forked from rpms/kernel
		
	 The Linux kernel 
			
		
		| Lo! Consider applying below patch for rawhide and the stabilization
branch. It fixes a build problem in mock on %{ix86} x86_64 when setting
%signmodules to 0 in kernel.spec. The build fails because Linux since
4.3-rc1 needs openssl and openssl-devel when CONFIG_MODULE_SIG is set,
which is the done by config-x86-generic in Fedora. CU, thl | ||
|---|---|---|
| scripts | ||
| .gitignore | ||
| acpi-Ignore-acpi_rsdp-kernel-parameter-when-module-l.patch | ||
| ACPI-Limit-access-to-custom_method.patch | ||
| Add-an-EFI-signature-blob-parser-and-key-loader.patch | ||
| Add-EFI-signature-data-types.patch | ||
| Add-option-to-automatically-enforce-module-signature.patch | ||
| Add-secure_modules-call.patch | ||
| Add-sysrq-option-to-disable-secure-boot-mode.patch | ||
| alua_fix.patch | ||
| amd-xgbe-a0-Add-support-for-XGBE-on-A0.patch | ||
| amd-xgbe-phy-a0-Add-support-for-XGBE-PHY-on-A0.patch | ||
| arm64-acpi-drop-expert-patch.patch | ||
| arm64-avoid-needing-console-to-enable-serial-console.patch | ||
| arm-i.MX6-Utilite-device-dtb.patch | ||
| ARM-tegra-usb-no-reset.patch | ||
| asus-wmi-Restrict-debugfs-interface-when-module-load.patch | ||
| ath9k-rx-dma-stop-check.patch | ||
| config-arm64 | ||
| config-arm-generic | ||
| config-armv7 | ||
| config-armv7-generic | ||
| config-armv7-lpae | ||
| config-debug | ||
| config-generic | ||
| config-i686-PAE | ||
| config-local | ||
| config-no-extra | ||
| config-nodebug | ||
| config-powerpc64 | ||
| config-powerpc64-generic | ||
| config-powerpc64le | ||
| config-powerpc64p7 | ||
| config-s390x | ||
| config-x86_64-generic | ||
| config-x86-32-generic | ||
| config-x86-generic | ||
| cpupower.config | ||
| cpupower.service | ||
| crash-driver.patch | ||
| criu-no-expert.patch | ||
| die-floppy-die.patch | ||
| disable-i8042-check-on-apple-mac.patch | ||
| drm-i915-hush-check-crtc-state.patch | ||
| drm-i915-turn-off-wc-mmaps.patch | ||
| efi-Add-EFI_SECURE_BOOT-bit.patch | ||
| efi-Disable-secure-boot-if-shim-is-in-insecure-mode.patch | ||
| efi-Make-EFI_SECURE_BOOT_SIG_ENFORCE-depend-on-EFI.patch | ||
| filter-aarch64.sh | ||
| filter-armv7hl.sh | ||
| filter-i686.sh | ||
| filter-modules.sh | ||
| filter-ppc64.sh | ||
| filter-ppc64le.sh | ||
| filter-ppc64p7.sh | ||
| filter-s390x.sh | ||
| filter-x86_64.sh | ||
| firmware-Drop-WARN-from-usermodehelper_read_trylock-.patch | ||
| gitrev | ||
| hibernate-Disable-in-a-signed-modules-environment.patch | ||
| HID-multitouch-enable-palm-rejection-if-device-imple.patch | ||
| ideapad-laptop-Add-Lenovo-ideapad-Y700-17ISK-to-no_h.patch | ||
| Input-aiptek-fix-crash-on-detecting-device-without-e.patch | ||
| input-kill-stupid-messages.patch | ||
| Input-synaptics-pin-3-touches-when-the-firmware-repo.patch | ||
| Kbuild-Add-an-option-to-enable-GCC-VTA.patch | ||
| kbuild-AFTER_LINK.patch | ||
| kernel.spec | ||
| kexec-Disable-at-runtime-if-the-kernel-enforces-modu.patch | ||
| kexec-uefi-copy-secure_boot-flag-in-boot-params.patch | ||
| KEYS-Add-a-system-blacklist-keyring.patch | ||
| KEYS-Fix-race-between-read-and-revoke.patch | ||
| lib-cpumask-Make-CPUMASK_OFFSTACK-usable-without-deb.patch | ||
| lis3-improve-handling-of-null-rate.patch | ||
| Makefile | ||
| Makefile.config | ||
| Makefile.release | ||
| merge.pl | ||
| mfd-wm8994-Ensure-that-the-whole-MFD-is-built-into-a.patch | ||
| mod-extra.list | ||
| mod-extra.sh | ||
| mod-sign.sh | ||
| MODSIGN-Import-certificates-from-UEFI-Secure-Boot.patch | ||
| MODSIGN-Support-not-importing-certs-from-db.patch | ||
| no-pcspkr-modalias.patch | ||
| PatchList.txt | ||
| PCI-Lock-down-BAR-access-when-module-security-is-ena.patch | ||
| README.txt | ||
| rebase-notes.txt | ||
| Restrict-dev-mem-and-dev-kmem-when-module-loading-is.patch | ||
| scsi-sd_revalidate_disk-prevent-NULL-ptr-deref.patch | ||
| silence-fbcon-logo.patch | ||
| sources | ||
| TODO | ||
| usbvision-fix-crash-on-detecting-device-with-invalid.patch | ||
| watchdog-Disable-watchdog-on-virtual-machines.patch | ||
| x86-Lock-down-IO-port-access-when-module-security-is.patch | ||
| x86-Restrict-MSR-access-when-module-loading-is-restr.patch | ||
| x509.genkey | ||
| xen-pciback-Don-t-disable-PCI_COMMAND-on-PCI-device-.patch | ||
		Kernel package tips & tricks.
		~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
The kernel is one of the more complicated packages in the distro, and
for the newcomer, some of the voodoo in the spec file can be somewhat scary.
This file attempts to document some of the magic.
Speeding up make prep
---------------------
The kernel is nearly 500MB of source code, and as such, 'make prep'
takes a while. The spec file employs some trickery so that repeated
invocations of make prep don't take as long.  Ordinarily the %prep
phase of a package will delete the tree it is about to untar/patch.
The kernel %prep keeps around an unpatched version of the tree,
and makes a symlink tree clone of that clean tree and than applies
the patches listed in the spec to the symlink tree.
This makes a huge difference if you're doing multiple make preps a day.
As an added bonus, doing a diff between the clean tree and the symlink
tree is slightly faster than it would be doing two proper copies of the tree.
build logs.
-----------
There's a convenience helper script in scripts/grab-logs.sh
that will grab the build logs from koji for the kernel version reported
by make verrel
config heirarchy.
-----------------
Instead of having to maintain a config file for every arch variant we build on,
the kernel spec uses a nested system of configs.  At the top level, is
config-generic. Add options here that should be present in every possible
config on all architectures.
Beneath this are per-arch overrides. For example config-x86-generic add
additional x86 specific options, and also _override_ any options that were
set in config-generic.
The heirarchy looks like this..
                           config-generic
                                 |
                         config-x86-generic
                         |                |
             config-x86-32-generic   config-x86-64-generic
An option set in a lower level will override the same option set in one
of the higher levels.
There exist two additional overrides, config-debug, and config-nodebug,
which override -generic, and the per-arch overrides. It is documented
further below.
debug options.
--------------
This is a little complicated, as the purpose & meaning of this changes
depending on where we are in the release cycle.
If we are building for a current stable release, 'make release' has
typically been run already, which sets up the following..
- Two builds occur, a 'kernel' and a 'kernel-debug' flavor.
- kernel-debug will get various heavyweight debugging options like
  lockdep etc turned on.
If we are building for rawhide, 'make debug' has been run, which changes
the status quo to:
- We only build one kernel 'kernel'
- The debug options from 'config-debug' are always turned on.
This is done to increase coverage testing, as not many people actually
run kernel-debug.
To add new debug options, add an option to _both_ config-debug and config-nodebug,
and also new stanzas to the Makefile 'debug' and 'release' targets.
Sometimes debug options get added to config-generic, or per-arch overrides
instead of config-[no]debug. In this instance, the options should have no
discernable performance impact, otherwise they belong in the debug files.