Harald Hoyer
|
8dfaa0d4be
|
move everything configurable to /cfg and try selinux
|
2018-09-17 17:32:13 +02:00 |
|
Harald Hoyer
|
a95907fd97
|
pkglist.txt: add fwupdate
|
2018-09-14 16:30:32 +02:00 |
|
Harald Hoyer
|
f376db37d3
|
README.md: update
|
2018-09-14 16:29:42 +02:00 |
|
Harald Hoyer
|
f7c9b1aa98
|
update.sh: check if all files are signed
also source a custom update.sh if present
|
2018-09-14 12:53:44 +02:00 |
|
Harald Hoyer
|
82d771110c
|
mkrelease.sh: prevent double sign
|
2018-09-14 12:43:15 +02:00 |
|
Harald Hoyer
|
4c966c6d4a
|
README: update
|
2018-09-14 11:51:13 +02:00 |
|
Harald Hoyer
|
55a963613d
|
mkimage.sh: add --efishell option
|
2018-09-14 11:51:13 +02:00 |
|
Harald Hoyer
|
04f270c58e
|
mkrelease.sh: use sbsign as EFI signing tool
|
2018-09-14 11:37:54 +02:00 |
|
Harald Hoyer
|
090dd46a8e
|
mkimage.sh: also handle json file as source
|
2018-09-14 11:37:54 +02:00 |
|
Harald Hoyer
|
bb548a3d90
|
update.sh: cleanup anything on exit on failure
|
2018-09-14 11:37:54 +02:00 |
|
Harald Hoyer
|
2a52421b24
|
update.sh: Change the EFI boot order
DELL BIOS' don't do real fallback, if the efi binary does not exist.
Gah!
|
2018-09-14 11:37:54 +02:00 |
|
Harald Hoyer
|
8843cfd665
|
patch libc.so for localtime change
|
2018-09-14 11:37:54 +02:00 |
|
Harald Hoyer
|
c21117a4ff
|
increase the logo size
|
2018-09-14 11:37:54 +02:00 |
|
Harald Hoyer
|
c6edfc3148
|
clonedisk.sh: fix installation of 1.efi
|
2018-09-13 15:52:36 +02:00 |
|
Harald Hoyer
|
767f08b9d9
|
clonedisk.sh: fix efibootmgr installation
|
2018-09-13 15:51:43 +02:00 |
|
Harald Hoyer
|
92ed642dde
|
put EFI tools in tarball
|
2018-09-13 15:02:05 +02:00 |
|
Harald Hoyer
|
8d930e2784
|
prepare-root.sh: add default NM /etc config
|
2018-09-13 15:01:38 +02:00 |
|
Harald Hoyer
|
a5393bfa60
|
remove *qt*
|
2018-09-13 15:01:00 +02:00 |
|
Harald Hoyer
|
a2bd2d4182
|
mkimage.sh: add hook for Shell.efi with startup.nsh
|
2018-09-13 13:46:08 +02:00 |
|
Harald Hoyer
|
23680b65ff
|
prepare-root.sh: fix /root symlink
|
2018-09-13 13:44:23 +02:00 |
|
Harald Hoyer
|
ddbef9392b
|
prepare-root.sh: don't move away vmlinuz
|
2018-09-13 13:43:18 +02:00 |
|
Harald Hoyer
|
61f55d1612
|
prepare-root.sh: cleanup dracut remains
|
2018-09-13 13:42:50 +02:00 |
|
Harald Hoyer
|
612289f5af
|
mkimage.sh: fix LockDown.efi and Shell.efi copy
|
2018-09-13 11:30:59 +02:00 |
|
Harald Hoyer
|
7a10c19f02
|
clonedisk.sh,mkimage.sh: install Shell.efi and Lockdown.efi
|
2018-09-13 10:59:06 +02:00 |
|
Harald Hoyer
|
7b5e78e9a1
|
clonedisk.sh: fixed dd typo
|
2018-09-13 10:58:48 +02:00 |
|
Harald Hoyer
|
d6f7aec884
|
mkrelease.sh: add --notar
|
2018-09-13 10:58:26 +02:00 |
|
Harald Hoyer
|
c275d3c6d8
|
mkrelease.sh: add --nosign option
|
2018-09-13 10:15:54 +02:00 |
|
Harald Hoyer
|
44e7216ae7
|
pkglist.txt: update and sort
|
2018-09-13 10:12:17 +02:00 |
|
Harald Hoyer
|
7a269d3c1f
|
prepare-root.sh: ensure home dir exists
|
2018-09-12 17:09:34 +02:00 |
|
Harald Hoyer
|
6036c0d2ba
|
mkrelease.sh: add UEFI signing
|
2018-09-12 16:44:03 +02:00 |
|
Harald Hoyer
|
edee679f34
|
pre-pivot.sh: udevadm settle
wait for udev to settle to mount the correct data disk
|
2018-09-12 16:40:53 +02:00 |
|
Harald Hoyer
|
daa5bdd118
|
prepare-root.sh: set lockdown=1 on the kernel cmdline
|
2018-09-12 16:40:19 +02:00 |
|
Harald Hoyer
|
074dddddf6
|
quirks/nss.sh: don't create /home/admin
|
2018-09-12 16:39:52 +02:00 |
|
Harald Hoyer
|
923e5c9dd5
|
pkglist.txt: moar packages
|
2018-09-12 16:39:18 +02:00 |
|
Harald Hoyer
|
b449e327c7
|
clonedisk.sh: Don't fail if EFI boot entries already set
|
2018-09-12 16:38:06 +02:00 |
|
Harald Hoyer
|
1138c7c1ec
|
update.sh: be more careful searching for the correct disk
otherwise we might catch the install USB stick still inserted
|
2018-09-12 16:37:15 +02:00 |
|
Harald Hoyer
|
1dc7a0fae6
|
use single image for squashfs and dmverity
|
2018-09-11 16:49:44 +02:00 |
|
Harald Hoyer
|
7e93df54b4
|
add yubikey udev rules
|
2018-09-11 16:49:18 +02:00 |
|
Harald Hoyer
|
0e17648dc5
|
update
|
2018-09-11 11:37:59 +02:00 |
|
Harald Hoyer
|
c8a3101e7b
|
tss before nss quirk
|
2018-09-10 17:11:47 +02:00 |
|
Harald Hoyer
|
bc0266de48
|
pkglist.txt: add pesign
|
2018-09-10 16:52:27 +02:00 |
|
Harald Hoyer
|
a320d42d51
|
fixed /data paths
|
2018-09-10 16:28:48 +02:00 |
|
Harald Hoyer
|
8dfa7e146a
|
add mkrelease.sh
|
2018-09-10 15:53:23 +02:00 |
|
Harald Hoyer
|
d18cdafa5b
|
update
|
2018-09-10 15:53:21 +02:00 |
|
Harald Hoyer
|
7d097f89e7
|
update
|
2018-09-10 14:19:20 +02:00 |
|
Harald Hoyer
|
2e63e25d7d
|
update
|
2018-09-07 17:02:36 +02:00 |
|
Harald Hoyer
|
55202efcba
|
add man pages
|
2018-09-06 16:17:45 +02:00 |
|
Harald Hoyer
|
5d5ec9682e
|
update
|
2018-09-06 15:57:20 +02:00 |
|
Harald Hoyer
|
6910172911
|
extend PCR7 after using it to unlock the LUKS
|
2018-09-05 16:50:45 +02:00 |
|
Harald Hoyer
|
52e5a2c9fa
|
force admin to change the password
|
2018-09-05 15:52:36 +02:00 |
|