home  bbs  files  messages ]

      ZZLI4424             linux.debian.kernel             1332 messages      

[ previous | next | reply ]

[ list messages | list forums ]

  Msg # 229 of 1332 on ZZLI4424, Wednesday 9-09-25, 1:11  
  From: BEN HUTCHINGS  
  To: ANTONIO RUSSO  
  Subj: Re: [RFC] Reorganizing Linux packages  
 From: ben@decadent.org.uk 
  
 On Sat, 2025-08-30 at 08:55 -0600, Antonio Russo wrote: 
 [...] 
 > The changes here will certainly affect my build scripts for the kernel 
 packages, 
 > but I do think there should be a relatively simple pathway available for 
 people 
 > to build a new/different kernel using the debian packaging that integrates 
 > nicely with the rest of Debian. 
 > 
 > Maybe I just need to build the signed packages (Is that difficult? My 
 > understanding that a second build process needs to happen with my own 
 signing 
 > key that would also need to be deployed to all of my machines to allow for 
 > secure boot to be enabled.) 
  
 The signing is not particularly difficult; we use the script 
  
 to do it in CI.  But deployment is indeed more complicated. 
  
 > If that process is too difficult to describe 
 > simply, maybe I'm asking to please not remove the ability to actually use 
 the 
 > unsigned images. 
  
 Since Secure Boot is only supported on some architectures, there is per- 
 architecture configuration ("enabled_signed" in the "build" section) for 
 whether we build an "unsigned" package in preparation for signing, or 
 just build the final package directly.  You can override that in your 
 local build process. 
  
 Ben. 
  
 -- 
 Ben Hutchings 
 If more than one person is responsible for a bug, no one is at fault. 
  
 -----BEGIN PGP SIGNATURE----- 
  
 iQIzBAABCgAdFiEErCspvTSmr92z9o8157/I7JWGEQkFAmi/IroACgkQ57/I7JWG 
 EQmEsw/+MARNGFyRD4eWo7rco9ajOoTMLU5fsfUsn/Sp02SGr4n8CXvvcFJWic1+ 
 RBs46AZtCKqemfBFPZOME3cfHYCxEqw/dUDOt7AdkYAnjPSONctwH6YhcR67aucC 
 Rf/eRFmcQU/sK9KVQo0n3lFPwndr2paDps2FFvOEnN0WJzkrm2aq+3fAhXL3dYTq 
 WgY2Vb9s5XOD1Nvd5oGFITA0yhpVfFQpumTCWrEUY7+hI7ojN3/vpGrM3fvXQ6Ok 
 LrhuMIq84zfMWxBiYbftbL8POep55Rv3JlymUUAEaVNGDI3Yl6vQtmWoFO2R/Isp 
 Ukxbg14tnXUH1JoNlSM2qlpNxLnXdCY0uHRJgv9A7l6cvexZm8VXmge1UVML7iRH 
 GqgHarXW2/keAmmoyxnHn0+R4WQvU0klPGAobCgeof14tt8Hvo4f/xQ/OFiFL6HP 
 G52bwmM7kc2fjcWiBLLW8AW/H9V7CrR+JfS2e6examT81Cu7MMiSzpJnRoXXty48 
 ySZXYyICwVwRE9101PoLgNFAu+6UjQ+UutE6M7zONKy9XrAApuwF4ail02qSq1CX 
 2EOSELCbBMsKcA1LOqkFHiXQF3QtyAhl4Nx+7Cr47HxtPO0ApSeiOBuHnIYBUtZE 
 eoYfB1bu6oCnx/NevQl3irxfpwqeksguYLI6YqJyau272JYG7AE= 
 =yf7X 
 -----END PGP SIGNATURE----- 
  
 --- SoupGate-Win32 v1.05 
  * Origin: you cannot sedate... all the things you hate (1:229/2) 

[ list messages | list forums | previous | next | reply ]

search for:

328,110 visits
(c) 1994,  bbs@darkrealms.ca