index
:
kernel/git/jejb/efitools.git
master
UEFI secure boot toolkit
James Bottomley
about
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
Age
Commit message (
Expand
)
Author
Files
Lines
2019-01-08
Version: 1.9.2
HEAD
v1.9.2
master
James Bottomley
1
-1
/
+1
2019-01-08
sha256: do not align raw section sizes
James Bottomley
1
-3
/
+5
2019-01-07
sign-efi-sig-list: add man page entry for engine option
James Bottomley
1
-0
/
+1
2019-01-06
Version: 1.9.1
v1.9.1
James Bottomley
1
-1
/
+1
2019-01-06
Makefile: Reverse the order of lib.a and -lcrypto
James Bottomley
1
-6
/
+6
2019-01-06
Version: 1.9.0
v1.9.0
James Bottomley
1
-1
/
+1
2019-01-05
use SignedData instead of PKCS7 for variable updates
James Bottomley
1
-1
/
+1
2019-01-05
support engine based keys
James Bottomley
4
-8
/
+107
2019-01-05
factor out variable signing code
James Bottomley
5
-59
/
+90
2018-12-18
efi-updatevar: remove all authenticated attributes from signature
pai-yi.huang
1
-3
/
+3
2018-02-20
Version: 1.8.1
v1.8.1
James Bottomley
1
-1
/
+1
2018-02-20
Fix Fedora build
James Bottomley
1
-3
/
+3
2017-10-19
Version: 1.8.0
v1.8.0
James Bottomley
1
-1
/
+1
2017-10-19
cert-to-efi-hash-list: fix for openssl 1.1
James Bottomley
1
-1
/
+5
2017-03-01
efitools: oid.h: Re-run oid.pl to regenerate oid.h include
Nicholas Fish
1
-0
/
+2
2017-01-16
kernel_efivars.c: fix mismatch between UNIX and EFI time
Patrick Callaghan
1
-1
/
+2
2016-05-13
PreLoader: use updated security policy install function
James Bottomley
1
-1
/
+3
2016-05-13
security_policy: fully convert to override,allow and deny functions
James Bottomley
1
-25
/
+12
2016-05-13
security_policy: factor out the current MoK hash policies
James Bottomley
2
-10
/
+55
2016-03-25
Version: 1.7.0
v1.7.0
James Bottomley
1
-1
/
+1
2016-03-25
sig-list-to-certs: add -e option to break out all esl payloads
James Bottomley
1
-3
/
+20
2016-03-25
security_policy: convert to using pkcs7verify protocol
James Bottomley
2
-13
/
+31
2016-03-25
shim_protocol: convert to using the pkcs7verify allow and deny function
James Bottomley
3
-77
/
+8
2016-03-25
pkcs7verify: add allow and deny checkers
James Bottomley
2
-1
/
+200
2016-03-25
variables: add routines to get a list of hash algorithms
James Bottomley
2
-0
/
+53
2016-03-25
guid: add all currently defined hashing guids
James Bottomley
2
-0
/
+21
2016-02-26
shim_protocol: add implementation of read_header
James Bottomley
1
-1
/
+8
2016-02-23
ShimReplace: add new shim loader simply to install protocol
James Bottomley
2
-1
/
+65
2016-02-23
pkcs7verify: add protocol locate function
James Bottomley
3
-1
/
+63
2016-02-23
shim_protocol: add protocol installer
James Bottomley
3
-1
/
+160
2016-02-23
pkcs7verify: add header and GUID copied from tianocore
James Bottomley
3
-0
/
+211
2016-02-23
pcoff: add pecoff_get_signature function
James Bottomley
2
-0
/
+31
2016-02-14
Version: 1.6.1
v1.6.1
James Bottomley
1
-1
/
+1
2016-02-14
Fix ARM32 build
James Bottomley
8
-0
/
+52
2016-02-12
arm build fixes
James Bottomley
19
-335
/
+191
2016-02-09
Version: 1.6.0
v1.6.0
James Bottomley
1
-1
/
+1
2016-02-09
enable arm builds
James Bottomley
1
-1
/
+7
2016-02-09
security_policy: switch to EFIAPI calling convention
James Bottomley
3
-119
/
+13
2015-03-17
flash-var: new routine for manipulating variables in flash images
James Bottomley
4
-1
/
+335
2015-03-17
guid: add authenticated variable guid
James Bottomley
2
-0
/
+2
2015-03-17
guid.c: add function to calculate owner GUID for known authenticated variables
James Bottomley
2
-0
/
+23
2015-03-12
Version: 1.5.3
v1.5.3
James Bottomley
1
-1
/
+1
2015-03-12
Fix month offset problem
James Bottomley
3
-2
/
+4
2015-01-22
Version: 1.5.2
v1.5.2
James Bottomley
1
-1
/
+1
2015-01-22
sha256: Calculate hashes correctly for both X64 and IA32
James Bottomley
5
-22
/
+41
2015-01-21
pecoff: handle both IA32 and X64 images
James Bottomley
1
-10
/
+26
2015-01-06
Make alterations for 32 bit cross compile
James Bottomley
5
-15
/
+110
2014-12-22
Version 1.5.1
v1.5.1
James Bottomley
1
-1
/
+1
2014-12-22
cert-to-efi-hash-list: only hash over TBSCertificate
James Bottomley
1
-1
/
+1
2014-12-22
Version 1.5.0
v1.5.0
James Bottomley
1
-1
/
+1
2014-12-22
cert-to-efi-hash-list: add man page
James Bottomley
1
-0
/
+30
2014-12-22
Makefile: Consolidate auth file building rules
James Bottomley
2
-5
/
+16
2014-12-22
KeyTool: Display revocation signature hashes
James Bottomley
1
-0
/
+20
2014-12-22
cert-to-efi-hash-list: binary for blacklisting by hash
James Bottomley
5
-3
/
+263
2014-12-22
cert-to-efi-sig-list: clear FIPS errors on module load
James Bottomley
1
-0
/
+5
2014-12-22
ReadVars, UpdateVars: add support for dbt
James Bottomley
2
-16
/
+27
2014-12-22
KeyTool: add support for dbt
James Bottomley
1
-6
/
+24
2014-12-22
variable.h: add dbt detection support
James Bottomley
1
-1
/
+2
2014-12-20
KeyTool: consolidate definitions in keyinfo variable
James Bottomley
1
-17
/
+4
2014-12-19
Version 1.4.4
v1.4.4
James Bottomley
1
-1
/
+1
2014-12-19
Make: allow creation of multiple db certificates
James Bottomley
2
-3
/
+2
2014-12-18
Add MS KEK update bundle
James Bottomley
2
-2
/
+124
2014-12-17
Add more .auth file generators
James Bottomley
2
-20
/
+21
2014-12-17
console.c: Fix longstanding bug (causing crashes)
James Bottomley
1
-6
/
+5
2014-12-17
sign-efi-sig-list: fix timestamps
James Bottomley
2
-7
/
+19
2014-12-17
Build an update bundle for the Microsoft db key
James Bottomley
2
-1
/
+45
2014-12-16
Makefile: add targets for DB and KEK update as well as replace
James Bottomley
1
-1
/
+9
2014-12-16
Keytool: Add ability to execute binary (no arguments)
James Bottomley
1
-1
/
+50
2014-12-16
Fix Make clean
James Bottomley
2
-0
/
+3
2014-12-07
version 1.4.3
v1.4.3
James Bottomley
1
-1
/
+1
2014-12-07
sign-efi-sig-list: remove all authenticated attributes from signature
James Bottomley
1
-3
/
+4
2014-12-07
sign-efi-sig-list: fixs FIPS module verification errors
James Bottomley
1
-0
/
+5
2014-05-27
safer mount output parsing
sakaki
1
-1
/
+1
2014-01-18
kernel_efivars: Fix detection of efivarfs filesystem path.
Edwin
1
-2
/
+2
2013-09-19
Makefile/Make.rules: don't rely on vim-core
v1.4.2
Greg Kroah-Hartman
3
-2
/
+52
2013-04-17
COPYING: complete lib/ transition to LGPL
James Bottomley
1
-1
/
+512
2013-03-19
efi-readvar: add MokList as possible variable to read from
James Bottomley
1
-2
/
+2
2013-03-11
COPYING: update licence: GPLv2+openSSL and LGPLv2.1
James Bottomley
1
-1
/
+4
2013-03-08
security_policy: check that the override is actually installed
James Bottomley
1
-0
/
+8
2013-03-07
cert-to-efi-sig-list: remove unimplemented RSA2048 certificate support
James Bottomley
1
-9
/
+2
2013-03-07
efitools: fix build warnings in cert-to-efi-sig-list.c
Jiri Kosina
1
-0
/
+1
2013-03-05
Version: 1.4.1
v1.4.1
James Bottomley
1
-1
/
+1
2013-03-05
UpdateVars: need %s not %d to print a filename
James Bottomley
1
-1
/
+1
2013-03-05
PreLoader: add keystroke check to start HashTool
James Bottomley
1
-0
/
+5
2013-03-05
console: add new console_check_for_keystroke() function
James Bottomley
2
-0
/
+26
2013-03-05
variables: Fix SetMem cockup
James Bottomley
2
-4
/
+4
2013-03-01
Fix for Ubuntu Builds
James Bottomley
1
-1
/
+1
2013-03-01
fix for debian builds (include sys/wait.h for WEXITSTATUS)
James Bottomley
2
-1
/
+2
2013-03-01
Version 1.4.0
v1.4.0
James Bottomley
1
-1
/
+1
2013-03-01
efi-keytool is vestigial, don't build it
James Bottomley
1
-1
/
+1
2013-03-01
efi-updatevar: Add variable deletion as an option
James Bottomley
2
-8
/
+73
2013-03-01
efi-updatevar: add ability to update in User Mode
James Bottomley
2
-8
/
+148
2013-02-28
efi-updatevar: use hash_to_esl() function
James Bottomley
1
-5
/
+14
2013-02-28
kernel_efivars: separate out hash to esl conversion function for later use
James Bottomley
2
-9
/
+28
2013-02-28
efi-updatevar: add ability to insert X509 key from certificate file
James Bottomley
2
-23
/
+79
2013-02-28
guid: return error if str_to_guid() fails
James Bottomley
2
-7
/
+11
2013-02-28
efi-readvar: add option to save signature lists
James Bottomley
1
-4
/
+23
2013-02-28
efi-readvar: add documentation and variable list restrictions
James Bottomley
2
-6
/
+96
2013-02-27
Makefile: Correct a cockup in .auth file generation
James Bottomley
2
-3
/
+9
2013-02-27
efi-updatevar: add utility to perform the tasks of UpdateVars.efi
James Bottomley
6
-2
/
+304
2013-02-27
kernel_efivars: fix check for fedora
James Bottomley
1
-4
/
+15
2013-02-27
efi-keytool, efi-readvar: begin constructing linux versions of efi tools
James Bottomley
4
-1
/
+161
2013-02-27
guid: add compare_guid() function for linux executables
James Bottomley
2
-0
/
+7
2013-02-27
kernel_efivars: add library routine to parse efivarfs entries
James Bottomley
5
-17
/
+170
2013-02-23
Version 1.3.6
v1.3.6
James Bottomley
1
-1
/
+1
2013-02-23
Make.rules: add a finder for all the daft places gnu-efi installs on distros
James Bottomley
1
-2
/
+5
2013-02-18
PreLoader: add check to permit booting on a non secure boot system
James Bottomley
1
-1
/
+29
2013-02-04
Version 1.3.5
v1.3.5
James Bottomley
1
-1
/
+1
2013-02-04
PreLoader: per Microsoft request, remove KeyTool from authorised hash
James Bottomley
1
-1
/
+1
2013-02-02
ReadVars: add -c option (no print)
James Bottomley
1
-3
/
+7
2013-01-22
ReadVars: Update to allow single variable selection and asn1 parse x509
James Bottomley
2
-34
/
+117
2013-01-22
UpdateVars: Factor out argsplit
James Bottomley
4
-46
/
+61
2013-01-22
ReadVars: add Mok Variable
James Bottomley
1
-2
/
+2
2013-01-22
UpdateVars: Fix to work on shells that don't erroneously have a trailing space
James Bottomley
1
-7
/
+9
2013-01-22
UpdateVars: Add ability to calculate hash from binary
James Bottomley
1
-4
/
+20
2013-01-22
UpdateVars: Allow updating of MoK variables
James Bottomley
1
-6
/
+21
2013-01-20
Version 1.3.4
v1.3.4
James Bottomley
1
-1
/
+1
2013-01-20
security_policy: per UEFI spec, explicit hash can override forbidden sig
James Bottomley
1
-7
/
+0
2013-01-20
configtable: remove rest of debugging prints
James Bottomley
1
-3
/
+5
2013-01-20
security_policy: don't check image table in legacy if mok fails
James Bottomley
1
-2
/
+1
2013-01-20
security_policy: Consult the image table to find dbx forbidden keys
James Bottomley
4
-3
/
+220
2013-01-20
console: fix bug where ESC isn't properly propagated
James Bottomley
1
-0
/
+3
2013-01-16
Version 1.3.3
v1.3.3
James Bottomley
1
-1
/
+1
2013-01-16
console: no return from console_reset()
James Bottomley
2
-2
/
+2
2013-01-09
KeyTool: TianoCore still allows unathenticated updates in user mode
James Bottomley
2
-4
/
+6
2013-01-09
HashTool: Don't display keytool prompt if no executable
James Bottomley
1
-1
/
+1
2013-01-09
KeyTool: Better errors on save keys
James Bottomley
2
-7
/
+8
2013-01-09
console, PreLoader: add console reset
James Bottomley
3
-0
/
+15
2013-01-09
security_policy: fix a problem with the UEFI confusion over security failure
James Bottomley
1
-4
/
+17
2013-01-07
Version: 1.3.2
v1.3.2
James Bottomley
1
-1
/
+1
2013-01-07
security_policy: don't allow internal hash to override dbx
James Bottomley
1
-1
/
+1
2013-01-07
KeyTool: Fix key deletion
James Bottomley
1
-29
/
+38
2013-01-02
console: fix problem with ESC and no selection
James Bottomley
3
-5
/
+8
2013-01-01
KeyTool: Permit saving of individual keys in their entirety
James Bottomley
1
-55
/
+119
2013-01-01
Error handling for sha256 hash failures
James Bottomley
3
-4
/
+24
2013-01-01
KeyTool: Add MokList to list of saved variables
James Bottomley
1
-2
/
+3
2013-01-01
hash-to-efi-sig-list: Allow creation of multiple hashes
James Bottomley
1
-25
/
+33
2012-12-31
KeyTool: should still be able to delete MOK entries in user mode
James Bottomley
1
-1
/
+1
2012-12-31
KeyTool: Fix hang when saving all keys
James Bottomley
1
-0
/
+1
2012-12-31
KeyTool: Implement adding certificates from DER format .cer files
James Bottomley
3
-51
/
+47
2012-12-31
sig-list-to-certs: use new traversal mechanism
James Bottomley
1
-57
/
+63
2012-12-30
Keytool/Variables: Improve signature list traversal.
James Bottomley
3
-38
/
+36
2012-12-30
UpdateVars: Allow updating with an esl file
James Bottomley
1
-32
/
+17
2012-12-30
variables.c: Don't do an ESL update to PK in user mode
James Bottomley
1
-5
/
+14
2012-12-30
Hashtool: eliminate option to move programmatically to setup mode
James Bottomley
1
-7
/
+9
2012-12-20
Version: 1.3.1
v1.3.1
James Bottomley
1
-1
/
+1
2012-12-20
console.c: fix oversize lines in printing
James Bottomley
1
-11
/
+10
2012-12-20
Version 1.3
v1.3
James Bottomley
1
-1
/
+1
2012-12-20
Update with changes required by Microsoft
James Bottomley
3
-10
/
+24
2012-12-12
Merge branch 'v1.2'
James Bottomley
1
-6
/
+7
2012-12-12
execute: fix some of the quirks in DevPathToStr()
James Bottomley
1
-6
/
+7
2012-12-12
security_policy: put the return in the right place!
James Bottomley
1
-2
/
+2
2012-12-12
gitignore: test binary and a few other files
James Bottomley
2
-0
/
+7
2012-12-12
enumerator: pull out lots of unused code
James Bottomley
2
-296
/
+0
2012-12-12
identification: work in both EFI and non-EFI environments
James Bottomley
2
-3
/
+6
2012-12-12
asn1: eliminate more unused code from identification.c
James Bottomley
2
-103
/
+4
2012-12-12
Keytool: Display rudimentary asn1 information about the keys
James Bottomley
7
-15
/
+75
2012-12-12
asn1: complete definitions and strip copied files
James Bottomley
15
-1968
/
+88
2012-12-12
asn1: more updates to pare the parser down
James Bottomley
4
-37
/
+38
2012-12-12
asn1: complete parser with more pieces from strongswan
James Bottomley
11
-0
/
+2511
2012-12-12
asn1: Add parser files straight from strongswan-5.0.1
James Bottomley
8
-0
/
+2689
2012-12-12
Merge tag 'v1.2.3'
James Bottomley
6
-4
/
+17
2012-12-11
version: 1.2.3
v1.2.3
James Bottomley
1
-1
/
+1
2012-12-11
SetNull: simple program to prevent *NULL from being 0
James Bottomley
2
-1
/
+12
2012-12-11
version: 1.2.2
v1.2.2
James Bottomley
1
-1
/
+1
2012-12-11
simple_file: fix missing files problem
James Bottomley
4
-3
/
+5
2012-12-11
KeyTool: Add ability to enrol hash
James Bottomley
6
-63
/
+168
2012-12-11
console: make selected option sticky and use in KeyTool and HashTool
James Bottomley
4
-11
/
+27
2012-12-08
KeyTool: Improve key saving dialogue (add volume selector)
James Bottomley
1
-1
/
+35
2012-12-08
PreLoader: add error box for security policy uninstall
James Bottomley
1
-1
/
+3
2012-12-08
security_policy: fix five arg thunk and always install all possible policies
James Bottomley
1
-30
/
+37
2012-12-07
version 1.2.1
v1.2.1
James Bottomley
1
-1
/
+1
2012-12-07
Fix the file selectors to work properly in a relative directory
James Bottomley
4
-77
/
+45
2012-12-07
version: 1.2.0
v1.2.0
James Bottomley
1
-1
/
+1
2012-12-07
security_policy: Make it functional on PI 1.2 systems
James Bottomley
5
-41
/
+223
2012-12-06
Bump version to 1.1.0
v1.1.0
James Bottomley
1
-1
/
+1
2012-12-06
PreLoader: Add dialogue boxes and make suitable for gummiboot
James Bottomley
1
-14
/
+40
2012-12-06
simple_file: Put .. directory last always
James Bottomley
1
-11
/
+25
2012-12-06
simple_file: Fix directory traversal
James Bottomley
1
-10
/
+12
2012-12-06
security_policy: remove debugging
James Bottomley
3
-13
/
+0
2012-12-06
gitignore: ignore new hash-to-efi-sig-list and *.hash files
James Bottomley
1
-0
/
+2
2012-12-06
Move PreLoader and HashTool to new execution model
James Bottomley
2
-17
/
+22
2012-12-06
sha256.h: main dir efi objects aren't built with BUILD_EFI
James Bottomley
1
-2
/
+0
2012-12-06
execute: add capability to execute via Boot Services
James Bottomley
5
-130
/
+175
2012-12-06
add new security_policy
James Bottomley
3
-1
/
+214
2012-12-06
guid: add SECURITY2_PROTOCOL_GUID
James Bottomley
2
-0
/
+2
2012-12-06
variables: separate find_in_esl() from find_in_variable_esl()
James Bottomley
2
-7
/
+23
2012-12-04
Loader: rename boot loader to linux-loader.efi
James Bottomley
1
-1
/
+1
2012-12-04
version: add automated version numbers
v1.0.0
James Bottomley
4
-18
/
+11
2012-12-04
PreLoader: Add built in whitelist hash table
James Bottomley
5
-6
/
+36
2012-12-04
hash-to-efi-sig-list: new binary to create hashes as efi signature lists
James Bottomley
6
-26
/
+189
2012-12-04
simple_file: fix bug in generate_path on top level files
James Bottomley
1
-1
/
+2
2012-12-03
HelloWorld: Add return to shut obs up
James Bottomley
1
-0
/
+2
2012-12-03
Remove debugging statements
James Bottomley
2
-6
/
+1
2012-12-03
mkusb.sh: script to create a bootable USB image with the files
James Bottomley
2
-0
/
+38
2012-12-03
HashTool: KeyTool binary needs preceeding backslash
James Bottomley
1
-1
/
+1
2012-12-03
HelloWorld: Replace with console box based one
James Bottomley
2
-9
/
+11
2012-12-03
Fix problem with efi status return
James Bottomley
2
-4
/
+4
2012-12-03
Makefile: go back to single signature binaries
James Bottomley
2
-6
/
+9
2012-12-03
PreLoader: Simple preloader
James Bottomley
2
-1
/
+58
[next]