Blame 0001-Don-t-use-shim_cert-for-verifying-MoK-fedora-will-do.patch
|
|
732f24b |
From 878dc1a6a76eab7d9fee897ecc978e55e3fc80ed Mon Sep 17 00:00:00 2001
|
|
|
732f24b |
From: Peter Jones <pjones@redhat.com>
|
|
|
732f24b |
Date: Mon, 10 Jun 2013 18:08:50 -0400
|
|
|
732f24b |
Subject: [PATCH] Don't use shim_cert for verifying MoK; fedora will do its own
|
|
|
732f24b |
signing.
|
|
|
732f24b |
|
|
|
732f24b |
Signed-off-by: Peter Jones <pjones@redhat.com>
|
|
|
732f24b |
---
|
|
|
732f24b |
shim.c | 2 ++
|
|
|
732f24b |
1 file changed, 2 insertions(+)
|
|
|
732f24b |
|
|
|
732f24b |
diff --git a/shim.c b/shim.c
|
|
|
732f24b |
index 94b9710..4edd0b6 100644
|
|
|
732f24b |
--- a/shim.c
|
|
|
732f24b |
+++ b/shim.c
|
|
|
732f24b |
@@ -702,6 +702,7 @@ static EFI_STATUS verify_buffer (char *data, int datasize,
|
|
|
732f24b |
return status;
|
|
|
732f24b |
}
|
|
|
732f24b |
|
|
|
732f24b |
+#if 0
|
|
|
732f24b |
/*
|
|
|
732f24b |
* Check against the shim build key
|
|
|
732f24b |
*/
|
|
|
732f24b |
@@ -713,6 +714,7 @@ static EFI_STATUS verify_buffer (char *data, int datasize,
|
|
|
732f24b |
Print(L"Binary is verified by the vendor certificate\n");
|
|
|
732f24b |
return status;
|
|
|
732f24b |
}
|
|
|
732f24b |
+#endif
|
|
|
732f24b |
|
|
|
732f24b |
|
|
|
732f24b |
/*
|
|
|
732f24b |
--
|
|
|
732f24b |
1.8.2.1
|
|
|
732f24b |
|