-
Notifications
You must be signed in to change notification settings - Fork 131
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Shim 15.8 for AlmaLinux OS 8 #407
Comments
Just a quick scan, seems like the shim SBAT entries are wrong in the issue, can we fix this and grab them from the binary to make sure they are correct? |
@SherifNagy Thank you for your quick response. Issue is updated with correct SBAT entries |
I will take a closer look |
Review of almalinux-8-shim-x64-20240404
Shim
I think MSFT do review the sha256sum hashes of the binaries thought " Vendor needs to update the issue and the readme "
GRUB2
Kernel
|
@SherifNagy Thank you for the review! |
LGTM! I will add extra review need and easy to review tags, one more note, I don't see submission for Alma9, and if you are planning to use same shim for Alma9, keep an eye on this issue to track the upcoming UKI revocation once it is in place #397 |
Kinda worried about the 8.9 version being used to build the binaries, but hopefully, with the 8.10 release coming soon, the buildroot won't change too much, to make the build non-reproducible. Accepting! |
I think it depends a lot on the policies within the vendor building policies, some have to build based on latest releases, some builds on any release and using same shim for other version, I think now Ubuntu and fedora using same shim for all releases and I guess Alma will be using same shim from this submission for alma9, that's why I mentioned the UKI ticket, to keep an eye for. |
@SherifNagy here is SBAT entry from latest AlmaLinux 9.4 UKI image:
|
Signed by Microsoft. Submission IDs: Closing. Thanks everyone. |
Confirm the following are included in your repo, checking each box:
What is the link to your tag in a repo cloned from rhboot/shim-review?
https://github.com/AlmaLinux/shim-review/tree/almalinux-8-shim-x64-20240404
What is the SHA256 hash of your final SHIM binary?
a872d4a6b1ae5ed2827825a64b7c4feb792f86d1726cf178f0747e11036b7cf9 shimx64.efi
be32ae82e0b75dcee8b79c22531bb908e4ac736636ba648ae835cec8c5e8680f shimia32.efi
What is the link to your previous shim review request (if any, otherwise N/A)?
#250
The text was updated successfully, but these errors were encountered: