Changelog for
pcr-oracle-0.5.4-41.6.x86_64.rpm :
* Mon Aug 05 2024 Gary Ching-Pang Lin
- Add support-ecc-srk.patch to support ECC SRK- Add fix-testcase-empty-efi-variables.patch to fix the testcase playback on empty EFI variables
* Mon Mar 25 2024 Alberto Planas Dominguez - Add fix_grub_bls_cmdline.patch to include the measurements of the cmdline and the linux and initrd grub commands
* Thu Mar 14 2024 Alberto Planas Dominguez - Add fix_grub_bls_entry.patch to measure boot entries in GRUB BLS
* Mon Feb 26 2024 Alberto Planas Dominguez - Remove fix_efi_measure.patch- Add fix_efi_measure_and_shim.patch (bsc#1219807)
* Tue Feb 20 2024 Alberto Planas Dominguez - Add fix_loader_conf.patch to measure the systemd-boot loader.conf file
* Fri Jan 12 2024 Alberto Planas Dominguez - Add fix_efi_measure.patch to fix the measurement of EFI binaries
* Fri Dec 08 2023 Gary Ching-Pang Lin - Update to 0.5.4 - Improve systemd-boot support - Add --boot-entry for systemd-boot - Manpage fixes - Fix PCR index in JSON file - Fix GrubPcrSnapshot parsing- Drop upstreamed patches: boot_entry.patch and fix_pcr_index.patch
* Wed Nov 29 2023 Alberto Planas Dominguez - Update to 0.5.3 - Improve documentation - Detect key format store via extension - Replace --key-format and --policy-format options with a single - -target-platform option - The json file can contain multiple predictions- Remove fix_rsa.patch as is already upstream- Add boot_entry.patch to add new parameter to point to a new systemd boot entry- Add fix_pcr_index.patch to fix the PCR index number in the JSON file
* Mon Nov 20 2023 Alberto Planas Dominguez - Add fix_rsa.patch to support the export in PEM format of the public key
* Mon Nov 20 2023 Alberto Planas Dominguez - FAPI is not present until tpm2-tss >= 2.4.0. Express that in the BuildRequirement
* Wed Nov 15 2023 Alberto Planas Dominguez - Update to 0.5.2 - Support EV_EVENT_TAG events from the kernel (PCR9 for the cmdline and the kernel) - Fix cmdline measurements- Update to 0.5.1 - Measure the kernel as an EFI binary (PCR4)
* Mon Nov 13 2023 Alberto Planas Dominguez - Update to 0.5.0 - Support systemd-cryptenroll JSON files - Generate RSA keys in more scenarios - Select RSA key size- Drop systemd-boot.patch (already present in upstream)
* Thu Oct 19 2023 Alberto Planas Dominguez - Add systemd-boot.patch to support systemd-cryptenroll JSON files
* Wed Jul 26 2023 Gary Ching-Pang Lin - Add libtss2-tcti-device0 as the default TCTI interface to avoid the following error: Esys_Initialize() Initialize default tcti. ErrorCode (0x000a000a)
* Tue Jul 04 2023 Olaf Kirch - Added a _service file- BuildRequire libopenssl-devel rather than openssl- Updated to version 0.4.6: - recognize SOURCE_DATE_EPOCH for reproducible builds - Remove authorized policy file from the unseal action - Unseal the data without calling __pcr_policy_make() - Skip the variable event with 0 length (#26) - Add the new parameter: policy-name (#27) - Skip the leading operators when matching grub2 commands (#28) - microconf change: force rebuilding the sed script
* Mon Jun 05 2023 Gary Ching-Pang Lin - Update to version 0.4.5 - update manpage to reflect added support of unseal w/ tpm2.0 key format - Implement unseal for TPM 2.0 Key File - Update manpage to describe the new key-format switch - Add TPM 2.0 Key File support to \'seal-secret\' and \'sign\' - Add comment to SRK template regarding NODA flag. - pcr-oracle.8: add a section on pcr policy sealing - Add self-test subcommand to pcr-oracle - Rename __tss_check_error -> tss_check_error - Moved two tss related functions to a file of their own - Add test-pcr.sh script - Use the same SRK template as the one in grub2 - Implement seal/unseal using a regular PCR policy - When displaying the DevicePath, print ACPI PNP ids - Handle failure to read EFI variables more gracefully - Gracefully handle AUTHORITY events for eg driver BSAs that reside in ROM - efi-variable rehash: break out the code to detect how the firmware hashed the event
* Thu Jun 01 2023 Marcus Meissner - build with optflags, remove unneeded clean section, macro bindir
* Mon Jan 16 2023 Olaf Kirch - Updated to version 0.4.2
* Thu Jan 05 2023 Michal Suchanek - Fix project URL
* Wed Jan 04 2023 Olaf Kirch - add --rsa-generate-key option
* Tue Jan 03 2023 Olaf Kirch - Updated to version 0.4.1: - disable debug messages from authenticode PECOFF parser - add --tpm-eventlog option - add manpage
* Mon Jan 02 2023 Olaf Kirch - Updated to version 0.4: - drop the dependency on tss2 fapi - introduce authorized policies
* Tue Nov 08 2022 Olaf Kirch - Establish pcr-oracle as standalone package, apart from fde-tools