From mboxrd@z Thu Jan 1 00:00:00 1970 X-GM-THRID: 7180261367669063680 X-Received: by 2002:a05:6512:370e:b0:4b5:8719:6095 with SMTP id z14-20020a056512370e00b004b587196095mr982649lfr.636.1671784910872; Fri, 23 Dec 2022 00:41:50 -0800 (PST) X-BeenThere: isar-users@googlegroups.com Received: by 2002:ac2:4e8a:0:b0:4c8:8384:83f3 with SMTP id o10-20020ac24e8a000000b004c8838483f3ls127164lfr.3.-pod-prod-gmail; Fri, 23 Dec 2022 00:41:49 -0800 (PST) X-Google-Smtp-Source: AMrXdXuIo0P+x49G8FeplU16yWCRAaqoC2Mq+npgoaFy6NpUpFh1glfMG8P4AEj7LFlLLQgga0Bx X-Received: by 2002:ac2:5318:0:b0:4b5:7720:5fe4 with SMTP id c24-20020ac25318000000b004b577205fe4mr2726154lfh.67.1671784909538; Fri, 23 Dec 2022 00:41:49 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1671784909; cv=none; d=google.com; s=arc-20160816; b=0AfoNHGQk3gY58ZrfxJJXaR1Su7cX7v0K0kDCPLa0Hs6JfhBwouaG2UC6b77UfZRfp 82h90y2PdhTSI4UPxJumgj9JNAYmin00xlQ+LRYK9Q1IwvV3xqvVpEQr5zjzaMwuiRu1 eJYNzV0vu9BwyftCSat5r5g7cFUA4a0eDP1BDJ1L5+HV0OtXYycPqjG0vk1z/TFGL3p8 EuDAorBLYJClf71r+a1JwtZLgg+yjBayrbkj4Ra8OrOcS4ogKoPmifgLjf8PSFJ3e/vD cy6KJMSQlTNVLtVhlhEvT84zSzj6CXtl2OUG21Gj27cfbRdBBOQAGV+LRt4/BJ8MspDF vRyQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=feedback-id:content-transfer-encoding:mime-version:references :in-reply-to:message-id:date:subject:cc:to:from:dkim-signature; bh=/Qs30OCByWCr+0NqeeW0T7pUm+XZbamZUymj2uG13vM=; b=HZse8zhCYQBqdGq52+IdWqnTEdr1FVNFeokdPhHwI52UO2C38lkw4iqE/S+JGPAihA G2ZskOezeoiaBjs+rdf5gQNc7BPKfgMwP3+vzXh4Tf4ZPGu7kgFHoAMx6L0j9OxWyxV6 4P2rh3O9W0YALCS8uLRwLyXzAnuVMrKQKSH5HV740ZqlBr92ByDwbr3vjxlzLCJNl++5 NHzvqy3LLLF0B2Qjk1JeiS1O4iXoMX0Gw9nAFW/r7yp8c9e5nsH3y28tBLPzm5jRgM9V OU6/mOIGzGf3BY+/QLbcJcGdcm92FXG2/XSn50lJtBw/nA6lTzh9N8CjLiPux5nobwEs LKHw== ARC-Authentication-Results: i=1; gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm1 header.b=bPWnVBqL; spf=pass (google.com: domain of fm-72506-202212230841497a0fb9567c2020e626-dzezct@rts-flowmailer.siemens.com designates 185.136.64.227 as permitted sender) smtp.mailfrom=fm-72506-202212230841497a0fb9567c2020e626-dZEZCt@rts-flowmailer.siemens.com; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=siemens.com Return-Path: Received: from mta-64-227.siemens.flowmailer.net (mta-64-227.siemens.flowmailer.net. [185.136.64.227]) by gmr-mx.google.com with ESMTPS id s4-20020a056512202400b004abdb5d1128si136461lfs.2.2022.12.23.00.41.49 for (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Fri, 23 Dec 2022 00:41:49 -0800 (PST) Received-SPF: pass (google.com: domain of fm-72506-202212230841497a0fb9567c2020e626-dzezct@rts-flowmailer.siemens.com designates 185.136.64.227 as permitted sender) client-ip=185.136.64.227; Authentication-Results: gmr-mx.google.com; dkim=pass header.i=@siemens.com header.s=fm1 header.b=bPWnVBqL; spf=pass (google.com: domain of fm-72506-202212230841497a0fb9567c2020e626-dzezct@rts-flowmailer.siemens.com designates 185.136.64.227 as permitted sender) smtp.mailfrom=fm-72506-202212230841497a0fb9567c2020e626-dZEZCt@rts-flowmailer.siemens.com; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=siemens.com Received: by mta-64-227.siemens.flowmailer.net with ESMTPSA id 202212230841497a0fb9567c2020e626 for ; Fri, 23 Dec 2022 09:41:49 +0100 DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; s=fm1; d=siemens.com; i=felix.moessbauer@siemens.com; h=Date:From:Subject:To:Message-ID:MIME-Version:Content-Type:Content-Transfer-Encoding:Cc:References:In-Reply-To; bh=/Qs30OCByWCr+0NqeeW0T7pUm+XZbamZUymj2uG13vM=; b=bPWnVBqLXSsd9GI0nuMN+HaPjjYo2XnHjlw+If60JvovHN/6XgWhFqOKC0FknNQ2Y3/ivk syq0z4wn+1mV7TddGsX5Bgs/ZJhkmIO7irRI8WqsE/4BOXCeKRo5XnGjbs6+SxWp5EAhr7Ue hfNAoFqXVZCFyX6YQ4rivC14VpvpI=; From: Felix Moessbauer To: isar-users@googlegroups.com Cc: tobias.preclik@siemens.com, christian.storm@siemens.com, Felix Moessbauer Subject: [PATCH 07/10] add signed variant of example-module Date: Fri, 23 Dec 2022 08:40:55 +0000 Message-Id: <20221223084058.1899957-8-felix.moessbauer@siemens.com> In-Reply-To: <20221223084058.1899957-1-felix.moessbauer@siemens.com> References: <20221223084058.1899957-1-felix.moessbauer@siemens.com> MIME-Version: 1.0 Content-Transfer-Encoding: 8bit X-Flowmailer-Platform: Siemens Feedback-ID: 519:519-72506:519-21489:flowmailer X-TUID: z4FG5P7otdJs This patch adds an example how to use the sb-mok-* recipes to create a signed out-of-tree kernel module. Signed-off-by: Felix Moessbauer --- .../example-module/example-module-signed.bb | 14 ++++++++++++++ 1 file changed, 14 insertions(+) create mode 100644 meta-isar/recipes-kernel/example-module/example-module-signed.bb diff --git a/meta-isar/recipes-kernel/example-module/example-module-signed.bb b/meta-isar/recipes-kernel/example-module/example-module-signed.bb new file mode 100644 index 0000000..45f114b --- /dev/null +++ b/meta-isar/recipes-kernel/example-module/example-module-signed.bb @@ -0,0 +1,14 @@ +# Example recipe for building a custom module +# +# This software is a part of ISAR. +# Copyright (c) Siemens AG, 2022 +# +# SPDX-License-Identifier: MIT + +require example-module.bb + +DEPENDS += "sb-mok-keys" +DEBIAN_BUILD_DEPENDS .= ', sb-mok-keys' +DEB_BUILD_PROFILES += 'pkg.sign' +SIGNATURE_KEYFILE = '/etc/sb-mok-keys/MOK/MOK.priv' +SIGNATURE_CERTFILE = '/etc/sb-mok-keys/MOK/MOK.der' -- 2.34.1