Bug 46325 - Boot via UEFI-SecureBoot
Boot via UEFI-SecureBoot
Status: CLOSED FIXED
Product: UCS
Classification: Unclassified
Component: Kernel
UCS 4.3
Other Linux
: P5 enhancement (vote)
: UCS 4.3
Assigned To: Philipp Hahn
Stefan Gohmann
: interim-3
Depends on: 45961 46342
Blocks:
  Show dependency treegraph
 
Reported: 2018-02-17 11:39 CET by Philipp Hahn
Modified: 2018-03-14 14:38 CET (History)
0 users

See Also:
What kind of report is it?: Feature Request
What type of bug is this?: ---
Who will be affected by this bug?: ---
How will those affected feel about the bug?: ---
User Pain:
Enterprise Customer affected?:
School Customer affected?:
ISV affected?:
Waiting Support:
Flags outvoted (downgraded) after PO Review:
Ticket number:
Bug group (optional):
Max CVSS v3 score:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Philipp Hahn univentionstaff 2018-02-17 11:39:18 CET
[ ] MUST: recompile grub-efi-amd64-signed for newer grub
[ ] MAY: recompile Debian-Kernel for UEFI only with signinng
[ ] MAY: update shim (Bug #45471)
Comment 1 Philipp Hahn univentionstaff 2018-02-20 16:26:40 CET
c84865b04b Bug #46325 shim: Adapt to new GRUB
d120e8ccd0 Bug #46325 shim: Copyright 2018
28d9db8bd3 Bug #46325 shim: Fix naming

Package: shim-signed
Version: 2.0.0-1A~4.3.0.201802201552
Version: 2.0.0-1A~4.3.0.201802201615
Version: 2.0.0-1A~4.3.0.201802201624
Branch: ucs_4.3-0

FYI: shim has a useless runtime dependency on "gnu-efi" - it's only needed for building.
Comment 2 Philipp Hahn univentionstaff 2018-03-02 15:23:00 CET
> [DONE] MUST: recompile grub-efi-amd64-signed for newer grub

[4.3-0] 28d9db8bd3 Bug #46325 shim: Fix naming
[4.3-0] c84865b04b Bug #46325 shim: Adapt to new GRUB
[4.3-0] d120e8ccd0 Bug #46325 shim: Copyright 2018
[4.3-0] 68c0377fce Bug #46325 grub: Fix version parsing
[4.3-0] e2f42ba9c1 Bug #46325 grub: Copyright 2018
[4.3-0] 908cd40c6a Bug #46325 grub: Copyright 2018
[4.3-0] 68fd161111 Bug #46325 grub: Rebuild signed grub2

Package: grub-efi-amd64-signed
Version: 2.0.0-1A~4.3.0.201802201526
Branch: ucs_4.3-0

> [DONE] MAY: recompile Debian-Kernel for UEFI only with signinng

I have signed Debian's linux-image-4.9.0-6-amd64: Bug #45961

> [NOT-NEEDED] MAY: update shim (Bug #45471)


OK: See Bug #45961 comment 11 for my QA
Comment 3 Stefan Gohmann univentionstaff 2018-03-02 16:26:49 CET
Verified, see Bug Bug #45961
Comment 4 Stefan Gohmann univentionstaff 2018-03-14 14:38:48 CET
UCS 4.3 has been released:
 https://docs.software-univention.de/release-notes-4.3-0-en.html
 https://docs.software-univention.de/release-notes-4.3-0-de.html

If this error occurs again, please use "Clone This Bug".