1-f64.google.com [209.85.221.64]) by shymkent.ilbers.de (8.15.2/8.15.2/Debian-8+deb9u1) with ESMTPS id 53FCNOY5004980 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT) for ; Tue, 15 Apr 2025 14:23:24 +0200 Received: by mail-wr1-f64.google.com with SMTP id ffacd0b85a97d-3912c0be990sf313120f8f.2 for ; Tue, 15 Apr 2025 05:23:24 -0700 (PDT) ARC-Seal: i=2; a=rsa-sha256; t=1744719799; cv=pass; d=google.com; s=arc-20240605; b=boeEZom9rX2PJWAqENNCAjR06qnowWfdTkLsB/lUX2eK5PWdVSWk4zQT391Q1Td089 jznXGVtpJgW8Dj5Yy+ZphdhhMGZl+jXo8nLx8+NQrusvLpGpRosKLMS5FZGuCS0vdB20 FTSaigU3D68s+Br0Q2nF5P4ThhIoMQVcpa8DnKN3fsqHrkOstG1IenIkkJGFEPd8M2kG O7/ASkNoObjQDYrxLCUt4X/wPKqzxWhYf8WYvqR2349+Apq9p9EdJAEWoWyIEIQfUYcu Wo+lyaBvlUCkg2jiYIdZQy+Q6dUMr/Y/d/IHlgpsWEqJbuMEZUqoT+qf/fDc34HYoI89 OiUQ== ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to:feedback-id:mime-version :references:in-reply-to:message-id:date:subject:cc:to:from :dkim-signature; bh=yPZC0fE9dlr2850az6v30ENVbcAX/CrApZDAMF2TEAs=; fh=g87X1j5ZtR/z0hwnYt9tqu+fZY/fekWPKn3ES5T7xJw=; b=YZN0BImTe0dB0r9Afkacb4no5WhEr/JQBqedSfTuzsyDStRQ1VbRWbshF1sdtavD9s v7WGp6K6xD+9TACqE/i5n4YtXTlVzWF6pelSumQk3OEt2ScEUA0YE7ALuqKUYIc7Ciye Y1bwK0Py856mXkh/zQOqgTPogRbLD886To8VKdiuyQ+XXVyvNS2JXx/R9zUg/y8ngGgY LAzz0Jt8PyjPwjPIsXvhGiFhVpzVsB1ceJQBsYZH8nGB/twfrLwMJuYFZzDY8zP5CeZE V85sz6fzv/0mqn25jDb+YGeVbrkoeLskPJdcLZGXGLvMvJwBLzSP1Yqiiw8pE+ou/UGq fVdQ==; darn=isar-build.org ARC-Authentication-Results: i=2; gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm2 header.b=Tudxvjc5; spf=pass (google.com: domain of fm-1328731-20250415122316318c02b7363a1047b8-_cmwu4@rts-flowmailer.siemens.com designates 185.136.64.225 as permitted sender) smtp.mailfrom=fm-1328731-20250415122316318c02b7363a1047b8-_Cmwu4@rts-flowmailer.siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=googlegroups.com; s=20230601; t=1744719799; x=1745324599; darn=isar-build.org; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to :x-original-authentication-results:x-original-sender:feedback-id :mime-version:references:in-reply-to:message-id:date:subject:cc:to :from:from:to:cc:subject:date:message-id:reply-to; bh=yPZC0fE9dlr2850az6v30ENVbcAX/CrApZDAMF2TEAs=; b=I+qHuAB7cMXjzlDiXoLS4vKxwrSdlOgv2o92wexE4zj0rQK2bR/Uu/gIDCnRpkO4g8 UM3cyVx/A2MYkIvm1RXoLMeAsImsRLY5wt1ZdzscXbrQLqrnFvHebtFeiO2UL4buSBJN s7TC3zJiEviObFpS06k/OYzxa/cY4me98JO4KdC+7qltmTIz+9XM+DNplwCeYnS8c87B /T/yObN8NI2GFeJlBa+l+JL4zWcO5NPkpltd1bs4WVs5FnJpoEeM9hbMO2WROHrlB+v4 0Iso5QAeUxRN2DSIAuW9eijbQX8inSKLbrXL2XWyhA/Zh6wVTdSYe1jSZ975npaePgCt lrpw== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1744719799; x=1745324599; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :x-spam-checked-in-group:list-id:mailing-list:precedence:reply-to :x-original-authentication-results:x-original-sender:feedback-id :mime-version:references:in-reply-to:message-id:date:subject:cc:to :from:x-beenthere:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=yPZC0fE9dlr2850az6v30ENVbcAX/CrApZDAMF2TEAs=; b=EhblBpREOXFVfibRX3R9m8mryS2CzhdtW5ZMuJLZmof1risEVP0f0bQw2P3TcFUnOw mSLilFJazq+/L7f1AhuIW5urU4Z73aQcpMzIycfqtk8FoJtp8KtbjPy9ox58uBPEfY7b XlNrtEF5q5ZKbaL7gAmFQpkYfrV8+KfUiK20M3LOYPEL/lX17vk0Uiy26BLl7K26akO3 CoRybFAH1uhkUYQDagGsIl2g6LVAsg2nibaH3KDRoejbOkpBOtO+XGbre953XZogDoWI U8GuuGhZ9GGTTsodmP799UtA/pcPRvrkeg2p7WD6jLq4LRd84tJjmAxd0hZhiopKkcTG nH4w== X-Forwarded-Encrypted: i=2; AJvYcCVQ+eM4r6BGRtwL3367VkhYPmBY56dKUVqj62uAwZl2wgzMRfSBXt/BEqyb2zPH/oriXgO5cz4=@isar-build.org X-Gm-Message-State: AOJu0YwX0NQ+VxTyvFDCyHkbp9G/PyFCFxEEYwUxZjPSxIdkI3ul7DXi exEVZ9DaoCl7jenkr8CZft+VPf/EVxPN0xtZFQeCy95+PCkVbUVh X-Google-Smtp-Source: AGHT+IGDP7IUAtKEqu4TtCZq9wX9cPxna7yP0dqvG9Ap+ANTdsnbe5irg5XdU/8wGciNDGr3GRHIbw== X-Received: by 2002:a05:6000:40d9:b0:39c:cc7:3d3b with SMTP id ffacd0b85a97d-39ea5313ca7mr4694835f8f.8.1744719798805; Tue, 15 Apr 2025 05:23:18 -0700 (PDT) X-BeenThere: isar-users@googlegroups.com; h=ARLLPAJmj7/5xveLeEK9zLjbya2QcNztGMWNUZOgAtUMBISFCA== Received: by 2002:a05:6000:2502:b0:38d:c1e5:15ce with SMTP id ffacd0b85a97d-39d8dfb4eb8ls1991553f8f.2.-pod-prod-03-eu; Tue, 15 Apr 2025 05:23:16 -0700 (PDT) X-Received: by 2002:a05:6000:430e:b0:39c:1258:2dca with SMTP id ffacd0b85a97d-39eaaecf105mr13231255f8f.59.1744719796614; Tue, 15 Apr 2025 05:23:16 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1744719796; cv=none; d=google.com; s=arc-20240605; b=B0b7Xx7bQ7wjdRByP5xyZyf6xryMps0K7h4GiwUqhht0PlqTAaULsrTGbfyY0iaD4w euXBTlldVGTi+3WSReJCgZNsVmdo4kpGmGobUtMclLAORTxpZjFvj1gaAwWtiJX30/1o dXEMa+nyfbp22Qfa9tCx7be2gz3ikJi6R2UGiBK0Zgge1gh4llo6h6Fd+mbFs8IZr17g h41gX48aZ6sELYWKQwtcI0PR/Cy00sBHuaGsr402lDeAXD1I1BZzfcXW1dV5wKGtomAo 5byYilqvgZHkYZSTBE8eGBb9ZYuhGlQ55kbEPjNLwTJoO+kKhUPAKvtJEd+eMwdGZkPz wzSg== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=feedback-id:content-transfer-encoding:mime-version:references :in-reply-to:message-id:date:subject:cc:to:from:dkim-signature; bh=JS//+uWJ6pcDHzauH1FlWVIY7MUERCxcMMWCeg5PIIY=; fh=KIkufVpSufRdX0kM67eXsuyWX/d3XYb6xMZvLts8gs4=; b=F645FSz0N7aDQ1wMKMHeeDy/MHPkqnDMF+XBA1oYaOkDFm6fnkzqSlMiJzB1WRrd48 na5zi4IogI6b0J1TbOnXv9fhd+BgJ7CgvJfRp7UeKeiyfrYjn+hKFYbbiPaz3puFfe1t ZpoiwyG8gJodfWrF0bY8LJ6F1PGR8r/ba99nRnl5gvfyPr/0I2D/wZKBfrcAGeYa0xFV 1AqXrhkUF68AhbpbsASR/gEix3MyXTLRWJ6OQcO1VGaxplkB9Uyox5kF0AI73fjeE0/G AVpEWBb/URB0P4J/GPl6lfMoO4EqgAf5zDGbcMaI5Hj15GuuG/SBKWraDfPaquw390nl SFWw==; dara=google.com ARC-Authentication-Results: i=1; gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm2 header.b=Tudxvjc5; spf=pass (google.com: domain of fm-1328731-20250415122316318c02b7363a1047b8-_cmwu4@rts-flowmailer.siemens.com designates 185.136.64.225 as permitted sender) smtp.mailfrom=fm-1328731-20250415122316318c02b7363a1047b8-_Cmwu4@rts-flowmailer.siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com Received: from mta-64-225.siemens.flowmailer.net (mta-64-225.siemens.flowmailer.net. [185.136.64.225]) by gmr-mx.google.com with ESMTPS id 5b1f17b1804b1-440518e2e81si223825e9.1.2025.04.15.05.23.16 for (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Tue, 15 Apr 2025 05:23:16 -0700 (PDT) Received-SPF: pass (google.com: domain of fm-1328731-20250415122316318c02b7363a1047b8-_cmwu4@rts-flowmailer.siemens.com designates 185.136.64.225 as permitted sender) client-ip=185.136.64.225; Received: by mta-64-225.siemens.flowmailer.net with ESMTPSA id 20250415122316318c02b7363a1047b8 for ; Tue, 15 Apr 2025 14:23:16 +0200 X-Patchwork-Original-From: "'Gokhan Cetin' via isar-users" From: Gokhan Cetin To: isar-users@googlegroups.com Cc: gokhan.cetin@siemens.com Subject: [PATCH 2/5] meta/recipes-kernel/linux-module: Define default paths for signing related variables Date: Tue, 15 Apr 2025 14:22:01 +0200 Message-Id: <20250415122204.120360-3-gokhan.cetin@siemens.com> In-Reply-To: <20250415122204.120360-1-gokhan.cetin@siemens.com> References: <20250415122204.120360-1-gokhan.cetin@siemens.com> MIME-Version: 1.0 X-Flowmailer-Platform: Siemens Feedback-ID: 519:519-1328731:519-21489:flowmailer X-Original-Sender: gokhan.cetin@siemens.com X-Original-Authentication-Results: gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm2 header.b=Tudxvjc5; spf=pass (google.com: domain of fm-1328731-20250415122316318c02b7363a1047b8-_cmwu4@rts-flowmailer.siemens.com designates 185.136.64.225 as permitted sender) smtp.mailfrom=fm-1328731-20250415122316318c02b7363a1047b8-_Cmwu4@rts-flowmailer.siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com X-Original-From: Gokhan Cetin Reply-To: Gokhan Cetin Precedence: list Mailing-list: list isar-users@googlegroups.com; contact isar-users+owners@googlegroups.com List-ID: X-Spam-Checked-In-Group: isar-users@googlegroups.com X-Google-Group-Id: 914930254986 List-Post: , List-Help: , List-Archive: , List-Unsubscribe: , X-Spam-Status: No, score=-4.9 required=5.0 tests=DKIMWL_WL_MED,DKIM_SIGNED, DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF,MAILING_LIST_MULTI, RCVD_IN_DNSWL_BLOCKED,RCVD_IN_MSPIKE_H2,RCVD_IN_RP_CERTIFIED, RCVD_IN_RP_RNBL,RCVD_IN_RP_SAFE,SPF_PASS autolearn=unavailable autolearn_force=no version=3.4.2 X-Spam-Checker-Version: SpamAssassin 3.4.2 (2018-09-13) on shymkent.ilbers.de X-getmail-retrieved-from-mailbox: =?utf-8?q?INBOX?= They are initialized with almost standardized paths in isar-cip-core and many other layers. In this way, it is possible to get rid of dozens of repeating lines in module recipes. Signed-off-by: Gokhan Cetin --- meta/recipes-kernel/linux-module/module.inc | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/meta/recipes-kernel/linux-module/module.inc b/meta/recipes-kernel/linux-module/module.inc index 3b0ceae7..45d88d48 100644 --- a/meta/recipes-kernel/linux-module/module.inc +++ b/meta/recipes-kernel/linux-module/module.inc @@ -23,10 +23,10 @@ DEBIAN_BUILD_DEPENDS = "${KERNEL_HEADERS_PKG}" # Do not generate debug symbols packages, as not supported for modules DEB_BUILD_OPTIONS += "noautodbgsym" -SIGNATURE_KEYFILE ??= "" -SIGNATURE_CERTFILE ??= "" +SIGNATURE_KEYFILE ??= "/usr/share/secure-boot-secrets/secure-boot.key" +SIGNATURE_CERTFILE ??= "/usr/share/secure-boot-secrets/secure-boot.pem" SIGNATURE_HASHFN ??= "sha256" -SIGNATURE_SIGNWITH ??= "" +SIGNATURE_SIGNWITH ??= "/usr/bin/sign-module.sh" SRC_URI += "file://debian/" From patchwork Tue Apr 15 12:22:02 2025 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Gokhan Cetin X-Patchwork-Id: 4177 Return-Path: Received: from shymkent.ilbers.de ([unix socket]) by shymkent (Cyrus 2.5.10-Debian-2.5.10-3+deb9u2) with LMTPA; Tue, 15 Apr 2025 14:23:28 +0200 X-Sieve: CMU Sieve 2.4 Received: from mail-wm1-f61.google.com (mail-wm1-f61.google.com [209.85.128.61]) by shymkent.ilbers.de (8.15.2/8.15.2/Debian-8+deb9u1) with ESMTPS id 53FCNRh1005048 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT) for ; Tue, 15 Apr 2025 14:23:27 +0200 Received: by mail-wm1-f61.google.com with SMTP id 5b1f17b1804b1-43d01024089sf44964395e9.1 for ; Tue, 15 Apr 2025 05:23:27 -0700 (PDT) ARC-Seal: i=2; a=rsa-sha256; t=1744719801; cv=pass; d=google.com; s=arc-20240605; b=Y08Q3Hn/fzOyLBbaIf4FhxRPObjrPpOqhu8/PMYZM63bZZw/bLOzgh8P5NDoHU5U/h kwOzPyc0q41XadpTnWVdB5nGa5UMb3QBjS9JfLf7yhUwBgt3UwxaCmjjjQ281ufsKA0p e1bOOoTZ48WRIUrfrGhrwbJu3XDK3kctC/NLV8x5iWCn1fMEFRW7Eys9sSlXNIvQL76y yjE507XHVt2WIgWt6J6ZdX57ICExnEGv3JEwefVyElN+xaB5ohxjVhhsMeQXbGZ495zg OCNVPqoLjyZ9E6NuEY/APnHoGcOMFmzh/Ol7yd16URmMKhfgmpYqyA/ByXWVuxJbbw2w gEMQ== ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to:feedback-id:mime-version :references:in-reply-to:message-id:date:subject:cc:to:from :dkim-signature; bh=9kTdziVaaUb/oki97YKbmtDjoI/dbIlgFQdDReLXYiE=; fh=Ka6f1EIeBuNJHCsXqoX6IHumcv6hoc8rPF/m1DTgZNU=; b=Zq8rmBP3p0w68z4Xs16cuKL5A7YHy9M88dYqeIjKQqLEUbi6ZzLABL73Qx0SiqOMdj 5X7NRDKKrBAD67ywdAJrv5ADF3cDskDFK9d6jpw0pE/x1OIBqH8tr5PqsWXrHenZky4Y JZVP9N29+8VWU/8mAuFwyd1jC9jvvUsEl9AtFd8cTRkTrCSaMHFe4plgnxaBQXCHSqUC CLQCzidWp49rulMK2Sw9U7mMVW9y9L52/pr76VWSSN5Bf6X+4gy0cB1jab6s61jwbRE1 dyOeUulgypN3lRUuVoyDWNBEu1fDJvsqXSg8bTBHWiKTTfBVgNaW6ycJoxjzBP+aI+oU wZQQ==; darn=isar-build.org ARC-Authentication-Results: i=2; gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm2 header.b="QDOjK/Xr"; spf=pass (google.com: domain of fm-1328731-20250415122317776aa62410fa9dfe6d-o_yfy7@rts-flowmailer.siemens.com designates 185.136.64.225 as permitted sender) smtp.mailfrom=fm-1328731-20250415122317776aa62410fa9dfe6d-o_YfY7@rts-flowmailer.siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=googlegroups.com; s=20230601; t=1744719801; x=1745324601; darn=isar-build.org; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to :x-original-authentication-results:x-original-sender:feedback-id :mime-version:references:in-reply-to:message-id:date:subject:cc:to :from:from:to:cc:subject:date:message-id:reply-to; bh=9kTdziVaaUb/oki97YKbmtDjoI/dbIlgFQdDReLXYiE=; b=qktjJgQE/64pueOARgn/O9XjURTYSZqK3KJNhvLzWEVw4D+0o0NeL67+ZZKIwBYskx wiEiFh+3TmE2pTMMCwE0t8y04t6xzhv3ZcOIKaoZcTPDtyTECoMnumz5DVNBIt11RWJA qeqDNE8+EKLWDOvZ47g3Lun/k56U9zrLFtCLykkdSHX3b1KdcfqQyC2Diyyu5MAqD4WY FxJPtdqqKJ9HFseFCNlT7l5bq+kSyh+FBxBAo1+QU7cMYe6cft01RLOwpRiq4QO/E5Lv h2zerHpLwr6LlH75qyZVRQ7nww8HkgbEZkdwezMEh4DmuzVZIyLAzdhv4Auy+zkhFGI0 0Ecw== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1744719801; x=1745324601; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :x-spam-checked-in-group:list-id:mailing-list:precedence:reply-to :x-original-authentication-results:x-original-sender:feedback-id :mime-version:references:in-reply-to:message-id:date:subject:cc:to :from:x-beenthere:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=9kTdziVaaUb/oki97YKbmtDjoI/dbIlgFQdDReLXYiE=; b=aWKpeewHfjF3RhTrgIUbmKhPXtG+SFeeu+b/u061Yv9tI3hu23rKvdDC8V6inCJ/Nn qLf72YEQrlTyX5yH9PQjEGVeiAlI1XYIY2DLVgu+oGG8tBHsj7C+0aqhKEyul1I9LDqB QZJwOSsC4exvwSrfrZGThpJDIfEyUI51Rpg2iIkLaJASBCgPauL8Mm95jkik+BCzxFFS tCnVvKf6+KruB51ivgCyLFoQoUPC8Kt0SELQldDVwVVhLEri3qzpCO5mIwA+AAsceLGu 2E36YQeefsnfM5bfAVw8zeA8wgwlFzgRxWoZ2Z0wc/qKT3SHEC1nSc1TjYgBDAd7mPLD gm8A== X-Forwarded-Encrypted: i=2; AJvYcCU3L9OZft1gpy9/6VPBnJmqJx4lkDA2uUjOaP1gHxE1uSFOQXJJmwfKI5A2qgigpYJt5Hefsfw=@isar-build.org X-Gm-Message-State: AOJu0YzfW72THfQAAJFUZlktMXdkjHOBqDR8fGIC4Uv2cOdD3LL8ZaHc oDrlYgnolV1v0iAGvy0M1bRnA38ryk9JP8vByTo001LktrS2IWDz X-Google-Smtp-Source: AGHT+IEneBR6gTVK7Dkfb4ZeR0lDLL/XBu7gHDU/IIbwI7fNca+mf7zfAPQvB632q+M2pYUjAUZXTQ== X-Received: by 2002:a05:600c:1389:b0:43c:f75a:eb54 with SMTP id 5b1f17b1804b1-43f3a93d3e0mr133281555e9.13.1744719799959; Tue, 15 Apr 2025 05:23:19 -0700 (PDT) X-BeenThere: isar-users@googlegroups.com; h=ARLLPALJWEETiLXvmOkGbxs3QFi4aa7GNsl8HVDSHP+iXFXOYw== Received: by 2002:a05:600c:4f10:b0:43d:17c2:e7f1 with SMTP id 5b1f17b1804b1-43f2c57a604ls15022775e9.2.-pod-prod-05-eu; Tue, 15 Apr 2025 05:23:17 -0700 (PDT) X-Received: by 2002:a05:600c:3c98:b0:43d:1b74:e89a with SMTP id 5b1f17b1804b1-43f3a93cea5mr154413675e9.9.1744719797510; Tue, 15 Apr 2025 05:23:17 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1744719797; cv=none; d=google.com; s=arc-20240605; b=WmTRBi5VBsyM9wbp8a4qpAiZH7F2mlaODZTP/OYo+q4Q3cr9xP0mnViyAbr+4XMSJr uO3CYB2pbuJo6wnEh+bnJ/u7PXW0a7itUm21mhZxhiJLDYXzvXOrrsyrVQVJZUIakO70 //LwVhSLgHHhg1RL80FSrI6V9HsBs39LHiwiRuuHQaYCukoIBb4AbuCqannhjovYuWer pLnkcZvWFcpVlmE6pnAu9KnCOcV1T1h6gJwboq4SfAgAT+yScuJXJpuZr70BlGFmSuIL psU7UlTnFj7ZnQYOwSqvqF4uWnpXEczG6vHm6GqfQIkEBQ3l0HnFbE+jc7Xx03QIiEPh 3lVQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=feedback-id:content-transfer-encoding:mime-version:references :in-reply-to:message-id:date:subject:cc:to:from:dkim-signature; bh=S6NrBygIPBE6GAmpho4hF+RB5K6msX5N9Khy8ZLN4b0=; fh=KIkufVpSufRdX0kM67eXsuyWX/d3XYb6xMZvLts8gs4=; b=YItehlej5O6FIrk06gTbZDkpxUftc8UgMFz98FCyXJKCrskli+dOFskMkae2A5D8HS xH2VZ3RfwonmSsM6EAPgSHR1uHEoGSiutj3pCgArnx9LGmvZUAtRhjE6kWajaNgtTINE xtGu4vbDOrBYNUXbHJtUWJSCj0hWltyb8FmLSP49SKUAGSDM/U/w8dRSnxzvcdnoExKJ ar1+9wjUSmWKY/4SeIi1F3HIOvuw/NVZgq4zJ21EHnZCfJSKcBhdxjk1rapq+PaLKuW8 GOY7jPcfIohwcvbdOSqwPIWy8oHODsKI2SV26Ym3ijjiWXMlc6o2R2T6++GHgLg0TRJh 2OxQ==; dara=google.com ARC-Authentication-Results: i=1; gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm2 header.b="QDOjK/Xr"; spf=pass (google.com: domain of fm-1328731-20250415122317776aa62410fa9dfe6d-o_yfy7@rts-flowmailer.siemens.com designates 185.136.64.225 as permitted sender) smtp.mailfrom=fm-1328731-20250415122317776aa62410fa9dfe6d-o_YfY7@rts-flowmailer.siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com Received: from mta-64-225.siemens.flowmailer.net (mta-64-225.siemens.flowmailer.net. [185.136.64.225]) by gmr-mx.google.com with ESMTPS id 5b1f17b1804b1-440518e2e81si223825e9.1.2025.04.15.05.23.17 for (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Tue, 15 Apr 2025 05:23:17 -0700 (PDT) Received-SPF: pass (google.com: domain of fm-1328731-20250415122317776aa62410fa9dfe6d-o_yfy7@rts-flowmailer.siemens.com designates 185.136.64.225 as permitted sender) client-ip=185.136.64.225; Received: by mta-64-225.siemens.flowmailer.net with ESMTPSA id 20250415122317776aa62410fa9dfe6d for ; Tue, 15 Apr 2025 14:23:17 +0200 X-Patchwork-Original-From: "'Gokhan Cetin' via isar-users" From: Gokhan Cetin To: isar-users@googlegroups.com Cc: gokhan.cetin@siemens.com Subject: [PATCH 3/5] meta-isar/recipes-secureboot/sb-mok-keys: define virtual package name Date: Tue, 15 Apr 2025 14:22:02 +0200 Message-Id: <20250415122204.120360-4-gokhan.cetin@siemens.com> In-Reply-To: <20250415122204.120360-1-gokhan.cetin@siemens.com> References: <20250415122204.120360-1-gokhan.cetin@siemens.com> MIME-Version: 1.0 X-Flowmailer-Platform: Siemens Feedback-ID: 519:519-1328731:519-21489:flowmailer X-Original-Sender: gokhan.cetin@siemens.com X-Original-Authentication-Results: gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm2 header.b="QDOjK/Xr"; spf=pass (google.com: domain of fm-1328731-20250415122317776aa62410fa9dfe6d-o_yfy7@rts-flowmailer.siemens.com designates 185.136.64.225 as permitted sender) smtp.mailfrom=fm-1328731-20250415122317776aa62410fa9dfe6d-o_YfY7@rts-flowmailer.siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com X-Original-From: Gokhan Cetin Reply-To: Gokhan Cetin Precedence: list Mailing-list: list isar-users@googlegroups.com; contact isar-users+owners@googlegroups.com List-ID: X-Spam-Checked-In-Group: isar-users@googlegroups.com X-Google-Group-Id: 914930254986 List-Post: , List-Help: , List-Archive: , List-Unsubscribe: , X-Spam-Status: No, score=-4.9 required=5.0 tests=DKIMWL_WL_MED,DKIM_SIGNED, DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF,MAILING_LIST_MULTI, RCVD_IN_DNSWL_BLOCKED,RCVD_IN_MSPIKE_H2,RCVD_IN_RP_CERTIFIED, RCVD_IN_RP_RNBL,RCVD_IN_RP_SAFE,SPF_PASS autolearn=unavailable autolearn_force=no version=3.4.2 X-Spam-Checker-Version: SpamAssassin 3.4.2 (2018-09-13) on shymkent.ilbers.de X-getmail-retrieved-from-mailbox: =?utf-8?q?INBOX?= As done by 946b908b, this will allow more key providers to meet further common dependencies. Signed-off-by: Gokhan Cetin --- meta-isar/recipes-secureboot/sb-mok-keys/sb-mok-keys.bb | 2 ++ 1 file changed, 2 insertions(+) diff --git a/meta-isar/recipes-secureboot/sb-mok-keys/sb-mok-keys.bb b/meta-isar/recipes-secureboot/sb-mok-keys/sb-mok-keys.bb index 61378347..2a8b66d4 100644 --- a/meta-isar/recipes-secureboot/sb-mok-keys/sb-mok-keys.bb +++ b/meta-isar/recipes-secureboot/sb-mok-keys/sb-mok-keys.bb @@ -5,6 +5,8 @@ inherit dpkg +PROVIDES = "secure-boot-secrets" +DEBIAN_PROVIDES = "secure-boot-secrets" SRC_URI = "file://Makefile.tmpl" S = "${WORKDIR}/src" From patchwork Tue Apr 15 12:22:03 2025 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Gokhan Cetin X-Patchwork-Id: 4176 Return-Path: Received: from shymkent.ilbers.de ([unix socket]) by shymkent (Cyrus 2.5.10-Debian-2.5.10-3+deb9u2) with LMTPA; Tue, 15 Apr 2025 14:23:26 +0200 X-Sieve: CMU Sieve 2.4 Received: from mail-wm1-f59.google.com (mail-wm1-f59.google.com [209.85.128.59]) by shymkent.ilbers.de (8.15.2/8.15.2/Debian-8+deb9u1) with ESMTPS id 53FCNQiX005001 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT) for ; Tue, 15 Apr 2025 14:23:26 +0200 Received: by mail-wm1-f59.google.com with SMTP id 5b1f17b1804b1-43d5ca7c86asf32911835e9.0 for ; Tue, 15 Apr 2025 05:23:26 -0700 (PDT) ARC-Seal: i=2; a=rsa-sha256; t=1744719801; cv=pass; d=google.com; s=arc-20240605; b=EbjkKyxlFbu42jab8B7XwwjPWfuQJXLZcDXFSSnW+nLnNCziHfn44elV0OC6xvTqq9 a3a8wRTF3pfXZTuJ4AzXT9GBn/OBJgpiF13pAJXPiCaOSFhJ4TAnev8Ws9xYzjVjF5yH juFNZNcdx3k9Ci55yCq0JHC7xwG/8pgfr885ogquIlP4axhKOQAL6h62sF/c+y+OqQ4b +O9cQZYsBIy78nB9yTNRqRztFT5wu7r2R5jPQXgSV8KFAWgfbFaqRZJ5bj6KOFNVAOVy VHfVRytmBtYUHlasJ1uZnqVyoRmVHlxK3cDL5rKYMcgM2+npc0xQKBrAOnTCni/YbJpw u3rA== ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to:feedback-id:mime-version :references:in-reply-to:message-id:date:subject:cc:to:from :dkim-signature; bh=CetH8bolSlsXdacg74qZaKjrs5SOEhaRNkzlTm8pj6U=; fh=OmoRQa1gwVM9e+8FL63xEUmve76THKblGPSZdbvRXTM=; b=ahWB2kBb8QMNdqpt/vDjRURf+IxlgX4hFhbDzGAsWnLZ1vqiyFB+T5MG2yES29m1Pu hhyT9Q+ArbEjRAeaIbcp9r5L1p3xQ17QDBMiWb/PlNK4Px2WclIdItltil/sRTbhSnlD ptVrVU1Tn6rlgouU28OMfZmuVlYCKBFzqJwXxQMIRfmOxNvJrrW5FyMF+rL+8xFPo1Ph 04C/D9Mm5oMxyzu/zDNLhVThgSJpYQPze6fg4jgFfpcFVn1jkT+zgypBQq6+h8vgoaLf 92ls/Ec7BMRKKyaFedBLYGiQyOUn4AmA9ATMVX4t2h8fiAx64HqJSxMe3gngLH9wALXv 01rw==; darn=isar-build.org ARC-Authentication-Results: i=2; gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm2 header.b=B+dkyvjn; spf=pass (google.com: domain of fm-1328731-202504151223181973aab57411b1caaa-v16v1t@rts-flowmailer.siemens.com designates 185.136.64.225 as permitted sender) smtp.mailfrom=fm-1328731-202504151223181973aab57411b1caaa-V16V1t@rts-flowmailer.siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=googlegroups.com; s=20230601; t=1744719801; x=1745324601; darn=isar-build.org; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to :x-original-authentication-results:x-original-sender:feedback-id :mime-version:references:in-reply-to:message-id:date:subject:cc:to :from:from:to:cc:subject:date:message-id:reply-to; bh=CetH8bolSlsXdacg74qZaKjrs5SOEhaRNkzlTm8pj6U=; b=WdUPH3qXl5jDgEtcceZ8P5KidXAuhVrv8BDYYXdGT75lHT6ocwJHiJFX0Iizb3oFSK C2qhfCzhR/t+ozOsOR3hLb4RlGD/Nwt7F0RhGro9X4MBTfJc+H3xmSRZ5K5KVfV6fB+b Fshxvo1LntYRHs3zxJnbhOklgIi7QInvlQy4xx1T0EgrMHim1wETFmRReDdm4CJuuqlw Yr7QQDnv7ZrafL8rhK/QwV4OAwWmPV3WS2Vng5Gk9dA9Sdm/E8x8WSzU57SPYsyCgUH3 ZZrnRPouBcTgihNStN7sujJDQSveBZYPW1XauBWaMJIfUOJsKO9Pw0LrdKt7ZUEvMCyi kMxg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1744719801; x=1745324601; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :x-spam-checked-in-group:list-id:mailing-list:precedence:reply-to :x-original-authentication-results:x-original-sender:feedback-id :mime-version:references:in-reply-to:message-id:date:subject:cc:to :from:x-beenthere:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=CetH8bolSlsXdacg74qZaKjrs5SOEhaRNkzlTm8pj6U=; b=mV4je3O0xADtTfpciWOcgwHnPwRUETdH2xg3lt7aI8EzD2u7dm/kAuKYRjgaBtJ7w1 IMiJouWRHBjjymsvN5eWBXKWNbmIrXxmOcGu1wpziyfi/uOjsjkLXMYKeni6zdLqOdEo 3TXaGZFvZW1xe83inlxkLJGOYwtsZUWij6zdlUR8VSDVmruKpfO/RTFPQlXx8aHNl0IR Q0sUCUGiYFcHLuedKGOAA2myLu2XfcMmSGLxEuRAo//cTgXrZ21QUWLVFOk8EV7FMqAj VnkXPjNKYdijSzHtDyuf+GmGp7hiGQR67XyXYyO0y6a6m5O0c4hm+DHdI/45hE9PGol9 CYPg== X-Forwarded-Encrypted: i=2; AJvYcCWpAsRYCXDLYfrrJX1E27YqIrIbS7pyDUAozd4isnsihHQ/D24u5OS+qZOvgIpxiPX5Fr0uJRo=@isar-build.org X-Gm-Message-State: AOJu0Yz9sR3N3YfHd5VoSmuclpIq9qw5SHiiL0esTWb32FErT/I5tW5m wKTyPjgmbiYkGstKSd/pnpxSI6Gw/U/JvA+Dq2wvqY+2jrmv5nEu X-Google-Smtp-Source: AGHT+IFDiAFiPqtOFf8DjpGi5KNIrT1meKVwD6EXJ2wtQjtRp11KHJLqmMaJnfxJU8TtqJIghfC//A== X-Received: by 2002:a05:600c:4f8b:b0:43c:fbba:41ba with SMTP id 5b1f17b1804b1-43f3a9aee30mr104973795e9.28.1744719800645; Tue, 15 Apr 2025 05:23:20 -0700 (PDT) X-BeenThere: isar-users@googlegroups.com; h=ARLLPAJAPF3chdCF5qh/9e8obMJHoJEcJ+Ki2rT36IH1glKY3A== Received: by 2002:a05:600c:1e11:b0:43c:ec03:5dc5 with SMTP id 5b1f17b1804b1-43f2c565713ls10005575e9.2.-pod-prod-01-eu; Tue, 15 Apr 2025 05:23:18 -0700 (PDT) X-Received: by 2002:a05:600c:5251:b0:43b:cc42:c54f with SMTP id 5b1f17b1804b1-43f3a93f77fmr129102875e9.14.1744719798522; Tue, 15 Apr 2025 05:23:18 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1744719798; cv=none; d=google.com; s=arc-20240605; b=H101ElY0eMgddZlhQRLJbKL4Srtl2L5qnSKAxyjQA84tlEQlE+pIiOZztM2K5v1dNC H9XSKJ4vA+Lb+DXM23xxNm3pSZ4sgdYrzXiEM/nHMUokUy5mRkR3VyxmECIwkvdM7MIZ ceZezMLsoyYieKaHCyWqeGJgFOCgL+W/LnpKkknWraxnOaiDi/MWgx77UK0A21/wP0Z+ nPJM63pTVp5hvodMwp1WwTb82F5jrcn90CKw1nLepEB9mDK32gQRo2Pmvr9oFijKeRRF CtgF/hjSMCUWgHf50nkRsOqTuHYFQkZEr8HT+c7Axl15n/ODJMWZ+m+fagjUMPDmUJEC DlpQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=feedback-id:content-transfer-encoding:mime-version:references :in-reply-to:message-id:date:subject:cc:to:from:dkim-signature; bh=nNgL1aNiqoLyRhrdsNb+fQRKSxKJo4dENX0ElcoSviw=; fh=KIkufVpSufRdX0kM67eXsuyWX/d3XYb6xMZvLts8gs4=; b=BVT+kLOwA1YlPmyydDHUdmYW4ys7WIn8jjeZloO764HKDeYQUch3FKIM4H6nXOlXL6 O4IZ3EL7ZV2zgvZ44R8gPsuKuFkWajneaeJhx2Cw2uIIYRAMuhwXG/BkuRKiOSVY4DLF gjCURug15CgLmMrx1yi3wj6q8Bxc0YSfAYoTJsO6dfjiu9606JaxrC+Wu694mbeQ01+w Ef5S6wAPQ4dsBm9YNtLE0fVBFv1uiBkR4hV9wr2zMSHFEjsiqPRjGyFo/YHCknYcG9Ub 7S+EBs0+VMNV2gFXJWfyV9C+h1IdZ25dwpabKTuobpKI+bBAdx0el/rBeQy1ZnHJHLGk 7o2g==; dara=google.com ARC-Authentication-Results: i=1; gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm2 header.b=B+dkyvjn; spf=pass (google.com: domain of fm-1328731-202504151223181973aab57411b1caaa-v16v1t@rts-flowmailer.siemens.com designates 185.136.64.225 as permitted sender) smtp.mailfrom=fm-1328731-202504151223181973aab57411b1caaa-V16V1t@rts-flowmailer.siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com Received: from mta-64-225.siemens.flowmailer.net (mta-64-225.siemens.flowmailer.net. [185.136.64.225]) by gmr-mx.google.com with ESMTPS id 5b1f17b1804b1-440518e2e81si223825e9.1.2025.04.15.05.23.18 for (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Tue, 15 Apr 2025 05:23:18 -0700 (PDT) Received-SPF: pass (google.com: domain of fm-1328731-202504151223181973aab57411b1caaa-v16v1t@rts-flowmailer.siemens.com designates 185.136.64.225 as permitted sender) client-ip=185.136.64.225; Received: by mta-64-225.siemens.flowmailer.net with ESMTPSA id 202504151223181973aab57411b1caaa for ; Tue, 15 Apr 2025 14:23:18 +0200 X-Patchwork-Original-From: "'Gokhan Cetin' via isar-users" From: Gokhan Cetin To: isar-users@googlegroups.com Cc: gokhan.cetin@siemens.com Subject: [PATCH 4/5] meta/recipes-kernel/linux-module: add option to set default signing profile and dependencies Date: Tue, 15 Apr 2025 14:22:03 +0200 Message-Id: <20250415122204.120360-5-gokhan.cetin@siemens.com> In-Reply-To: <20250415122204.120360-1-gokhan.cetin@siemens.com> References: <20250415122204.120360-1-gokhan.cetin@siemens.com> MIME-Version: 1.0 X-Flowmailer-Platform: Siemens Feedback-ID: 519:519-1328731:519-21489:flowmailer X-Original-Sender: gokhan.cetin@siemens.com X-Original-Authentication-Results: gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm2 header.b=B+dkyvjn; spf=pass (google.com: domain of fm-1328731-202504151223181973aab57411b1caaa-v16v1t@rts-flowmailer.siemens.com designates 185.136.64.225 as permitted sender) smtp.mailfrom=fm-1328731-202504151223181973aab57411b1caaa-V16V1t@rts-flowmailer.siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com X-Original-From: Gokhan Cetin Reply-To: Gokhan Cetin Precedence: list Mailing-list: list isar-users@googlegroups.com; contact isar-users+owners@googlegroups.com List-ID: X-Spam-Checked-In-Group: isar-users@googlegroups.com X-Google-Group-Id: 914930254986 List-Post: , List-Help: , List-Archive: , List-Unsubscribe: , X-Spam-Status: No, score=-4.9 required=5.0 tests=DKIMWL_WL_MED,DKIM_SIGNED, DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF,MAILING_LIST_MULTI, RCVD_IN_DNSWL_BLOCKED,RCVD_IN_MSPIKE_H2,RCVD_IN_RP_CERTIFIED, RCVD_IN_RP_RNBL,RCVD_IN_RP_SAFE,SPF_PASS autolearn=unavailable autolearn_force=no version=3.4.2 X-Spam-Checker-Version: SpamAssassin 3.4.2 (2018-09-13) on shymkent.ilbers.de X-getmail-retrieved-from-mailbox: =?utf-8?q?INBOX?= Introduces single configuration variable (`SIGNATURE_ENABLED`) to set all predefined profile and dependencies need to be provided. By using this option, downstreams will be able to sign all kernel modules without appending any additional configuration into their module recipes. Signed-off-by: Gokhan Cetin --- meta/recipes-kernel/linux-module/module.inc | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/meta/recipes-kernel/linux-module/module.inc b/meta/recipes-kernel/linux-module/module.inc index 45d88d48..576a2cad 100644 --- a/meta/recipes-kernel/linux-module/module.inc +++ b/meta/recipes-kernel/linux-module/module.inc @@ -27,6 +27,12 @@ SIGNATURE_KEYFILE ??= "/usr/share/secure-boot-secrets/secure-boot.key" SIGNATURE_CERTFILE ??= "/usr/share/secure-boot-secrets/secure-boot.pem" SIGNATURE_HASHFN ??= "sha256" SIGNATURE_SIGNWITH ??= "/usr/bin/sign-module.sh" +SIGNATURE_ENABLED ??= "" + +# Define signing profile and dependencies if SIGNATURE_ENABLED is set to "1" +DEB_BUILD_PROFILES += "${@'pkg.signwith' if bb.utils.to_boolean(d.getVar('SIGNATURE_ENABLED')) else ''}" +DEPENDS += "${@'module-signer secure-boot-secrets' if bb.utils.to_boolean(d.getVar('SIGNATURE_ENABLED')) else ''}" +DEBIAN_BUILD_DEPENDS .= "${@', module-signer, secure-boot-secrets' if bb.utils.to_boolean(d.getVar('SIGNATURE_ENABLED')) else ''}" SRC_URI += "file://debian/" From patchwork Tue Apr 15 12:22:04 2025 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Gokhan Cetin X-Patchwork-Id: 4178 Return-Path: Received: from shymkent.ilbers.de ([unix socket]) by shymkent (Cyrus 2.5.10-Debian-2.5.10-3+deb9u2) with LMTPA; Tue, 15 Apr 2025 14:23:28 +0200 X-Sieve: CMU Sieve 2.4 Received: from mail-wm1-f60.google.com (mail-wm1-f60.google.com [209.85.128.60]) by shymkent.ilbers.de (8.15.2/8.15.2/Debian-8+deb9u1) with ESMTPS id 53FCNSSD005082 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT) for ; Tue, 15 Apr 2025 14:23:28 +0200 Received: by mail-wm1-f60.google.com with SMTP id 5b1f17b1804b1-43cf446681csf35571025e9.1 for ; Tue, 15 Apr 2025 05:23:28 -0700 (PDT) ARC-Seal: i=2; a=rsa-sha256; t=1744719803; cv=pass; d=google.com; s=arc-20240605; b=FTMmRGm/pXzNmY4Yn7YQjSOpyKwmDcl9+boV9QUGcAfL8YGZgbz1LKNPb0clbZeltJ vbp1TVK4fz8iQXf4qxDdE3GllJj27imbaItACgVTP/uGTN2EJ9eCA/szYKo1G+ow+1SA 05/y1c1OC7+8ZppTa4Si4yMwuyohgqWIfK39Y3QjWOO9yh8avYNJXDNTU9E+55IxPAEY EU4Mw3JtmiSQHnrA94usZTJ6YQpm9KLyaAk74mYNCv5qk9IPYzMdmDdajkt24ILsmWn9 3CDsZRrmc2XrFJaYgBkmiG4qgGfCzTpRGo7s1DLomT5RKkWOZSpSYNExI9QpE7LsOZ2G jdbw== ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to:feedback-id:mime-version :references:in-reply-to:message-id:date:subject:cc:to:from :dkim-signature; bh=w4mHSdsXeRuXq+Ptsn4q83iDEuxta+u+UkRYj0Q35u8=; fh=YEhlSvxsqfGGrYaGNJMnPvhI75gFyIq7OzDZ8gAIv7Y=; b=c9ljkg3XpKFWNrysa3iwc625FNLmTJikE69BeUDjiM4PwIPstJBR0u9OoY7g5c06ce mz5w8p24rcsZe1edhsnKfWvmN3UxMsbWJsbUBnAcG7GJDwJWQ8Yduz2Q1luxcWdCkL/u Etg9FvpjOZtzWaH0VrXl+9hGcIKVlw3Nj074CxK7iBFGA5wlT6tuc5t0Iw3/k4zgIx+r jz00p4jmJqyL6SdgF9jWectfB4HgKWdRb2vlSagSu8UU0g30mgNt+0fbBG2em5siiUWF rY6kTRL1Nov2tA4A5Y/8TmlTof6pmQgOiVx8BqHpGadWKK/zfslwkOBD88uT0hcJWGNL F9qA==; darn=isar-build.org ARC-Authentication-Results: i=2; gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm2 header.b="WFF9c+r/"; spf=pass (google.com: domain of fm-1328731-2025041512231974e2bf5a434edf53e2-jde9xa@rts-flowmailer.siemens.com designates 185.136.64.225 as permitted sender) smtp.mailfrom=fm-1328731-2025041512231974e2bf5a434edf53e2-jDE9XA@rts-flowmailer.siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=googlegroups.com; s=20230601; t=1744719803; x=1745324603; darn=isar-build.org; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to :x-original-authentication-results:x-original-sender:feedback-id :mime-version:references:in-reply-to:message-id:date:subject:cc:to :from:from:to:cc:subject:date:message-id:reply-to; bh=w4mHSdsXeRuXq+Ptsn4q83iDEuxta+u+UkRYj0Q35u8=; b=VZ2c57gxzTtG65vKOskGJkHi8/i5TKSfQlXPIQWH8r5G7+0n9D6PIbYBo3TgLs74HJ HQ8Dml9wyYVXnU8yGR6c2+dTiwveeDJqFM3IUBl7v+21ryCGHSj8QVrIWHtMS0iGhyUp jW+GbGdYxCuMRCg8krYg2iQDFOpjlHiiqvGaNakuKD7wXo4jcMHlElQCK7zVfWFbP2bM EFEqCoUuFcBuzQbHxlUi+f5xNolLH8J2QialZSuqS7fGwmgJX9QErGcCCFzMzVU5bxEB bByWXcOhKRMJxEh6srXbZFOs3ItizgA4VsgflSXghQE0RDesKI/yWuRWpHp7Aic2bWSu kp9A== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1744719803; x=1745324603; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :x-spam-checked-in-group:list-id:mailing-list:precedence:reply-to :x-original-authentication-results:x-original-sender:feedback-id :mime-version:references:in-reply-to:message-id:date:subject:cc:to :from:x-beenthere:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=w4mHSdsXeRuXq+Ptsn4q83iDEuxta+u+UkRYj0Q35u8=; b=OQjllIIfXK6BG8gLmwbcij3n8MB7lbhlyMWo8AZMQrw0ZGxFQLGPbEo3gKsoweb5iK Wh9cmzUSB8Ay0HsYtCIftyoeQ8qZtBII3hbbEUeKDpDkhhmqjaB1yGm9sMLZd8CQqvWv xpVXGxP2IBK5oUYXRkR0DzN70U3095CoxCPJRMH5nVLfj98sP6TniNcEgjEmfTbwp6PW L8wWutPHa12SOnGCIX+4UMpvFFbiDCtKHLDwPDTXnDTkbfiFPTdstoE6HGTLs23JIKL8 p4EkhEkod/mOYpImoXkf7+wjm8lnnbGYXRYGEGEvWHdOyQrgJIpbdV+miASvsWgmki8i Pz3A== X-Forwarded-Encrypted: i=2; AJvYcCXMWC071gErqWKDzYUbgEzwguuuZ9YGL3tA7vEH33sypZJsrvkE4VrZ80ES75C0zqxeRjmluIg=@isar-build.org X-Gm-Message-State: AOJu0YzhXiwzyIP9E6AXmGIwa/aUAMscQnrAQH7Z1h+dOObjX5V91urK QMrVOZhtSWNfcZHxtiwC+ZX5TS6vaunriykcJxo/PLbJsqCFAAPo X-Google-Smtp-Source: AGHT+IEMXWvUhpdZdEmSXl87Lm4YEG6f0Jjm5Pdb3kbIleB48rr9+WITwgTYsoTKBbElJznIpoksmw== X-Received: by 2002:a05:600c:a04:b0:43d:ed:acd5 with SMTP id 5b1f17b1804b1-43f3a93d4a8mr167328085e9.10.1744719802323; Tue, 15 Apr 2025 05:23:22 -0700 (PDT) X-BeenThere: isar-users@googlegroups.com; h=ARLLPAIlXz4TyxGTLgwWNifjoY+yirewKL0X8KkDXo73f2JK9A== Received: by 2002:a05:600c:1f95:b0:43c:f19c:87b2 with SMTP id 5b1f17b1804b1-43f2c26723als21380035e9.0.-pod-prod-08-eu; Tue, 15 Apr 2025 05:23:20 -0700 (PDT) X-Received: by 2002:a05:600c:a009:b0:43c:fc04:6d34 with SMTP id 5b1f17b1804b1-43f3a9aad13mr121535145e9.20.1744719799872; Tue, 15 Apr 2025 05:23:19 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1744719799; cv=none; d=google.com; s=arc-20240605; b=bV0NbGDNuISlOfaoW5SgT+1FRy/HAh712kp7LLKfsXL42CqMH1djXRdHrSnOy2y5wp xMWSs+uFZsEaZo3E+CfeCCc+n+3u/UutrWsw7pJLSEFn/75p5/UvGvx5ZZNQVPqEjMRN ORdloFo3mWLoaNZydhasGL6ewaBwY3d3eiN51q3qPGocRdqZ1GNdo9r3/14Fa/wMOELQ z+FS/z/YsqmnpsBF/BZnb62Khct5/jlotQQrydE83YT5u093M9GZca7bJ3nCUKRodDfI 33ahJQIn8Mbkp0JHzLZ0NX3lHhbDMn07Eaf/1kmZbiVSbEpWlQRXG8hm+z9qK9eaAazY j48Q== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=feedback-id:content-transfer-encoding:mime-version:references :in-reply-to:message-id:date:subject:cc:to:from:dkim-signature; bh=oSiILfT0fe4m9woSqxxHdN07FFdJIbQUb5ovJQhrsUg=; fh=KIkufVpSufRdX0kM67eXsuyWX/d3XYb6xMZvLts8gs4=; b=Q/0W252EgE77h/rm8MDXvD/5Kbp8E4AR4h24Ykt40cbrVFyPGB+u6uR8kZR7PU349M 0pcs6dq5zbc5uJGnG6bk61hBJ4O52JdgqXQ9H9aGZKHOYnCy19GEcWI6pSTLTqXYMSlE zHjzqSf0PfqUj+c9e9lwXjxmns5IN8Zxm6CSmuJsg0W57QxUG652kzk52t6ndLc6KB/c 09A9o3IBu5sa20DjriSObPKX/H2WqUqRdHkg9Zz9Y7sUWTJghlDGJJeetNqo2AMhjQmO NS1sh3hVab4NG5W9PwsXyMD6ZE6VB7AKxIi6nXD7P0MEJcsxPttlIalSuwDDTk5ZekYl qb+A==; dara=google.com ARC-Authentication-Results: i=1; gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm2 header.b="WFF9c+r/"; spf=pass (google.com: domain of fm-1328731-2025041512231974e2bf5a434edf53e2-jde9xa@rts-flowmailer.siemens.com designates 185.136.64.225 as permitted sender) smtp.mailfrom=fm-1328731-2025041512231974e2bf5a434edf53e2-jDE9XA@rts-flowmailer.siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com Received: from mta-64-225.siemens.flowmailer.net (mta-64-225.siemens.flowmailer.net. [185.136.64.225]) by gmr-mx.google.com with ESMTPS id 5b1f17b1804b1-440518e2e81si223825e9.1.2025.04.15.05.23.19 for (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Tue, 15 Apr 2025 05:23:19 -0700 (PDT) Received-SPF: pass (google.com: domain of fm-1328731-2025041512231974e2bf5a434edf53e2-jde9xa@rts-flowmailer.siemens.com designates 185.136.64.225 as permitted sender) client-ip=185.136.64.225; Received: by mta-64-225.siemens.flowmailer.net with ESMTPSA id 2025041512231974e2bf5a434edf53e2 for ; Tue, 15 Apr 2025 14:23:19 +0200 X-Patchwork-Original-From: "'Gokhan Cetin' via isar-users" From: Gokhan Cetin To: isar-users@googlegroups.com Cc: gokhan.cetin@siemens.com Subject: [PATCH 5/5] doc/user_manual: describe module signer and certificate provider configuration Date: Tue, 15 Apr 2025 14:22:04 +0200 Message-Id: <20250415122204.120360-6-gokhan.cetin@siemens.com> In-Reply-To: <20250415122204.120360-1-gokhan.cetin@siemens.com> References: <20250415122204.120360-1-gokhan.cetin@siemens.com> MIME-Version: 1.0 X-Flowmailer-Platform: Siemens Feedback-ID: 519:519-1328731:519-21489:flowmailer X-Original-Sender: gokhan.cetin@siemens.com X-Original-Authentication-Results: gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm2 header.b="WFF9c+r/"; spf=pass (google.com: domain of fm-1328731-2025041512231974e2bf5a434edf53e2-jde9xa@rts-flowmailer.siemens.com designates 185.136.64.225 as permitted sender) smtp.mailfrom=fm-1328731-2025041512231974e2bf5a434edf53e2-jDE9XA@rts-flowmailer.siemens.com; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=siemens.com X-Original-From: Gokhan Cetin Reply-To: Gokhan Cetin Precedence: list Mailing-list: list isar-users@googlegroups.com; contact isar-users+owners@googlegroups.com List-ID: X-Spam-Checked-In-Group: isar-users@googlegroups.com X-Google-Group-Id: 914930254986 List-Post: , List-Help: , List-Archive: , List-Unsubscribe: , X-Spam-Status: No, score=-4.9 required=5.0 tests=DKIMWL_WL_MED,DKIM_SIGNED, DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF,MAILING_LIST_MULTI, RCVD_IN_DNSWL_BLOCKED,RCVD_IN_MSPIKE_H2,RCVD_IN_RP_CERTIFIED, RCVD_IN_RP_RNBL,RCVD_IN_RP_SAFE,SPF_PASS autolearn=unavailable autolearn_force=no version=3.4.2 X-Spam-Checker-Version: SpamAssassin 3.4.2 (2018-09-13) on shymkent.ilbers.de X-getmail-retrieved-from-mailbox: =?utf-8?q?INBOX?= Mentions how `SIGNATURE_ENABLED` can be used and how to manage the dependencies. Signed-off-by: Gokhan Cetin --- doc/user_manual.md | 8 ++++++++ 1 file changed, 8 insertions(+) diff --git a/doc/user_manual.md b/doc/user_manual.md index d8e5c33e..50d98f85 100644 --- a/doc/user_manual.md +++ b/doc/user_manual.md @@ -1162,9 +1162,17 @@ To provide a signer script that implements your custom signing solution, `SIGNAT can be set for the script path within the module recipe together with `SIGNATURE_CERTFILE` to define the public certificate path of the signer. +In order to easily choose between different signing solutions, signer recipes should provide the `module-signer` +and certificate provider recipes should provide the `secure-boot-secrets` as virtual package to meet build dependencies. +This way, desired signers and certificates can be configured using `PREFERRED_PROVIDER`. + Please see how `module-signer-example` hook generates a detached signature for the kernel module implemented in `example-module-signedwith` recipe. +In order not to cause repetitive changes in kernel module recipes, +if `SIGNATURE_ENABLED = "1"`, `pkg.signwith` build profile is added by default in addition to +`module-signer` and `secure-boot-secrets` package dependencies to the kernel module recipes. + ### Cross Support for Imagers If `ISAR_CROSS_COMPILE = "1"`, the imager and optional compression tasks