From 93998bd7a787064c4f22614d103e7d819f8b683b Mon Sep 17 00:00:00 2001 From: Peter Surda Date: Wed, 1 Dec 2021 22:14:29 +0800 Subject: [PATCH] Add signing to EFI --- buildbot/buildbot_steps.sh | 3 +++ 1 file changed, 3 insertions(+) diff --git a/buildbot/buildbot_steps.sh b/buildbot/buildbot_steps.sh index 02cefa0..3e80916 100755 --- a/buildbot/buildbot_steps.sh +++ b/buildbot/buildbot_steps.sh @@ -200,6 +200,8 @@ function make_ipxe_efi() { local embed_file="$2" local signing_cert="$3" local ca_cert="$4" + local efi_key"$5" + local efi_cert="$6" embed_file="$(realpath "${embed_file}")" signing_cert="$(realpath "${signing_cert}")" @@ -227,6 +229,7 @@ function make_ipxe_efi() { make bin-x86_64-efi/ipxe.efi EMBED="${embed_file}" CERT="${signing_cert},${ca_cert}" TRUST="${ca_cert}" || return 2 mv bin-x86_64-efi/ipxe.efi bin/ + sbsign --key ${efi_key} --cert ${efi_cert} --output bin/ipxe.efi bin/ipxe.efi cd "$curr" return 0