Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

WIP: Check fuse and Boot Guard states #139

Draft
wants to merge 46 commits into
base: develop
Choose a base branch
from
Draft

Conversation

PLangowski
Copy link
Collaborator

No description provided.

DaniilKl and others added 30 commits April 3, 2024 10:57
Repository jiazhang0/meta-secure-core is archived since 07.02.2023, change to
active Wind-River/meta-secure-core.

Signed-off-by: Daniil Klimuk <[email protected]>
efi-ext.scc is being added in meta-secure-core/meta-efi-secure-boot and
sets, among other configurations, configuration CONFIG_EFI_VARS to m
which conflicts with efivars.cfg that sets the config to y.

Signed-off-by: Daniil Klimuk <[email protected]>
A fix for Dasharo/dasharo-issues#752. The core of the problem revolved around
the use of the ping command for network connectivity verification, which relied
on ICMP packets. This approach posed limitations in environments where ICMP
packets are blocked or filtered, leading to false negatives in connectivity
checks. The implementation replaces ping with `wget --spider` that is used to
check for `cloud.3mdeb.com` access without downloading content. By using wget,
the script now supports environments where ICMP is not an option

Signed-off-by: Tymoteusz Burak <[email protected]>
Move all DTS scripts to another repo and add as git package.

Signed-off-by: Daniil Klimuk <[email protected]>
This recipe was not used in the builds, instead recipe from meta-openembedded is
being used. Surplus metadata should be deleted.

Refs:
Dasharo/dasharo-issues#770
Dasharo/dasharo-issues#769

Signed-off-by: Daniil Klimuk <[email protected]>
This package provides license statement in README.md, but Yocto needs it
to be a separate file.

Refs:
https://github.com/nix-community/acpi_call/blob/fe9dc95a83a95e4826c1a7c809d41c2f16de40a6/README.md?plain=1#L68

Signed-off-by: Daniil Klimuk <[email protected]>
Signed-off-by: Maciej Pijanowski <[email protected]>
Otherwise, the host gcc was used

Signed-off-by: Maciej Pijanowski <[email protected]>
Signed-off-by: Maciej Pijanowski <[email protected]>
Signed-off-by: Maciej Pijanowski <[email protected]>
Signed-off-by: Maciej Pijanowski <[email protected]>
Fix scp from host to DTS not working without -O flag
Signed-off-by: Pawel Langowski <[email protected]>
PLangowski and others added 16 commits June 6, 2024 11:48
Signed-off-by: Pawel Langowski <[email protected]>
The script was moved to the
dts-scripts repo
(https://github.com/Dasharo/dts-scripts/blob/main/include/dts-functions.sh)
and is not used here anymore.

Signed-off-by: Pawel Langowski <[email protected]>
Signed-off-by: Pawel Langowski <[email protected]>
@m-iwanicki
Copy link
Contributor

@PLangowski Is this WIP? If yes then convert to draft

@pietrushnic
Copy link
Contributor

@artur-rs looks like something potentially useful for Dasharo TrustRoot assessment and planned training sessions. @miczyg1 cc

@miczyg1 miczyg1 marked this pull request as draft September 16, 2024 11:23
@miczyg1
Copy link
Contributor

miczyg1 commented Sep 16, 2024

@pietrushnic i was reviewing the scripts part of the checks

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

7 participants