mirror of
https://github.com/freebsd/freebsd-src
synced 2024-10-15 21:05:08 +00:00
libsecureboot allow site.trust.mk to override settings
The current content of local.trust.mk is mostly for example purposes.
This commit is contained in:
parent
2b8331622f
commit
d1dfe419ac
|
@ -37,6 +37,9 @@ VE_SIGNATURE_EXT_LIST+= \
|
||||||
VE_SIGNATURE_LIST+= OPENPGP
|
VE_SIGNATURE_LIST+= OPENPGP
|
||||||
VE_SIGNATURE_EXT_LIST+= asc
|
VE_SIGNATURE_EXT_LIST+= asc
|
||||||
|
|
||||||
|
# allow site override of all the above
|
||||||
|
.-include "site.trust.mk"
|
||||||
|
|
||||||
SIGNER ?= ${SB_TOOLS_PATH:U/volume/buildtools/bin}/sign.py
|
SIGNER ?= ${SB_TOOLS_PATH:U/volume/buildtools/bin}/sign.py
|
||||||
|
|
||||||
.if exists(${SIGNER})
|
.if exists(${SIGNER})
|
||||||
|
@ -109,7 +112,7 @@ ta.h: vc_rsa.pem
|
||||||
TRUST_ANCHORS!= cd ${.CURDIR} && 'ls' -1 *.pem t*.asc 2> /dev/null
|
TRUST_ANCHORS!= cd ${.CURDIR} && 'ls' -1 *.pem t*.asc 2> /dev/null
|
||||||
.endif
|
.endif
|
||||||
.if empty(TRUST_ANCHORS) && ${MK_LOADER_EFI_SECUREBOOT} != "yes"
|
.if empty(TRUST_ANCHORS) && ${MK_LOADER_EFI_SECUREBOOT} != "yes"
|
||||||
.error Need TRUST_ANCHORS see ${.CURDIR}/README.rst
|
.error Need TRUST_ANCHORS see ${.PARSEDIR}/README.rst
|
||||||
.endif
|
.endif
|
||||||
.if ${TRUST_ANCHORS:T:Mt*.pem} != ""
|
.if ${TRUST_ANCHORS:T:Mt*.pem} != ""
|
||||||
ta.h: ${TRUST_ANCHORS:M*.pem}
|
ta.h: ${TRUST_ANCHORS:M*.pem}
|
||||||
|
|
Loading…
Reference in a new issue