From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from lists.gentoo.org (pigeon.gentoo.org [208.92.234.80]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits)) (No client certificate requested) by finch.gentoo.org (Postfix) with ESMTPS id BA4D0158089 for ; Sun, 1 Oct 2023 09:28:07 +0000 (UTC) Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id EB2462BC0BE; Sun, 1 Oct 2023 09:28:03 +0000 (UTC) Received: from smtp.gentoo.org (woodpecker.gentoo.org [140.211.166.183]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits)) (No client certificate requested) by pigeon.gentoo.org (Postfix) with ESMTPS id AF16D2BC01A for ; Sun, 1 Oct 2023 09:28:03 +0000 (UTC) Message-ID: <178a9546-109c-4dd0-a676-1fdebb8d6930@gentoo.org> Date: Sun, 1 Oct 2023 11:27:59 +0200 Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-dev@lists.gentoo.org Reply-to: gentoo-dev@lists.gentoo.org X-Auto-Response-Suppress: DR, RN, NRN, OOF, AutoReply MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Content-Language: en-US, nl-NL To: gentoo-dev@lists.gentoo.org From: Andrew Ammerlaan Subject: [gentoo-dev] [PATCH] kernel-build.eclass: drop obsolete if use secureboot statement Autocrypt: addr=andrewammerlaan@gentoo.org; keydata= xsBNBF3n3cUBCAC6uoDZ0XzaO29l8AzUblXQ5rxZI7nbGEnfFqjEQCK3oEXxsDa9Ez1myx3M ir53Vyx64Iz1Bq/TOS/PttgguPpiLggCpTTD2vavp5SwFmg272+P8bUJVJF2mMRm0OR/YPiA B5dNfcoLqKIj+ZMOtrZ72B7agkUn+iDt8lB2fZ7XhfZMyQBXICYSe+EiJJmTuvIhHhOn7GCT VjpwGYCCSw3F/j2VPmJPUftz6Nb4oWaiaJ6ZwroS2ECYqZKeo+dXCsmB/LZWYqIFSSPILTLZ f1Hh/TklnQqkNVO+nY/B/o9RVYAhWJbl/F4VaKlRXemE+pDZIALlK8kt0IFU6liUOHHlABEB AAHNLUFuZHJldyBBbW1lcmxhYW4gPGFuZHJld2FtbWVybGFhbkBnZW50b28ub3JnPsLAlwQT AQgAQQIbAwULCQgHAgYVCgkICwIEFgIDAQIeAQIXgAUJB17B8hYhBAb/U0G9gF2wvH0HpqGf Y2zU7bzRBQJjZW15AhkBAAoJEKGfY2zU7bzRnzoH/35qBVzk/a2mYkQVDXxtbusEZwFJDNY5 FPVR/qKdN9C0fFdPVmStpMET/YUjltBRNjNwQ2t0Qux0pP2bcRcPXV/6uFifIDdU2wK1cHEZ XWZdhZ9kLQfGF8R0zy0ZiKem+6jIcQ0lZ+sAO5Dp2a/8AWFVWIQs7ZukQYX7bXLj3Hc5J9y3 ZWjwHStoH0fNwTmHy8qNCx02LAbeH4Tite9+wggiOWt85zlRH79aEd/SZwoXa3FQ91v/xkD3 jfv3kF2ImOXSS8lTL9iGYoOuYHQptEXzmSD1fw9fdZAj4f0MZKkFlkRWIHKJi1IMnSDk7f56 2CJ98DJexkG0v88F/ONqJ0POwE0EXefdxQEIAJtT7965MCxOTic3mISWSI6Z3mFFYmUkxQt8 gBVsTAezOrkd6xEt/HnFPZqeGnbSiV8gMFPKv4RkaXxWfQYKm+9/12qJNEFdVop1rpe77lU2 h0elVXuWiWsNmwqEhQcs1mq/awzO81Lyob9Miai2qNQ9MBikmFAp9c4n8C42kPLVrTKPmemI 95gZ1Y830W+udYg1jNqLF2ucMDUX1M1U2EfazWI0pNCwPoKnOqAJS+VQbyxtJ1IlE3+9sk+6 hjlTTF+RDYGv5hUoWkmcXDM2X/Cl0XB4XYOWr17Wa6+WXC+80/iLxxolMqM4KfuIR5OizbqK 2CRAJY7la7TSv1lTD1cAEQEAAcLAfAQYAQgAJgIbDBYhBAb/U0G9gF2wvH0HpqGfY2zU7bzR BQJjZWxoBQkHXsIjAAoJEKGfY2zU7bzR3R0IAISoT/Ev/Z1pEgqXmCMRA33L5AqS9BhpCorq rP+L6bW/3FyZj2CTp2wLvpmipSpQagvfZE/iIxdckQNfTqOvYQzVIHkzMtMWUgo9UPI2YAiT pg6izIBsU6z4CQOS+N+1cfKUax+HflVIhxmHMe//ecABUi3N7tYrKmIsptGLkCkE0mmT7VLp RscXeghS8e5m00Zdm1tDhkkmE8l+U3NbAvhShE9LsxRZpZiV+lFTXd8nBifPea2F7VYteD2j s/aPMSzH+6qmXeTu1gH8HuGZuW/REDY+lTVmhZ3Caa50yTNB5s90kprPvIfDAB6cbglpwvpD eZueZnPaHcGF1SLcC48= Organization: Gentoo Linux Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 7bit X-Archives-Salt: 594bd2be-17ce-4b07-b1b2-9058dafc9937 X-Archives-Hash: 4b148568b133462f5704b8f5005b4918 From 9f9da2272d413bd06cd7cfce65fb15bab848a6b7 Mon Sep 17 00:00:00 2001 From: Andrew Ammerlaan Date: Fri, 15 Sep 2023 07:53:56 +0200 Subject: [PATCH] kernel-build.eclass: drop obsolete if use secureboot statement CONFIG_EFI_ZBOOT (among other things) is now set by secureboot.config in GENTOO_CONFIG version g9 and up. All {gentoo,vanilla}-kernel versions with "KERNEL_IUSE_MODULES_SIGN=1" and GENTOO_CONFIG_VER<9 have been removed. Signed-off-by: Andrew Ammerlaan --- eclass/kernel-build.eclass | 14 -------------- 1 file changed, 14 deletions(-) diff --git a/eclass/kernel-build.eclass b/eclass/kernel-build.eclass index 01cd184f41c0e..4f7e4d0477393 100644 --- a/eclass/kernel-build.eclass +++ b/eclass/kernel-build.eclass @@ -444,20 +444,6 @@ kernel-build_merge_configs() { fi fi - if [[ ${KERNEL_IUSE_SECUREBOOT} ]]; then - if use secureboot; then - # This only effects arm64 and riscv where the bootable image may - # contain its own decompressor (zboot). If enabled we get a - # sign-able efi file. - cat <<-EOF > "${WORKDIR}/secureboot.config" || die - ## Enable zboot for signing - CONFIG_EFI_ZBOOT=y - EOF - - merge_configs+=( "${WORKDIR}/secureboot.config" ) - fi - fi - if [[ ${#user_configs[@]} -gt 0 ]]; then elog "User config files are being applied:" local x