]> code.ossystems Code Review - openembedded-core.git/commit
ovmf: Generate test Platform key and first Key Exchange Key
authorRicardo Neri <ricardo.neri-calderon@linux.intel.com>
Tue, 30 Jul 2019 22:28:29 +0000 (18:28 -0400)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Thu, 8 Aug 2019 09:26:40 +0000 (10:26 +0100)
commitdaaf9d7bd8c3586609ab0eccf49af38dbdb0b02e
treeded8673b7de569dabdc56873a040331068f948b4
parent435d1f8ffe9df86367316d25cb6def2ea2041642
ovmf: Generate test Platform key and first Key Exchange Key

Commit from EDK2 be9470b3c91f ("OvmfPkg/EnrollDefaultKeys: enroll
PK/KEK1 from the Type 11 SMBIOS table") mandates that a Platform Key
and first Key Exchange Key certificate is provided to the
EnrollDefaultKeys application.

Previously, the application was using a hard-coded certificate
from Red Hat embedded in the application.

Create a certificate that can QEMU can subsequently pass to
EnrollDefaultKeys when running qemu-shell-image.

Cc: Ross Burton <ross.burton@intel.com>
Cc: Patrick Ohly <patrick.ohly@intel.com>
Cc: Alexander Kanavin <alex.kanavin@gmail.com>
Signed-off-by: Ricardo Neri <ricardo.neri-calderon@linux.intel.com>
meta/recipes-core/ovmf/ovmf_git.bb