|
[isar-cip-core PATCH 1/6] opt-security.yml: Sample settings to install security
From: Kazuhiro Hayashi kazuhiro3.hayashi@...
opt-security.yml: Sample settings to install security
packages
Signed-off-by: Kazuhiro Hayashi <kazuhiro3.hayashi@...>
---
SECURITY.md | 52
From: Kazuhiro Hayashi kazuhiro3.hayashi@...
opt-security.yml: Sample settings to install security
packages
Signed-off-by: Kazuhiro Hayashi <kazuhiro3.hayashi@...>
---
SECURITY.md | 52
|
By
Venkata Pyla
·
#4832
·
|
|
Re: [isar-cip-core PATCH 1/2] update ISAR
Applied to next.
Thanks,
Jan
--
Siemens AG, Corporate Technology, CT RDA IOT SES-DE
Corporate Competence Center Embedded Linux
Applied to next.
Thanks,
Jan
--
Siemens AG, Corporate Technology, CT RDA IOT SES-DE
Corporate Competence Center Embedded Linux
|
By
Jan Kiszka
·
#4831
·
|
|
Re: [isar-cip-core PATCH 2/2] kas: Restructure kas files.
There is one catch with moving everything into a subdirectory: If a user pulls a tarball of the layer, thus tries to use it with git, kas will not be able to identify the top-level directory, and
There is one catch with moving everything into a subdirectory: If a user pulls a tarball of the layer, thus tries to use it with git, kas will not be able to identify the top-level directory, and
|
By
Jan Kiszka
·
#4830
·
|
|
[isar-cip-core RFC 7/7] doc: Add README for secureboot
From: Quirin Gylstorff <quirin.gylstorff@...>
Signed-off-by: Quirin Gylstorff <quirin.gylstorff@...>
---
doc/README.secureboot.md | 188 +++++++++++++++++++++++++++++++++++++++
From: Quirin Gylstorff <quirin.gylstorff@...>
Signed-off-by: Quirin Gylstorff <quirin.gylstorff@...>
---
doc/README.secureboot.md | 188 +++++++++++++++++++++++++++++++++++++++
|
By
Quirin Gylstorff
·
#4829
·
|
|
[isar-cip-core RFC 6/7] swupdate: Add luahandler for secureboot
From: Quirin Gylstorff <quirin.gylstorff@...>
Signed-off-by: Quirin Gylstorff <quirin.gylstorff@...>
---
recipes-core/swupdate/files/swupdate_handlers.lua | 8 ++++++--
1 file
From: Quirin Gylstorff <quirin.gylstorff@...>
Signed-off-by: Quirin Gylstorff <quirin.gylstorff@...>
---
recipes-core/swupdate/files/swupdate_handlers.lua | 8 ++++++--
1 file
|
By
Quirin Gylstorff
·
#4828
·
|
|
[isar-cip-core RFC 4/7] secure-boot: Add secure boot with unified kernel image
From: Quirin Gylstorff <quirin.gylstorff@...>
A unified kernel image contains the os-release, kernel,
kernel commandline, initramfs and efi-stub in one binary.
This binary can be boot by
From: Quirin Gylstorff <quirin.gylstorff@...>
A unified kernel image contains the os-release, kernel,
kernel commandline, initramfs and efi-stub in one binary.
This binary can be boot by
|
By
Quirin Gylstorff
·
#4827
·
|
|
[isar-cip-core RFC 5/7] secure-boot: Add Debian snakeoil keys for ease-of-use
From: Quirin Gylstorff <quirin.gylstorff@...>
Use the Debian snakeoil keys to have a demo case available without
the OVMF setup. Copy the used keys from the build to the deploy
directory to
From: Quirin Gylstorff <quirin.gylstorff@...>
Use the Debian snakeoil keys to have a demo case available without
the OVMF setup. Copy the used keys from the build to the deploy
directory to
|
By
Quirin Gylstorff
·
#4826
·
|
|
[isar-cip-core RFC 2/7] isar-patch: Add initramfs-config patch
From: Quirin Gylstorff <quirin.gylstorff@...>
Adapt the initramfs generation to set for example the root device
in the initramfs
Signed-off-by: Quirin Gylstorff
From: Quirin Gylstorff <quirin.gylstorff@...>
Adapt the initramfs generation to set for example the root device
in the initramfs
Signed-off-by: Quirin Gylstorff
|
By
Quirin Gylstorff
·
#4825
·
|
|
[isar-cip-core RFC 0/7] secureboot with efibootguard
From: Quirin Gylstorff <quirin.gylstorff@...>
This patchset adds secureboot with efibootguard to cip-core.
The image build signs the efibootguard bootloader (bootx64.efi) and generates
a
From: Quirin Gylstorff <quirin.gylstorff@...>
This patchset adds secureboot with efibootguard to cip-core.
The image build signs the efibootguard bootloader (bootx64.efi) and generates
a
|
By
Quirin Gylstorff
·
#4824
·
|
|
[isar-cip-core RFC 1/7] kernel: add fat for qemu-amd64
From: Quirin Gylstorff <quirin.gylstorff@...>
Add a fat configuration to access FAT Partitions on the qemu-amd64
target.
Signed-off-by: Quirin Gylstorff <quirin.gylstorff@...>
---
From: Quirin Gylstorff <quirin.gylstorff@...>
Add a fat configuration to access FAT Partitions on the qemu-amd64
target.
Signed-off-by: Quirin Gylstorff <quirin.gylstorff@...>
---
|
By
Quirin Gylstorff
·
#4823
·
|
|
[isar-cip-core RFC 3/7] secure-boot: select boot partition in initramfs
From: Quirin Gylstorff <quirin.gylstorff@...>
As the usage of a unified kernel image freeze the kernel commmandline
during build time the rootfs selection for swupdate can no longer be
done
From: Quirin Gylstorff <quirin.gylstorff@...>
As the usage of a unified kernel image freeze the kernel commmandline
during build time the rootfs selection for swupdate can no longer be
done
|
By
Quirin Gylstorff
·
#4822
·
|
|
[cip-kernel-config PATCH] ipc227e: Add missing options to mount fat
From: Quirin Gylstorff <quirin.gylstorff@...>
To install a swupdate package into a system with a A/B partition
scheme and EFI it is necessary to access a FAT partition.
Signed-off-by: Quirin
From: Quirin Gylstorff <quirin.gylstorff@...>
To install a swupdate package into a system with a A/B partition
scheme and EFI it is necessary to access a FAT partition.
Signed-off-by: Quirin
|
By
Quirin Gylstorff
·
#4821
·
|
|
[isar-cip-core RFC 4/4] wic: Add wks files for A/B Partition update
From: Quirin Gylstorff <quirin.gylstorff@...>
Add wks for:
- simatic-ipc227e
- qemu-amd64
Signed-off-by: Quirin Gylstorff <quirin.gylstorff@...>
---
kas/opt/ebg-swu.yml
From: Quirin Gylstorff <quirin.gylstorff@...>
Add wks for:
- simatic-ipc227e
- qemu-amd64
Signed-off-by: Quirin Gylstorff <quirin.gylstorff@...>
---
kas/opt/ebg-swu.yml
|
By
Quirin Gylstorff
·
#4820
·
|
|
[isar-cip-core RFC 3/4] recipes-core: add swupdate
From: Quirin Gylstorff <quirin.gylstorff@...>
Add swupdate for A/B software updates. Currently the Round Robin
handler in lua supports efibootguard as bootloader. The u-boot
implementation is
From: Quirin Gylstorff <quirin.gylstorff@...>
Add swupdate for A/B software updates. Currently the Round Robin
handler in lua supports efibootguard as bootloader. The u-boot
implementation is
|
By
Quirin Gylstorff
·
#4819
·
|
|
[isar-cip-core RFC 2/4] patches: add libubootenv
From: Quirin Gylstorff <quirin.gylstorff@...>
swupdate 2020.04 requires libubootenv as build dependency.
libubootenv is a library that provides a hardware independent
way to access to U-Boot
From: Quirin Gylstorff <quirin.gylstorff@...>
swupdate 2020.04 requires libubootenv as build dependency.
libubootenv is a library that provides a hardware independent
way to access to U-Boot
|
By
Quirin Gylstorff
·
#4818
·
|
|
[isar-cip-core RFC 1/4] recipes-bsp: Add efibootguard
From: Quirin Gylstorff <quirin.gylstorff@...>
Add the bootloader efibootguard for A/B partition update
on x86 with EFI.
Signed-off-by: Quirin Gylstorff <quirin.gylstorff@...>
---
From: Quirin Gylstorff <quirin.gylstorff@...>
Add the bootloader efibootguard for A/B partition update
on x86 with EFI.
Signed-off-by: Quirin Gylstorff <quirin.gylstorff@...>
---
|
By
Quirin Gylstorff
·
#4817
·
|
|
[isar-cip-core RFC 0/4] A/B Rootfs update with software update
From: Quirin Gylstorff <quirin.gylstorff@...>
This patchset adds efibootguard, swupdate to allow A/B updates in
cip-core. The update mechanism is currently only implemented for
From: Quirin Gylstorff <quirin.gylstorff@...>
This patchset adds efibootguard, swupdate to allow A/B updates in
cip-core. The update mechanism is currently only implemented for
|
By
Quirin Gylstorff
·
#4816
·
|
|
[isar-cip-core PATCH 1/2] update ISAR
From: Quirin Gylstorff <quirin.gylstorff@...>
Signed-off-by: Quirin Gylstorff <quirin.gylstorff@...>
---
conf/machine/hihope-rzg2m.conf | 4 +-
From: Quirin Gylstorff <quirin.gylstorff@...>
Signed-off-by: Quirin Gylstorff <quirin.gylstorff@...>
---
conf/machine/hihope-rzg2m.conf | 4 +-
|
By
Quirin Gylstorff
·
#4815
·
|
|
[isar-cip-core PATCH 0/2] Cleanup
From: Quirin Gylstorff <quirin.gylstorff@...>
Move kas related files into folder kas for a cleaner repository root.
Update isar to remove patches folder for now
Quirin Gylstorff (2):
From: Quirin Gylstorff <quirin.gylstorff@...>
Move kas related files into folder kas for a cleaner repository root.
Update isar to remove patches folder for now
Quirin Gylstorff (2):
|
By
Quirin Gylstorff
·
#4814
·
|
|
[isar-cip-core PATCH 2/2] kas: Restructure kas files.
From: Quirin Gylstorff <quirin.gylstorff@...>
Create folder structure
kas -> general configuration
kas/board -> all supported boards
kas/opt -> all kas option files
Signed-off-by: Quirin
From: Quirin Gylstorff <quirin.gylstorff@...>
Create folder structure
kas -> general configuration
kas/board -> all supported boards
kas/opt -> all kas option files
Signed-off-by: Quirin
|
By
Quirin Gylstorff
·
#4813
·
|