AlmaLinux change: Use AlmaLinux SB

This commit is contained in:
eabdullin 2024-12-10 10:22:14 +03:00
parent 95898103fc
commit 04c036d040
6 changed files with 13 additions and 9 deletions

BIN
almalinuxsecurebootca0.cer Normal file

Binary file not shown.

View File

@ -1,3 +1,7 @@
%global efi_vendor almalinux
%global efidir almalinux
%global efi_esp_dir /boot/efi/EFI/%{efidir}
%global debug_package %{nil}
Summary: Firmware update EFI binaries
@ -8,10 +12,10 @@ License: LGPL-2.1-or-later
URL: https://github.com/fwupd/fwupd-efi
Source0: https://github.com/fwupd/fwupd-efi/releases/download/%{version}/%{name}-%{version}.tar.xz
Source300: redhatsecurebootca3.cer
Source301: redhatsecureboot301.cer
Source500: redhatsecurebootca5.cer
Source503: redhatsecureboot503.cer
Source300: almalinuxsecurebootca0.cer
Source301: almalinuxsecurebootca0.cer
Source500: almalinuxsecurebootca0.cer
Source503: almalinuxsecurebootca0.cer
# these are the only architectures supporting UEFI UpdateCapsule
ExclusiveArch: x86_64 aarch64
@ -32,11 +36,11 @@ the EFI binary that is used for updating using UpdateCapsule.
%build
%meson \
-Defi_sbat_distro_id="fedora" \
-Defi_sbat_distro_summary="The Fedora Project" \
-Defi_sbat_distro_id="almalinux" \
-Defi_sbat_distro_summary="AlmaLinux" \
-Defi_sbat_distro_pkgname="%{name}" \
-Defi_sbat_distro_version="%{version}-%{release}" \
-Defi_sbat_distro_url="https://src.fedoraproject.org/rpms/%{name}"
-Defi_sbat_distro_url="https://git.almalinux.org/rpms/%{name}"
%meson_build
@ -51,9 +55,9 @@ the EFI binary that is used for updating using UpdateCapsule.
%global efiarch aa64
%endif
%global fwup_efi_fn $RPM_BUILD_ROOT%{_libexecdir}/fwupd/efi/fwupd%{efiarch}.efi
%pesign -s -i %{fwup_efi_fn} -o %{fwup_efi_fn}.tmp -a %{SOURCE300} -c %{SOURCE301} -n redhatsecureboot301
%pesign -s -i %{fwup_efi_fn} -o %{fwup_efi_fn}.tmp -a %{SOURCE300} -c %{SOURCE301} -n almalinuxsecurebootca0
%define __pesign_client_cert fwupd-signer
%pesign -s -i %{fwup_efi_fn}.tmp -o %{fwup_efi_fn}.signed -a %{SOURCE500} -c %{SOURCE503} -n redhatsecureboot503
%pesign -s -i %{fwup_efi_fn}.tmp -o %{fwup_efi_fn}.signed -a %{SOURCE500} -c %{SOURCE503} -n almalinuxsecurebootca0
rm -vf %{fwup_efi_fn}.tmp
%files