FS#80243 - [ipxe] embed another developer's certificate in ipxe-arch.*

Attached to Project: Arch Linux
Opened by nl6720 (nl6720) - Monday, 13 November 2023, 12:50 GMT
Last edited by Buggy McBugFace (bugbot) - Saturday, 25 November 2023, 20:26 GMT
Task Type Feature Request
Category Packages: Extra
Status Closed
Assigned To David Runge (dvzrv)
Architecture All
Severity Low
Priority Normal
Reported Version
Due in Version Undecided
Due Date Undecided
Percent Complete 100%
Votes 0
Private No

Details

Description:
ipxe-arch.efi, ipxe-arch.lkrn and ipxe-arch.pxe embed codesigning_pierre_archlinux.pem. This causes issues when the owner of that codesigning certificate is not able to release the monthly ISO & netboot artifacts for one reason or another.

A simple solution would be to additionally embed another developer's codesigning certificate in the iPXE builds. Afterwards, the images and signatures in https://github.com/archlinux/archweb/tree/master/sitestatic/netboot will need to be updated.


Additional info:
* package version(s)
* config and/or log files etc.
* link to upstream bug report, if any
ipxe 1.21.1-5


Steps to reproduce:
This task depends upon

Closed by  Buggy McBugFace (bugbot)
Saturday, 25 November 2023, 20:26 GMT
Reason for closing:  Moved
Additional comments about closing:  https://gitlab.archlinux.org/archlinux/p ackaging/packages/ipxe/issues/2

Loading...