index
:
kernel/git/jejb/sbsigntools.git
master
next
Maintained update of Jeremy Kerr/Ubuntu sbsigntools
James Bottomley
about
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
Age
Commit message (
Expand
)
Author
Files
Lines
2023-03-19
Version 0.9.5
HEAD
v0.9.5
master
James Bottomley
1
-1
/
+1
2022-06-13
Fix openssl-3.0 issue involving ASN1 xxx_it
Jeremi Piotrowski
1
-1
/
+1
2022-06-13
Add support for openssl-3
James Bottomley
2
-3
/
+10
2022-03-04
sbsigntool: add support for RISC-V 64-bit PE/COFF images
next
Andreas Schwab
3
-1
/
+3
2022-02-21
sbvarsign: do not include PKCS#7 attributes
Daniel Axtens
1
-1
/
+1
2020-08-18
sbkeysync: Don't ignore errors from insert_new_keys()
dann frazier
1
-3
/
+5
2020-06-11
Version 0.9.4
v0.9.4
James Bottomley
1
-1
/
+1
2020-06-06
docs: add man page for sbkeysync
James Bottomley
2
-2
/
+5
2020-06-06
Enable -Werror for builds
James Bottomley
1
-1
/
+1
2020-06-06
Fix errors on 32 bit
James Bottomley
2
-3
/
+5
2020-06-06
sbverify: refer to unused function
James Bottomley
1
-4
/
+5
2020-06-06
sbvarsign: remove unused global variable
James Bottomley
1
-1
/
+0
2020-06-06
Fix some openssl 1.1.0 deprecated functions
James Bottomley
6
-0
/
+32
2020-06-05
Tests: Add intermediate certificate tests to the sign-verify cases
James Bottomley
5
-13
/
+70
2020-06-05
sbverify: fix verification with intermediate certificates
James Bottomley
1
-2
/
+2
2020-06-05
sbsign: allow for adding intermediate certificates
AKASHI Takahiro
1
-2
/
+48
2020-01-09
Version 0.9.3
v0.9.3
James Bottomley
1
-1
/
+1
2020-01-09
README: update git location and add mailing list information
James Bottomley
1
-1
/
+15
2020-01-09
sbvarsign: fix "EFI_VARIABLE_AUTHENTICATION_2.TimeStamp.Year" assignment
Laszlo Ersek
1
-1
/
+1
2019-07-27
Fix PE/COFF checksum calculation
Steve McIntyre
1
-5
/
+1
2019-01-09
Version 0.9.2
v0.9.2
James Bottomley
1
-1
/
+1
2019-01-09
src/image.c: remove alignment of regions
James Bottomley
1
-2
/
+1
2019-01-09
sbvarsign: use SignedData instead of PKCS7 for authenticated updates
James Bottomley
1
-2
/
+2
2018-02-20
Fix Fedora Build
Guy Lunardi
2
-2
/
+2
2017-10-28
Version 0.9.1
v0.9.1
James Bottomley
1
-1
/
+1
2017-10-28
sbsign, sbvarsign: support engine based private keys
James Bottomley
4
-6
/
+76
2017-10-19
Version 0.9
v0.9
James Bottomley
1
-1
/
+1
2017-10-19
Fix Debian 8 and Leap_42.1 builds
James Bottomley
1
-0
/
+3
2017-10-19
tests: Fix up to work on arbitrary architectures
James Bottomley
5
-38
/
+56
2017-10-19
tests/detach-remove.sh: fix for i386 pecoff size problems
James Bottomley
1
-1
/
+5
2017-10-19
tests: fix up the generation of the test pecoff binary for gcc-7.2
James Bottomley
3
-126
/
+7
2017-10-19
tests: fix signature resign/reattach test problems
James Bottomley
2
-2
/
+10
2017-10-19
Update OpenSSL API usage to support OpenSSL 1.1
Ben Hutchings
2
-18
/
+41
2017-10-19
make check: fix test environment problem
James Bottomley
1
-1
/
+2
2017-10-19
Add OPENSSL_config(NULL) to each binary to load openssl.cnf
James Bottomley
5
-0
/
+10
2016-02-14
Version: 0.8
v0.8
James Bottomley
1
-1
/
+1
2016-02-12
sbkeysync: don't include efi.h
James Bottomley
1
-2
/
+0
2016-02-12
configure: build on arm
James Bottomley
1
-1
/
+1
2016-01-27
sbverify: Clear out content for the signature we're building
Mathieu Trudel-Lapierre
1
-0
/
+4
2016-01-27
Handle odd buffer lengths in checksum
Linn Crosetto
1
-4
/
+7
2016-01-27
Support openssl 1.0.2b and above
Steve Langasek
1
-0
/
+1
2016-01-27
sbsigntool: add support for ARM and Aarch64 PE/COFF images
Ard Biesheuvel
2
-5
/
+9
2016-01-27
sbsigntool: fix handling of zero sized sections
Ard Biesheuvel
1
-17
/
+18
2016-01-27
sbsigntool: remove doubly defined IMAGE_FILE_MACHINE_AMD64
Ard Biesheuvel
1
-1
/
+0
2016-01-27
sbverify: add extra expiry errors to ignore
James Bottomley
1
-1
/
+4
2016-01-27
Update the PE checksum field using the somewhat-underdocumented
Steve Langasek
2
-1
/
+62
2015-01-06
OBS add correcting definition of EFI_ARCH
James Bottomley
1
-1
/
+1
2014-12-19
Version 0.7
v0.7
James Bottomley
1
-1
/
+1
2014-12-19
sbsign, sbattach, sbverify: add multiple signature support
James Bottomley
5
-125
/
+208
2014-12-19
sbverify: fix verification
James Bottomley
1
-3
/
+6
2014-12-19
Clear ssl errors after loading everyting
James Bottomley
5
-2
/
+26
2014-12-19
Fix for multi-sign
James Bottomley
1
-1
/
+7
2014-12-19
image.c: clear image variable
James Bottomley
1
-0
/
+1
2012-11-14
sbkeysync: add corrected efivars magic
Jeremy Kerr
1
-2
/
+3
2012-10-11
Version 0.6
Jeremy Kerr
1
-1
/
+1
2012-10-11
sbverify: explicitly trust all certificates given in --cert arguments
Jeremy Kerr
1
-0
/
+18
2012-10-10
sbverify: Add --verbose option
Jeremy Kerr
1
-0
/
+67
2012-10-10
Version 0.5
Jeremy Kerr
1
-1
/
+1
2012-10-08
sbkeysync: change default efivarfs mountpoint to /sys/.../efivars/
Jeremy Kerr
2
-1
/
+11
2012-10-02
Version 0.4
Jeremy Kerr
1
-1
/
+1
2012-10-02
image: improve handling of unaligned section tables
Jeremy Kerr
1
-0
/
+22
2012-10-02
image: use data_size in cert table header
Jeremy Kerr
1
-1
/
+1
2012-09-28
image: improve section table parsing
Jeremy Kerr
1
-1
/
+10
2012-09-28
image: Allow variable sized data directories
Jeremy Kerr
2
-28
/
+44
2012-09-05
sbvarsign: fix incorrect pointer in add_auth_descriptor
Jeremy Kerr
1
-1
/
+1
2012-09-05
sbvarsign: auth descriptor hash does not cover the \0 in the varname
Jeremy Kerr
1
-4
/
+2
2012-08-24
sbkeysync: fix siglist iteration
Jeremy Kerr
1
-2
/
+2
2012-08-24
sbvarsign: Improve default GUID choice
Jeremy Kerr
2
-5
/
+22
2012-08-24
skkeysync: Add PK-handing code
Jeremy Kerr
1
-8
/
+68
2012-08-24
sbkeysync: Refactor signature database data structures
Jeremy Kerr
1
-167
/
+137
2012-08-24
sbkeysync: fix invalid free in keystore_read_entry
Jeremy Kerr
1
-5
/
+3
2012-08-24
sbkeysync: Improve error handling in read_firmware_key_database
Jeremy Kerr
1
-3
/
+15
2012-08-24
sbkeysync: insert new keys
Jeremy Kerr
1
-0
/
+92
2012-08-24
sbkeysync: print keystore before key databases
Jeremy Kerr
1
-4
/
+5
2012-08-24
sbkeysync: Find keys missing from firmware key databases
Jeremy Kerr
1
-0
/
+92
2012-08-24
sbkeysync: Rename struct keystore_entry->list to keystore_list
Jeremy Kerr
1
-5
/
+5
2012-08-24
sbkeysync: Generate and print key descriptions
Jeremy Kerr
1
-13
/
+18
2012-08-24
sbkeysync: add comment to sigdb_iterate
Jeremy Kerr
1
-0
/
+8
2012-08-24
sbkeysync: Change key_id to key_parse
Jeremy Kerr
1
-37
/
+25
2012-08-24
sbkeysync: Print filesystem key databases
Jeremy Kerr
1
-1
/
+13
2012-08-24
sbkeysync: read keystore into kdb->filesystem_keys
Jeremy Kerr
1
-13
/
+138
2012-08-24
sbkeysync: Unify key_database
Jeremy Kerr
1
-71
/
+54
2012-08-24
sbkeysync: Add key_database->filesystem_keys
Jeremy Kerr
1
-4
/
+6
2012-08-24
sbkeysync: keystore -> fs_keystore
Jeremy Kerr
1
-15
/
+15
2012-08-24
sbkeysync: pass data buffer (instead of EFI_SIGNATURE_DATA) to key_id
Jeremy Kerr
1
-15
/
+14
2012-08-24
sbkeysync: add keystore_entry->root
Jeremy Kerr
1
-4
/
+6
2012-08-24
sbkeysync: Add --keystore and --no-default-keystores options
Jeremy Kerr
1
-6
/
+40
2012-08-24
sbkeysync: Add --verbose option and conditionally print debug output
Jeremy Kerr
1
-11
/
+27
2012-08-24
sbkeysync: Add keystore parsing functions
Jeremy Kerr
1
-4
/
+124
2012-08-24
sbkeysync: Add --efivars-dir option to specific different locations for var f...
Jeremy Kerr
1
-12
/
+24
2012-08-24
sbkeysync: Add X509 key parsing
Jeremy Kerr
1
-0
/
+46
2012-08-24
sbkeysync: Add key ID data to print_key_database()
Jeremy Kerr
1
-2
/
+7
2012-08-24
sbkeysync: read & print signature databases
Jeremy Kerr
2
-1
/
+403
2012-08-24
Move EFI_CERT types to efivars.h
Jeremy Kerr
2
-10
/
+11
2012-08-24
fileio: Add fileio_read_file_noerror()
Jeremy Kerr
2
-16
/
+27
2012-08-23
sbvarsign: Start with a default set of variable attributes
Jeremy Kerr
1
-5
/
+17
2012-08-23
efivars: Move EFI_VARIABLE_* attributes to efivars.h
Jeremy Kerr
2
-7
/
+26
2012-08-22
sbsiglist: fix signature size check
Jeremy Kerr
1
-3
/
+2
2012-08-22
sbvarsign: WIN_CERTIFICATE.dwLength should include the header size
Jeremy Kerr
1
-1
/
+1
2012-08-22
sbvarsign: Fix invalid sizeof() for zeroing timestamp data
Jeremy Kerr
1
-1
/
+1
2012-08-22
sbsiglist: check for owner and type arguments
Jeremy Kerr
1
-0
/
+12
2012-08-14
sbsiglist: Fix SignatureSize
Jeremy Kerr
1
-1
/
+1
2012-08-13
image: use fileio_write_file
Jeremy Kerr
1
-12
/
+1
2012-08-13
Remove unused gen-keyfiles source
Jeremy Kerr
1
-216
/
+0
2012-08-13
docs: Create man pages for sbvarsign & sbsiglist
Jeremy Kerr
3
-2
/
+7
2012-08-13
Move sources to src/ subdirectory
Jeremy Kerr
22
-46
/
+47
2012-08-13
image: Use size of image data when writing images
Jeremy Kerr
4
-4
/
+26
2012-08-13
image: always parse image regions
Jeremy Kerr
4
-31
/
+30
2012-08-13
Include efivars.h in automake infrastructure
Jeremy Kerr
1
-1
/
+2
2012-08-13
tests: run tests for each arch
Jeremy Kerr
18
-59
/
+136
2012-08-13
image: Allow manipulation of i386 PE/COFF files
Jeremy Kerr
2
-23
/
+89
2012-08-10
Remove arch-specific coff headers
Jeremy Kerr
5
-134
/
+2
2012-08-10
image: Prevent an uninitialized variable warning
Maxim Kammerer
1
-0
/
+1
2012-08-10
sbsiglist: Add utility for creating EFI_SIGNATURE_LISTs
Jeremy Kerr
3
-1
/
+295
2012-08-10
fileio: Add fileio_write_file
Jeremy Kerr
2
-0
/
+21
2012-08-10
efivars: rename efi variable header
Jeremy Kerr
2
-1
/
+1
2012-08-03
fileio: Unify whole-file reads
Jeremy Kerr
7
-156
/
+88
2012-08-03
fileio: Unify key & cert loading
Jeremy Kerr
6
-88
/
+138
2012-08-03
image: add functions to add and remove signatures
Jeremy Kerr
7
-12
/
+56
2012-08-02
sbattach: fix --detach
Jeremy Kerr
3
-4
/
+31
2012-08-02
sbattach: fix missing openssl/evp.h header
Jeremy Kerr
1
-0
/
+1
2012-08-02
sbvarsign: First cut of a variable-signing tool
Jeremy Kerr
5
-3
/
+706
2012-06-28
Version 0.3
Jeremy Kerr
1
-1
/
+1
2012-06-28
license: Add OpenSSL exception to GPLv3 terms
Jeremy Kerr
9
-621
/
+744
2012-06-28
COPYING: remove non-license text
Jeremy Kerr
1
-53
/
+0
2012-06-28
image: fix signature calculation when there's junk at the end of the efi binary
James Bottomley
1
-4
/
+17
2012-06-28
tests: Add test for PE/COFF cert table header validity
Jeremy Kerr
2
-1
/
+73
2012-06-28
image: fix incorrect assumption about signature header
James Bottomley
2
-2
/
+3
2012-06-28
sbsign: handle errors from PKCS7_sign_add_signer()
Jeremy Kerr
1
-0
/
+5
2012-06-27
sbsign: fix failure to sign when key is password protected
James Bottomley
1
-0
/
+1
2012-06-20
configure: Add check for bfh.h
Ivan Hu
1
-0
/
+4
2012-06-19
tests: Add a test to check invalid PKCS7 signature attaching
Ivan Hu
2
-1
/
+17
2012-06-19
sbattach: Check that attached signatures are valid PKCS7 data
Ivan Hu
1
-0
/
+25
2012-06-14
sbverify: Use a variable for image filename
Jeremy Kerr
1
-4
/
+6
2012-06-13
image: Unconditionally parse PE/COFF data
Jeremy Kerr
5
-52
/
+51
2012-06-13
sbverify: Check for failed image load
Jeremy Kerr
1
-0
/
+5
2012-06-13
tests: Add tests for missing image, cert & key files
Jeremy Kerr
6
-1
/
+68
2012-06-13
tests: Execute tests in a clean (temporary) directory
Jeremy Kerr
4
-17
/
+22
2012-06-13
tests: Use COMPILE.S for assembing test object
Jeremy Kerr
1
-1
/
+1
2012-06-13
Version 0.2
Jeremy Kerr
1
-1
/
+1
2012-06-13
docs: Add simple manpage for sbattach
Jeremy Kerr
2
-2
/
+4
2012-06-13
automake: Clean generated man files
Jeremy Kerr
1
-0
/
+1
2012-06-13
tests: Add a few simple tests
Jeremy Kerr
9
-2
/
+158
2012-06-13
Remove unused test.c file
Jeremy Kerr
1
-2
/
+0
2012-06-12
sbattach: Add too to manage detached signatures
Jeremy Kerr
2
-1
/
+241
2012-06-12
image: Add facility to write unsigned images
Jeremy Kerr
3
-12
/
+23
2012-06-11
sbsign,sbverify: Update getopt_long optstrings
Jeremy Kerr
2
-2
/
+2
2012-06-11
sbverify: Add support for detached signatures
Jeremy Kerr
1
-3
/
+64
2012-06-11
sbverify: Split image signature table reading to separate function
Jeremy Kerr
1
-8
/
+26
2012-06-11
Fix warnings from added -W flags
Jeremy Kerr
3
-10
/
+40
2012-06-11
automake: Add -Wall -Wextra CFLAGS
Jeremy Kerr
1
-2
/
+4
2012-06-11
sbsign: Add --detached option to create detached PKCS7 signatures
Jeremy Kerr
3
-3
/
+37
2012-06-11
sbsign: fix flag for verbose operation
Jeremy Kerr
1
-1
/
+1
2012-06-11
docs: Fix manpage creation
Jeremy Kerr
2
-2
/
+3
2012-05-29
autogen.sh: Fix ccan_module assignment
Adam Conrad
1
-1
/
+1
2012-05-28
image: use read_write_all from ccan
Jeremy Kerr
2
-38
/
+12
2012-05-28
image: Fix format specifier for 32-bit builds
Jeremy Kerr
1
-2
/
+2
2012-05-28
autoconfiscate
Jeremy Kerr
7
-112
/
+129
2012-05-24
docs: Add initial manpages
Jeremy Kerr
3
-2
/
+17
2012-05-24
sbsign,sbverify: help2man-ize usage output
Jeremy Kerr
3
-15
/
+47
2012-05-24
Makefile: Add dist targets
Jeremy Kerr
1
-0
/
+24
2012-05-24
ccan: Add ccan import logic
Jeremy Kerr
2
-3
/
+32
2012-05-24
Move ccan submodule
Jeremy Kerr
3
-3
/
+2
2012-05-15
Remove unused header
Jeremy Kerr
1
-12
/
+0
2012-05-14
Remove pkcs7-simple test file
Jeremy Kerr
1
-59
/
+0
2012-05-14
Makefile: add install target
Jeremy Kerr
1
-0
/
+12
2012-05-14
Makefile: Comment components
Jeremy Kerr
1
-2
/
+3
2012-05-14
sbverify: clean up openssl init
Jeremy Kerr
1
-3
/
+1
2012-05-14
sbverify: add check for invalid PKCS7 data
Jeremy Kerr
1
-2
/
+7
2012-05-14
sbverify: Add certificate chain verification
Jeremy Kerr
1
-6
/
+100
2012-05-12
verify: move idc-related parsing to idc.c
Jeremy Kerr
3
-27
/
+46
2012-05-12
sbsign: fix incorrect check for certificate load
Jeremy Kerr
1
-1
/
+1
2012-05-12
image: reformat gap warnings
Jeremy Kerr
1
-3
/
+13
2012-05-12
image: add cert table to image size
Jeremy Kerr
1
-1
/
+1
2012-05-12
sbverify: Add check for image hash
Jeremy Kerr
4
-5
/
+77
2012-05-12
sbverify: check for presence of signature table
Jeremy Kerr
1
-0
/
+6
2012-05-12
Makefile: add $(tools) var
Jeremy Kerr
1
-2
/
+4
2012-05-12
sbsigntool -> sbsign
Jeremy Kerr
2
-4
/
+4
2012-05-12
image: open output file with O_TRUNC
Jeremy Kerr
1
-1
/
+1
2012-04-24
sbsigntooL: expand usage info
Jeremy Kerr
1
-1
/
+10
2012-04-24
Add GPLv3 text in COPYING
Jeremy Kerr
1
-0
/
+674
2012-04-24
coff: remove unneeded coff includes
Jeremy Kerr
37
-8435
/
+0
2012-04-23
Add copyright comments
Jeremy Kerr
7
-2
/
+126
2012-04-23
image: warn about potential checksum differences
Jeremy Kerr
1
-1
/
+14
2012-04-23
idc: allocate using the image context
Jeremy Kerr
1
-2
/
+2
2012-04-23
Initial commit
Jeremy Kerr
56
-0
/
+11468