Update config: add both secure boot certs, pesign name, Source replace

This commit is contained in:
Andrew Lukoshko 2026-03-08 23:30:53 +00:00
parent a0c853c792
commit 01afba4f40

View File

@ -13,7 +13,6 @@ actions:
SHA512 (shimaa64.efi) = 8ded3a96b6b02afb39e5df829913c1536afb1e711239f5f58620d4dec622a722725cdd8764830da0a93acce7f9741f6e9235a67254da12e240dc3ff032c536fb
SHA512 (shimx64.efi) = b4dc7ff94feec631d63e496b72d9ea333179204407ba91399d7c5e2c762172a3ab91001604727641ac5b0eaf79fa350d981b05c101c523897987e12b494b03cd
replace: |
SHA512 (almalinuxsecurebootca0.cer) = 9190a7d5808d3f4181f0f868d07ba83368357a02970f40594e5ec880d33771d890c69f1dfd4ce6c2bc92e6e14217be1aebf7ecc045e6603032b50e33228763ae
SHA512 (BOOTAA64.CSV) = 2dfc78bee3d6e7f27cab8037ace24b9d62d2b3e5056751a32259d997fbaba5ef6015d6c50c842f29e2a31b94c3dc63476fb61803b25f504255c32c04a5a8255c
SHA512 (BOOTIA32.CSV) = b1b84e9377cea35ed32b034f8258b460105f47159b393265d2346fc16ee02bdfa6af482559670445c6c0ac808e928a1a0ca51731d5367fc14302282fa5ae5dc2
SHA512 (BOOTX64.CSV) = 6566d163836a0da9caa31a14b41178a2cf82f96a751a3eff87dcdc0a40b1521b27b35bf7a1d5774e00f605e569f5be1a6baff7e00e3a93f5d6ca3844188034d3
@ -69,13 +68,19 @@ actions:
find: |
Source1: centossecureboot201.cer
Source2: centossecurebootca2.cer
replace: "Source1: almalinuxsecurebootca0.cer"
- target: ".gitignore"
find: |
shimx64.efi
replace: |
shimx64.efi
SOURCES/almalinuxsecurebootca0.cer
Source1: almalinuxsecureboot0.cer
Source2: almalinuxsecurebootca0.cer
- target: "shim.rpmmacros"
find: "-n centossecureboot201 -a %{SOURCE2} -c %{SOURCE1}"
replace: "-n almalinuxsecureboot0 -a %{SOURCE2} -c %{SOURCE1}"
count: 1
- delete_line:
- target: ".gitignore"
lines:
- "centossecureboot201.cer"
- "centossecurebootca2.cer"
- modify_release:
- suffix: ".alma.1"
@ -87,3 +92,11 @@ actions:
line:
- "Add SB for aarch64"
- "AlmaLinux changes"
- add_files:
- type: "source"
name: "almalinuxsecurebootca0.cer"
number: 2
- type: "source"
name: "almalinuxsecureboot0.cer"
number: 1