#3357 BLOC Trial-3: pilgrim should sign os and initrd.
Zarro Boogs per Child
bugtracker at laptop.org
Thu Sep 13 17:50:17 EDT 2007
#3357: pilgrim should sign os and initrd.
-----------------------+----------------------------------------------------
Reporter: cscott | Owner: J5
Type: defect | Status: new
Priority: blocker | Milestone: Trial-3
Component: security | Version:
Resolution: | Keywords:
Verified: 0 |
-----------------------+----------------------------------------------------
Changes (by cscott):
* cc: wmb at firmworks.com (added)
* owner: cscott => J5
Comment:
Now in git+ssh://dev.laptop.org/git/users/cscott/pilgrim-cscott
as git commit ff2c766c65e5a3b81f956ec3b8b5e0a8a911c15f
Apply after the patch for #3358.
Once this is applied, the signatures don't actually get made until you
pass a new option to pilgrim-autobuild. As documented in
http://dev.laptop.org/git?p=users/cscott/pilgrim-
cscott;a=commit;h=ff2c766c65e5a3b81f956ec3b8b5e0a8a911c15f
If you put 'os.private' and 'os.public' in /home/cscott/keys (say), then
the following command will generate a build with signed os and ramdisk
images:
./pilgrim-autobuild --config-dir . --stream olpc-development --dest-dir .
--sign /home/cscott/keys/os
We have generated sample keys for intial testing. Get them from:
dev:~wmb/sample_keys/os.{private,public}
and put them wherever seems appropriate on the build machine.
--
Ticket URL: <https://dev.laptop.org/ticket/3357#comment:1>
One Laptop Per Child <https://dev.laptop.org>
OLPC bug tracking system
More information about the Bugs
mailing list