From patchwork Tue Jul 21 09:45:58 2020 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: AKASHI Takahiro X-Patchwork-Id: 1332889 X-Patchwork-Delegate: trini@ti.com Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (sender SPF authorized) smtp.mailfrom=lists.denx.de (client-ip=85.214.62.61; helo=phobos.denx.de; envelope-from=u-boot-bounces@lists.denx.de; receiver=) Authentication-Results: ozlabs.org; dmarc=pass (p=none dis=none) header.from=linaro.org Authentication-Results: ozlabs.org; dkim=pass (2048-bit key; unprotected) header.d=linaro.org header.i=@linaro.org header.a=rsa-sha256 header.s=google header.b=sjlOyN3N; dkim-atps=neutral Received: from phobos.denx.de (phobos.denx.de [85.214.62.61]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 4B9tyt0VGKz9sPB for ; Tue, 21 Jul 2020 19:46:27 +1000 (AEST) Received: from h2850616.stratoserver.net (localhost [IPv6:::1]) by phobos.denx.de (Postfix) with ESMTP id 70B7D81C3C; Tue, 21 Jul 2020 11:46:18 +0200 (CEST) Authentication-Results: phobos.denx.de; dmarc=pass (p=none dis=none) header.from=linaro.org Authentication-Results: phobos.denx.de; spf=pass smtp.mailfrom=u-boot-bounces@lists.denx.de Authentication-Results: phobos.denx.de; dkim=pass (2048-bit key; unprotected) header.d=linaro.org header.i=@linaro.org header.b="sjlOyN3N"; dkim-atps=neutral Received: by phobos.denx.de (Postfix, from userid 109) id E4AC281C40; Tue, 21 Jul 2020 11:46:15 +0200 (CEST) X-Spam-Checker-Version: SpamAssassin 3.4.2 (2018-09-13) on phobos.denx.de X-Spam-Level: X-Spam-Status: No, score=-2.0 required=5.0 tests=BAYES_00,DKIM_SIGNED, DKIM_VALID,DKIM_VALID_AU,SPF_HELO_NONE,URIBL_BLOCKED autolearn=ham autolearn_force=no version=3.4.2 Received: from mail-pl1-x644.google.com (mail-pl1-x644.google.com [IPv6:2607:f8b0:4864:20::644]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits)) (No client certificate requested) by phobos.denx.de (Postfix) with ESMTPS id 846E681C1A for ; Tue, 21 Jul 2020 11:46:12 +0200 (CEST) Authentication-Results: phobos.denx.de; dmarc=pass (p=none dis=none) header.from=linaro.org Authentication-Results: phobos.denx.de; spf=pass smtp.mailfrom=takahiro.akashi@linaro.org Received: by mail-pl1-x644.google.com with SMTP id x9so10035817plr.2 for ; Tue, 21 Jul 2020 02:46:12 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=linaro.org; s=google; h=from:to:cc:subject:date:message-id:mime-version :content-transfer-encoding; bh=JgvT+IT9Hs6PFJicBqx2qe1zH7MtPzY6FHU9P9g3IOY=; b=sjlOyN3N+mlOBXgYW94E1lM0arA6GV49gbTXJA3H0iZe9UWQZ0mi+8ZFtpTYo+sNHT BIE7w52YF4fhJLeTZHUEmavszxfr+bAtvYBKthfd0Voc0Wf+C543k0yobIRXu9rkrUEy lWPaaa59uuMuwGZWHXgjV6VYtpA0gqC+dwrRA6Fc58ZKeUJL/u2keF30qE+2fRJddiyR aVhW/9eYagkVnJ7884K3Etu1qiCDtP4lwuzWwN208FxLgBZad0SsutOVe2h91sKS/lWB nHcxO3pO0ZtXS9JBnZDIAfY/UYQxQt2vU9u41SjBgZsIKbE9CFHTpixBQW4IWkgFHI9B 6rmQ== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:to:cc:subject:date:message-id:mime-version :content-transfer-encoding; bh=JgvT+IT9Hs6PFJicBqx2qe1zH7MtPzY6FHU9P9g3IOY=; b=AxtMkyQj3m6byu+fnwXRaNkEtx/CEHSdmDyNjP1ekJIxt72at91HOnW+2IpWdQdmtZ h3x11tOsEkgcSKHiX3qgAvyF1Z5W3sQIkMxdvQLLdxIjcevcfRmKI6003Y0cagqREbBA eVIo3Dq4mMCU42119+Jdnwti9VAV4HPXMqAkbxP6vYClwDOXE5TuoCxPAM/3SrDSMcaz MPbKoZxYl5jRZ1tvSk7nM/tLfvtJhGfzu6ycRCFSVm8+KZu9XPHqSecz1XnkfYyHoija eemBFi2XJdhgpyT9BUPo/BsBUOFVEpNXfccMOFMlEmxAp9108FT+4zhUOKBPZz1c8byZ NTrQ== X-Gm-Message-State: AOAM533D9QamxBRjk97Is5RKeF1m0aRX3MwuTIfKYbinl1Oq4QXOR0Mw 7kWvW/W0vd/TZjR0oIAqvPCSmw== X-Google-Smtp-Source: ABdhPJzhzF6LDI0d58IwGNhbLgvgNkBXHjZeccm8hSW8X34Cg5W6XkijQNVwSxpotIew4K6VUo9jvQ== X-Received: by 2002:a17:902:eb49:: with SMTP id i9mr20272462pli.231.1595324770780; Tue, 21 Jul 2020 02:46:10 -0700 (PDT) Received: from localhost.localdomain (p6e424d9a.tkyea130.ap.so-net.ne.jp. [110.66.77.154]) by smtp.gmail.com with ESMTPSA id f207sm20320551pfa.107.2020.07.21.02.46.08 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Tue, 21 Jul 2020 02:46:10 -0700 (PDT) From: AKASHI Takahiro To: trini@konsulko.com Cc: xypron.glpk@gmx.de, bmeng.cn@gmail.com, mail@patrick-wildt.de, u-boot@lists.denx.de, AKASHI Takahiro Subject: [PATCH] Dockerfile: update sbsigntools to v0.9.4 Date: Tue, 21 Jul 2020 18:45:58 +0900 Message-Id: <20200721094558.1942-1-takahiro.akashi@linaro.org> X-Mailer: git-send-email 2.27.0 MIME-Version: 1.0 X-BeenThere: u-boot@lists.denx.de X-Mailman-Version: 2.1.34 Precedence: list List-Id: U-Boot discussion List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: u-boot-bounces@lists.denx.de Sender: "U-Boot" X-Virus-Scanned: clamav-milter 0.102.3 at phobos.denx.de X-Virus-Status: Clean This version of sbsigntools is a prerequisite in testing "intermediate certificates" support as part of UEFI secure boot as I added '--addcert' option to 'sbsign' command: === commit 7d6210e4b1fd Author: AKASHI Takahiro Date: Thu Jun 4 16:50:22 2020 +0900 sbsign: allow for adding intermediate certificates === Signed-off-by: AKASHI Takahiro Reviewed-by: Tom Rini --- Dockerfile | 15 +++++++++++++++ 1 file changed, 15 insertions(+) diff --git a/Dockerfile b/Dockerfile index 209e008b74b2..dfb61c6c705b 100644 --- a/Dockerfile +++ b/Dockerfile @@ -37,6 +37,7 @@ RUN apt-get update && apt-get install -y \ automake \ autopoint \ bc \ + binutils-dev \ bison \ build-essential \ clang-10 \ @@ -52,9 +53,11 @@ RUN apt-get update && apt-get install -y \ flex \ gdisk \ git \ + gnu-efi \ graphviz \ grub-efi-amd64-bin \ grub-efi-ia32-bin \ + help2man \ iasl \ imagemagick \ iputils-ping \ @@ -76,6 +79,7 @@ RUN apt-get update && apt-get install -y \ openssl \ picocom \ parted \ + pkg-config \ python \ python-dev \ python-pip \ @@ -90,6 +94,7 @@ RUN apt-get update && apt-get install -y \ sudo \ swig \ util-linux \ + uuid-dev \ virtualenv \ zip \ && rm -rf /var/lib/apt/lists/* @@ -100,6 +105,16 @@ RUN wget http://mirrors.kernel.org/ubuntu/pool/main/m/mpfr4/libmpfr4_3.1.4-1_amd # Manually install a new enough version of efitools (must be v1.5.2 or later) RUN wget http://mirrors.kernel.org/ubuntu/pool/universe/e/efitools/efitools_1.8.1-0ubuntu2_amd64.deb && sudo dpkg -i efitools_1.8.1-0ubuntu2_amd64.deb && rm efitools_1.8.1-0ubuntu2_amd64.deb +# Manually install a new enough version of sbsigntools (must be v0.9.4 or later) +RUN git clone https://git.kernel.org/pub/scm/linux/kernel/git/jejb/sbsigntools.git /tmp/sbsigntools && \ + cd /tmp/sbsigntools && \ + git checkout -b latest v0.9.4 && \ + ./autogen.sh && \ + ./configure && \ + make && \ + make install && \ + rm -rf /tmp/sbsigntools + # Build GRUB UEFI targets for ARM & RISC-V, 32-bit and 64-bit RUN git clone git://git.savannah.gnu.org/grub.git /tmp/grub && \ cd /tmp/grub && \