|
[meta-security][PATCH 4/8] ima: Rename IMA_EVM_POLICY_SYSTEMD to IMA_EVM_POLICY
The IMA policy will be specified using the IMA_EVM_POLICY variable since systemd will not be involved in loading the policy but the init script will load it. Signed-off-by: Stefan Berger <stefanb@...>
The IMA policy will be specified using the IMA_EVM_POLICY variable since systemd will not be involved in loading the policy but the init script will load it. Signed-off-by: Stefan Berger <stefanb@...>
|
By
Stefan Berger
·
|
|
[meta-security][PATCH 1/8] ima: Document and replace keys and adapt scripts for EC keys
For shorted file signatures use EC keys rather than RSA keys. Document the debug keys and their purpose. Adapt the scripts for creating these types of keys to now create EC keys. Signed-off-by: Stefan
For shorted file signatures use EC keys rather than RSA keys. Document the debug keys and their purpose. Adapt the scripts for creating these types of keys to now create EC keys. Signed-off-by: Stefan
|
By
Stefan Berger
·
|
|
CFP for Yocto Dev Day - colocated with EOSS 2023, Prague
Hi all! We are happy to have an in-person Dev Day again, colocated with the EOSS in Prague. It will take place on Monday June 26th, and it... (wait for it)... needs YOU! Specifically, it needs your id
Hi all! We are happy to have an in-person Dev Day again, colocated with the EOSS in Prague. It will take place on Monday June 26th, and it... (wait for it)... needs YOU! Specifically, it needs your id
|
By
Josef Holzmayr
·
|
|
[meta-security][PATCH] maintainers.inc: rename to avoid clashes with oe-core
Additional maintainer entries should be added to ones provided by oe-core, but not be replacing them, as that breaks oe-core tests. Another option is to place them directly into recipes. Signed-off-by
Additional maintainer entries should be added to ones provided by oe-core, but not be replacing them, as that breaks oe-core tests. Another option is to place them directly into recipes. Signed-off-by
|
By
Alexander Kanavin
·
|
|
[meta-security][PATCH 4/4] fscryptctl: update to 1.0.1
Don't build man as it needs pandoc Signed-off-by: Armin Kuster <akuster808@...> --- .../{fscryptctl_1.0.0.bb => fscryptctl_1.1.0.bb} | 7 ++++++- 1 file changed, 6 insertions(+), 1 deletion(-) rename r
Don't build man as it needs pandoc Signed-off-by: Armin Kuster <akuster808@...> --- .../{fscryptctl_1.0.0.bb => fscryptctl_1.1.0.bb} | 7 ++++++- 1 file changed, 6 insertions(+), 1 deletion(-) rename r
|
By
Armin Kuster
·
|
|
[meta-security][PATCH 3/4] suricata: update to 6.0.11
Signed-off-by: Armin Kuster <akuster808@...> --- recipes-ids/suricata/{suricata_6.0.10.bb => suricata_6.0.11.bb} | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) rename recipes-ids/suricata/{suric
Signed-off-by: Armin Kuster <akuster808@...> --- recipes-ids/suricata/{suricata_6.0.10.bb => suricata_6.0.11.bb} | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) rename recipes-ids/suricata/{suric
|
By
Armin Kuster
·
|
|
[meta-security][PATCH 2/4] libhtp: update to 0.5.43
Signed-off-by: Armin Kuster <akuster808@...> --- recipes-ids/suricata/{libhtp_0.5.42.bb => libhtp_0.5.43.bb} | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) rename recipes-ids/suricata/{libhtp_0.
Signed-off-by: Armin Kuster <akuster808@...> --- recipes-ids/suricata/{libhtp_0.5.42.bb => libhtp_0.5.43.bb} | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) rename recipes-ids/suricata/{libhtp_0.
|
By
Armin Kuster
·
|
|
[meta-security][PATCH 1/4] ossec-hids: update to tip of 3.7.0
Signed-off-by: Armin Kuster <akuster808@...> --- recipes-ids/ossec/ossec-hids_3.7.0.bb | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/recipes-ids/ossec/ossec-hids_3.7.0.bb b/recipes
Signed-off-by: Armin Kuster <akuster808@...> --- recipes-ids/ossec/ossec-hids_3.7.0.bb | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/recipes-ids/ossec/ossec-hids_3.7.0.bb b/recipes
|
By
Armin Kuster
·
|
|
Error: Nothing PROVIDES ‘opensll-micmy-mod’ when add the new layer
#bitbake
#ubuntu
#yocto
Hi, All I build the board s32g274ardb2 to use BSP36.0, it can make the image. Now I want to add new layer to project, so I setup the new layaer meta-mylayer, I create the .bb .c and makefile. Then I a
Hi, All I build the board s32g274ardb2 to use BSP36.0, it can make the image. Now I want to add new layer to project, so I setup the new layaer meta-mylayer, I create the .bb .c and makefile. Then I a
|
By
adalovelace1101@...
·
|
|
[meta-security][PATCH 4/4] libtpm: update to 0.9.6
include: CVE-2023-1017 & CVE-2023-1018 Signed-off-by: Armin Kuster <akuster808@...> --- .../recipes-tpm/libtpm/{libtpm_0.9.5.bb => libtpm_0.9.6.bb} | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-)
include: CVE-2023-1017 & CVE-2023-1018 Signed-off-by: Armin Kuster <akuster808@...> --- .../recipes-tpm/libtpm/{libtpm_0.9.5.bb => libtpm_0.9.6.bb} | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-)
|
By
Armin Kuster
·
|
|
[meta-security][PATCH 3/4] swtpm: update to 0.8.0
includes CVE-2022-23645 Signed-off-by: Armin Kuster <akuster808@...> --- meta-tpm/recipes-tpm/swtpm/{swtpm_0.7.3.bb => swtpm_0.8.0.bb} | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) rename m
includes CVE-2022-23645 Signed-off-by: Armin Kuster <akuster808@...> --- meta-tpm/recipes-tpm/swtpm/{swtpm_0.7.3.bb => swtpm_0.8.0.bb} | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) rename m
|
By
Armin Kuster
·
|
|
[meta-security][PATCH 2/4] recipes-tpm: use this for common tpm recipes
a bit of re-org Signed-off-by: Armin Kuster <akuster808@...> --- .../libtpm/files/Convert-another-vdprintf-to-dprintf.patch | 0 .../libtpm/files/Use-format-s-for-call-to-dprintf.patch | 0 .../libtpm/f
a bit of re-org Signed-off-by: Armin Kuster <akuster808@...> --- .../libtpm/files/Convert-another-vdprintf-to-dprintf.patch | 0 .../libtpm/files/Use-format-s-for-call-to-dprintf.patch | 0 .../libtpm/f
|
By
Armin Kuster
·
|
|
[meta-security][PATCH 1/4] meta-tpm: rename recipes-tpm to recipes-tpm1
a bit of re-org. Signed-off-by: Armin Kuster <akuster808@...> --- meta-tpm/{recipes-tpm => recipes-tpm1}/hoth/libhoth_git.bb | 0 .../libtpm/files/Convert-another-vdprintf-to-dprintf.patch | 0 .../libt
a bit of re-org. Signed-off-by: Armin Kuster <akuster808@...> --- meta-tpm/{recipes-tpm => recipes-tpm1}/hoth/libhoth_git.bb | 0 .../libtpm/files/Convert-another-vdprintf-to-dprintf.patch | 0 .../libt
|
By
Armin Kuster
·
|
|
Error building m4-native while trying to build Beaglebone Black branch
4 messages
Greetings, I am trying to follow the docs to build Yocto for the Beaglebone Black[1]. I've been able to clone everything just fine. I am triggering the following #errors when I try to run 'bitbake-ima
Greetings, I am trying to follow the docs to build Yocto for the Beaglebone Black[1]. I've been able to clone everything just fine. I am triggering the following #errors when I try to run 'bitbake-ima
|
By
Steven Weaver
·
|
|
OpenEmbedded Happy Hour April 26 9pm/2100 UTC
All, You are cordially invited to the next OpenEmbedded Happy Hour on April 26 for Asia/Pacific timezones @ 2100/9pm UTC (5pm ET / 2pm PT): https://www.openembedded.org/wiki/Calendar https://www.opene
All, You are cordially invited to the next OpenEmbedded Happy Hour on April 26 for Asia/Pacific timezones @ 2100/9pm UTC (5pm ET / 2pm PT): https://www.openembedded.org/wiki/Calendar https://www.opene
|
By
Denys Dmytriyenko
·
|
|
Yocto Project Status 25 April 2023 (WW17)
Current Dev Position: YP 4.3 M1 Next Deadline: 28th April 2023 YP 4.2 Release Next Team Meetings: Bug Triage meeting Thursday April 27th 7:30 am PDT (https://zoom.us/j/454367603?pwd=ZGxoa2ZXL3FkM3Y0bF
Current Dev Position: YP 4.3 M1 Next Deadline: 28th April 2023 YP 4.2 Release Next Team Meetings: Bug Triage meeting Thursday April 27th 7:30 am PDT (https://zoom.us/j/454367603?pwd=ZGxoa2ZXL3FkM3Y0bF
|
By
Stephen Jolley
·
|
|
[meta-selinux][PATCH 2/2] linux-yocto: drop CONFIG_SECURITY_SELINUX_CHECKREQPROT_VALUE
CONFIG_SECURITY_SELINUX_CHECKREQPROT_VALUE is deprecated and will be rejected in a future kernel release[1]. [1] https://github.com/SELinuxProject/selinux-kernel/wiki/DEPRECATE-checkreqprot Signed-off
CONFIG_SECURITY_SELINUX_CHECKREQPROT_VALUE is deprecated and will be rejected in a future kernel release[1]. [1] https://github.com/SELinuxProject/selinux-kernel/wiki/DEPRECATE-checkreqprot Signed-off
|
By
Yi Zhao
·
|
|
[meta-selinux][PATCH 1/2] setools: upgrade 4.1 -> 4.2
ChangeLog: https://github.com/SELinuxProject/setools/releases/tag/4.4.2 Signed-off-by: Yi Zhao <yi.zhao@...> --- recipes-security/setools/{setools_4.4.1.bb => setools_4.4.2.bb} | 2 +- 1 file changed,
ChangeLog: https://github.com/SELinuxProject/setools/releases/tag/4.4.2 Signed-off-by: Yi Zhao <yi.zhao@...> --- recipes-security/setools/{setools_4.4.1.bb => setools_4.4.2.bb} | 2 +- 1 file changed,
|
By
Yi Zhao
·
|
|
Ownership issue during do_image
6 messages
Hello list, I currently migrate our project from warrior to dunfell and we experience some issues during the image generation step. We have a custom IMAGE_FSTYPES to meet our need and in one of our cu
Hello list, I currently migrate our project from warrior to dunfell and we experience some issues during the image generation step. We have a custom IMAGE_FSTYPES to meet our need and in one of our cu
|
By
Frederic Martinsons
·
|
|
[meta-cgl][kirkstone][PATCH 1/1] pacemaker: Remove build host path
2 messages
File installed by pacemaker-cli-utils contains path of build host. Signed-off-by: Soumya <soumya.sambu@...> --- meta-cgl-common/recipes-cgl/pacemaker/pacemaker_2.0.5.bb | 6 ++++++ 1 file changed, 6 in
File installed by pacemaker-cli-utils contains path of build host. Signed-off-by: Soumya <soumya.sambu@...> --- meta-cgl-common/recipes-cgl/pacemaker/pacemaker_2.0.5.bb | 6 ++++++ 1 file changed, 6 in
|
By
Soumya
·
|