Arch Linux

Please read this before reporting a bug:

Do NOT report bugs when a package is just outdated, or it is in the AUR. Use the 'flag out of date' link on the package page, or the Mailing List.

REPEAT: Do NOT report bugs for outdated packages!

FS#72415 - [grub] 2.06 please add a sbat file to the package

Attached to Project: Arch Linux
Opened by Tobias Powalowski (tpowa) - Thursday, 14 October 2021, 05:11 GMT
Task Type Bug Report
Category Packages: Core
Status Assigned
Assigned To Ronald van Haren (pressh)
Christian Hesse (eworm)
Architecture All
Severity High
Priority Normal
Reported Version
Due in Version Undecided
Due Date Undecided
Percent Complete 0%
Votes 0
Private No


Hi, in order to be able to boot secure boot through shim this file is needed during grubx64.efi generation invoking --sbat option:

Example from archboot code:
# create Arch Linux sbat file
echo "sbat,1,SBAT Version,sbat,1," > ${X86_64}/sbat.csv
echo "grub,1,Free Software Foundation,grub,2.06,https//" >> ${X86_64}/sbat.csv
echo "grub.arch,1,Arch Linux,grub2,2.06," >> ${X86_64}/sbat.csv
This task depends upon

Comment by Morten Linderud (Foxboron) - Thursday, 14 October 2021, 07:37 GMT
The sbat entry is wrong.

"arch,1,Arch Linux,$pkgname,$pkgver,"

Should be correct I believe and follows what systemd and fwupd currently does.