-
Notifications
You must be signed in to change notification settings - Fork 147
Open
Labels
acceptedSubmission is ready for sysdevSubmission is ready for sysdevcontacts verified OKContact verification is complete here (or in an earlier submission)Contact verification is complete here (or in an earlier submission)
Description
Confirm the following are included in your repo, checking each box:
- completed README.md file with the necessary information
https://github.com/MiraySoftware/shim-review/tree/miraysoftware-shim-x64+aa64-20250901/README.md - shim.efi to be signed
https://github.com/MiraySoftware/shim-review/tree/miraysoftware-shim-x64+aa64-20250901/shim_mirayx64.efi
https://github.com/MiraySoftware/shim-review/tree/miraysoftware-shim-x64+aa64-20250901/shim_mirayaa64.efi - public portion of your certificate(s) embedded in shim (the file passed to VENDOR_CERT_FILE)
https://github.com/MiraySoftware/shim-review/tree/miraysoftware-shim-x64+aa64-20250901/MiraySoftwareAG2023.DER.cer - binaries, for which hashes are added to vendor_db ( if you use vendor_db and have hashes allow-listed )
Not used - any extra patches to shim via your own git tree or as files
https://github.com/MiraySoftware/shim-review/tree/miraysoftware-shim-x64+aa64-20250901/shim-patches - any extra patches to grub via your own git tree or as files
https://github.com/MiraySoftware/grub2/tree/sysload_2_9 - build logs
https://github.com/MiraySoftware/shim-review/tree/miraysoftware-shim-x64+aa64-20250901/build.x64.log
https://github.com/MiraySoftware/shim-review/tree/miraysoftware-shim-x64+aa64-20250901/build.aa64.log - a Dockerfile to reproduce the build of the provided shim EFI binaries
https://github.com/MiraySoftware/shim-review/tree/miraysoftware-shim-x64+aa64-20250901/Dockerfile
What is the link to your tag in a repo cloned from rhboot/shim-review?
https://github.com/MiraySoftware/shim-review/tree/miraysoftware-shim-x64+aa64-20250901
What is the SHA256 hash of your final SHIM binary?
shim_mirayx64.efi: 501583ec5172af77e715d9f3348ce23ba970caab3b892334658676be29085860
shim_mirayaa64.efi: d8f2c2a4683fdafa4ea7f4d2515dcda7201ca51e676f53adfb6c3f2a9a9f1f6e
What is the link to your previous shim review request (if any, otherwise N/A)?
If no security contacts have changed since verification, what is the link to your request, where they've been verified (if any, otherwise N/A)?
Last verification:
#247
The key for ar@miray.de is still valid
The old PGP-Key key for tf@miray.de has expired and was replaced by a new one
So a new contact verification is likely necessary for tf@miray.de
Metadata
Metadata
Assignees
Labels
acceptedSubmission is ready for sysdevSubmission is ready for sysdevcontacts verified OKContact verification is complete here (or in an earlier submission)Contact verification is complete here (or in an earlier submission)