Unifies secure and non-secure swupdate variants further by using a read-only rootfs in both cases. See patchs for more details.
Applies on top of "SWUpdate & EFI Boot Guard refactorings".
Jan
Jan Kiszka (5): squashfs-img: Cosmetic cleanups verity-img: Inherit the source image type class directly swupdate: Make rootfs read-only also in non-secure setup Restrict OVMF to qemu-amd64 machine wic: Drop redundant / misleading --ondisk sda parameters