Commit Graph

  • 46df12d579
    Merge pull request #38 from nix-community/fix-malformed-gens nikstur 2022-12-26 02:51:15 +0100
  • 0ad20b0d5a lanzatool: ignore malformed generations Raito Bezarius 2022-12-26 02:36:24 +0100
  • de5545a67f
    Merge pull request #36 from nix-community/non-flake nikstur 2022-12-26 01:24:26 +0100
  • 8e482e7db9 chore: support non-flake users Raito Bezarius 2022-12-26 01:22:13 +0100
  • 287fb0978d
    Merge pull request #35 from nix-community/refactor-nix nikstur 2022-12-25 19:03:44 +0100
  • a6926d7419 flake.nix: add statix and nixpkgs-fmt to devSHell nikstur 2022-12-25 16:25:14 +0100
  • 7d5ac15cbb nix.tests: move from flake nikstur 2022-12-25 16:18:53 +0100
  • 912c9b27a6 nix: move package and module into subdir nikstur 2022-12-25 15:49:49 +0100
  • e90262608e flake.nix: apply suggestions from statix nikstur 2022-12-25 15:46:41 +0100
  • eb9b1bbbe3 treewide: format with nixpkgs-fmt nikstur 2022-12-25 15:43:52 +0100
  • 07fc31613e
    Merge pull request #27 from nix-community/docs nikstur 2022-12-25 18:22:59 +0100
  • c38e155d3c documentation: add a simple quick start Raito Bezarius 2022-12-21 03:52:30 +0100
  • 14c6c413f3
    Merge pull request #26 from nix-community/upstream-bootspec nikstur 2022-12-25 18:11:28 +0100
  • 65f3c67357 lanzatool: appease clippy by removing borrow nikstur 2022-12-23 01:04:07 +0100
  • 6e66c5f0ed Cargo.toml: update bootspec to upstream nikstur 2022-12-23 01:03:32 +0100
  • e3f6029643 nixos/lanzaboote: use upstream bootspec for extension generation Raito Bezarius 2022-12-18 00:31:09 +0100
  • 1e149b8e9f
    Merge pull request #32 from nix-community/nlnet Ryan Lahfa 2022-12-21 20:24:40 +0100
  • 1b9fac224d readme: thank (a lot) NLnet for making this possible Raito Bezarius 2022-12-21 04:57:01 +0100
  • 92e7e4f49a lanzatool(bootspec): introduce DetSys's bootspec library Raito Bezarius 2022-12-17 23:55:38 +0100
  • 30be791826
    Merge pull request #24 from nix-community/remove-auto-entroll Julian Stecklina 2022-12-11 14:48:27 +0000
  • 1a63419003
    Merge pull request #25 from nix-community/flake Julian Stecklina 2022-12-11 14:47:27 +0000
  • 3a0a8e7d71
    Update flake.nix Jörg Thalheim 2022-12-10 17:26:47 +0000
  • 36c0a13c4c lanzaboote module: remove --pki-bundle option nikstur 2022-12-03 17:14:50 +0100
  • 614131d648 lanzatool: remove placeholder code for auto enrolling uefi keys nikstur 2022-12-01 21:15:40 +0100
  • 06da27529f
    Merge pull request #21 from nix-community/boot-file-integrity Julian Stecklina 2022-12-09 23:54:14 +0000
  • c9f9f1c52a nixos/lanzaboote: pkiBundle is not actual optional Jörg Thalheim 2022-12-08 21:26:16 +0100
  • 39774a6974 fix lanzaboote module import Jörg Thalheim 2022-12-08 21:23:35 +0100
  • a4ddbada50 deduplicate flakes Jörg Thalheim 2022-12-08 20:39:35 +0100
  • 49a8ae8aec lanzatool: skip existing files in esp nikstur 2022-12-03 13:16:46 +0100
  • d35ca2d7d3 nix: fix initrd integration test Julian Stecklina 2022-11-28 11:27:31 +0100
  • 85b111aa17 initrd-stub: drop unused stub Julian Stecklina 2022-11-28 02:59:21 +0100
  • 401c3b8c1c lanzatool, lanzaboote: don't wrap initrd as PE Julian Stecklina 2022-11-28 02:39:36 +0100
  • 1739ffde26 lanzaboote: verify hash of kernel and initrd Julian Stecklina 2022-11-28 01:37:16 +0100
  • 7a15bba50b lanzaboote: load kernel and initrd into memory only once Julian Stecklina 2022-11-27 20:34:39 +0100
  • d754a87d5c lanzaboote: cleanup kernel/initrd opening Julian Stecklina 2022-11-27 20:04:41 +0100
  • 3f78939d0a lanzatool: embed kernel and initrd hashes Julian Stecklina 2022-11-28 02:23:43 +0100
  • ba119d398f lanzatool: add function documentation Julian Stecklina 2022-11-28 02:10:41 +0100
  • e496b60be1
    Merge pull request #22 from nix-community/crane Ryan Lahfa 2022-11-29 22:42:13 +0100
  • c3e0e73b82
    Merge pull request #23 from nix-community/test-sd-stage1 Julian Stecklina 2022-11-29 21:04:50 +0000
  • f7c66b027a lanzaboot: test systemd stage 1 Raito Bezarius 2022-11-29 20:10:55 +0100
  • 28bb93c5f3 nix: switch everything to crane and drop naersk Julian Stecklina 2022-11-28 13:48:25 +0100
  • 7926ab9e5e lanzaboote: fix clippy issues Julian Stecklina 2022-11-28 13:38:01 +0100
  • 4fb1e0d0dd flake.lock: Update Julian Stecklina 2022-11-28 13:15:59 +0100
  • e6aa11f76c
    Merge pull request #19 from blitz/specialisation nikstur 2022-11-27 18:19:59 +0100
  • 0a638970e7 lanzatool: enable specialisation nikstur 2022-11-27 11:19:02 +0100
  • 8e04bbf63c Merge pull request #18 from blitz/lanzatool-cli-help nikstur 2022-11-27 00:21:28 +0100
  • 98cf9e0978 lanzatool: improve --help output nikstur 2022-11-27 00:12:00 +0100
  • 452e558e40 Merge pull request #17 from blitz/appease-clippy Julian Stecklina 2022-11-26 23:36:15 +0100
  • fffa7d6bfa lanzatool: appease clippy nikstur 2022-11-26 23:19:08 +0100
  • f080c010e9 Merge pull request #16 from blitz/lanzatool-bootspec-from-generation nikstur 2022-11-26 23:13:32 +0100
  • 0a96623461 lanzatool: bootspec from generation nikstur 2022-11-26 22:23:00 +0100
  • 3c094ee5ff flake.nix: remove some redundancies nikstur 2022-11-26 22:19:15 +0100
  • 3548c1a459 Merge pull request #15 from blitz/lanzatool-sign-and-copy nikstur 2022-11-26 19:30:09 +0100
  • 5406e69b9a lanzatool: prepare to enable clippy Julian Stecklina 2022-11-26 17:05:33 +0100
  • b37ffd19d6 nix: fix indentation of checks attribute Julian Stecklina 2022-11-26 16:42:20 +0100
  • 85de5d52d0 nix: build lanzatool with crane Julian Stecklina 2022-11-26 16:41:48 +0100
  • 4197f369a8 doc: mention aarch64 support Julian Stecklina 2022-11-26 16:22:49 +0100
  • 4c0adac9df Merge pull request #14 from blitz/lanzatool-make-it-more-typedriven Julian Stecklina 2022-11-26 16:21:02 +0100
  • f16623d713 docs: update README Julian Stecklina 2022-11-26 16:00:37 +0100
  • 967f78d374 lanzatool: hide sbsign output on happy path nikstur 2022-11-26 15:34:48 +0100
  • c441f5157e lanzatool: sign and copy in one step) nikstur 2022-11-26 15:32:43 +0100
  • 240c80368f lanzatool: make it more typedriven nikstur 2022-11-26 14:55:15 +0100
  • 8a430b6578 readme: sprint end! Raito Bezarius 2022-11-26 03:24:54 +0100
  • 95f596f4dc lanzatool: add support for generations and correct naming of kernels a… (#12) Ryan Lahfa 2022-11-26 03:14:21 +0100
  • df9716da7c Add GPLv3 license Julian Stecklina 2022-11-26 03:12:24 +0100
  • 1f0f349559 lanzaboote: add error handling strings Julian Stecklina 2022-11-26 02:47:21 +0100
  • 95a03d69bb lanzaboote: reorganize to avoid explicit drops Julian Stecklina 2022-11-26 02:31:01 +0100
  • 702a38398f nix: remove remaining cruft from flakes.nix Julian Stecklina 2022-11-26 02:26:39 +0100
  • 46452f0e46 nix: drop wrapInitrd from flake.nix Julian Stecklina 2022-11-26 02:21:05 +0100
  • 691da44610 nix: rename lanzatoolBin to lanzatool-unwrapped Julian Stecklina 2022-11-26 02:16:12 +0100
  • 74b815512c nix: remove qemuUefi wrapper Julian Stecklina 2022-11-26 02:15:11 +0100
  • 541275acae nix: drop the stable Rust toolchain from the environment Julian Stecklina 2022-11-26 00:40:27 +0100
  • 3434433cec Merge pull request #11 from blitz/secure-pe-assembling Julian Stecklina 2022-11-26 02:14:32 +0100
  • 9f65f75289 feature: support initrd secrets Raito Bezarius 2022-11-26 01:50:51 +0100
  • a3150dca11 lanzatool: perform secure assembling for lanzaboote_image and PE wrapping Raito Bezarius 2022-11-26 01:24:33 +0100
  • f6930955a3 lanzatool: sync for every sign operation Raito Bezarius 2022-11-25 23:57:56 +0100
  • a3ec2cfc15 lanzatool: add error messages nikstur 2022-11-25 23:48:20 +0100
  • c87b2a09dc nix: fix lanzatool integration/merge mixup Julian Stecklina 2022-11-25 23:42:34 +0100
  • dec7c06e6b tests: test unsigned initrd/kernel either, plus some machinery for sb tests Raito Bezarius 2022-11-25 18:42:37 +0100
  • 3779e81b20 lanzaboote: handle errors in print_logo Julian Stecklina 2022-11-25 18:08:54 +0100
  • 6bc66052c2 lanzaboote: add EmbeddedConfiguration docs Julian Stecklina 2022-11-25 18:05:44 +0100
  • a9edb1488e lanzaboote: fix logo Julian Stecklina 2022-11-25 17:54:17 +0100
  • 53c4e03619 merge this shit nikstur 2022-11-25 18:10:21 +0100
  • eda254b6cd nixpkgs: integrate the whole thing (#7) Ryan Lahfa 2022-11-25 17:59:15 +0100
  • 3a093d85ab lanzatool: set permissons for all files in esp to 755 nikstur 2022-11-25 17:47:24 +0100
  • 91b8cb02e4 flake.nix: use nixosTest instead of importing file nikstur 2022-11-25 17:39:01 +0100
  • 7685ba088b lanzatool: reuse code for signer nikstur 2022-11-25 15:46:33 +0100
  • c0391ce8d7 lanzatool: improve tempfiles and error handling in pe nikstur 2022-11-25 15:15:58 +0100
  • ad3a8ec3e5 lanzatool: make --pki-bundle optional nikstur 2022-11-25 13:08:37 +0100
  • cd2ef6181d lanzatool: improve signer code nikstur 2022-11-25 13:07:04 +0100
  • a99646bb01 nixos: enrollment is optional Raito Bezarius 2022-11-25 11:29:56 +0100
  • 49519cb289 nixos: secureboot reached Raito Bezarius 2022-11-25 03:04:44 +0100
  • efbb28dc99 lanzatool: fix init nikstur 2022-11-24 17:14:55 +0100
  • e75d892964 nixos: disable it and adapt it Raito Bezarius 2022-11-24 17:09:51 +0100
  • 2148cb06ab nixos: actually enable sb Raito Bezarius 2022-11-24 16:59:16 +0100
  • ccdd02bf1c nixos: add a lanzaboote module Raito Bezarius 2022-11-23 11:59:54 +0100
  • c53477fbf5 nixos: add a lanzaboote module Raito Bezarius 2022-11-23 11:59:54 +0100
  • a089c6fb3d Merge pull request #8 from blitz/lanzatool-fix-cmdline Ryan Lahfa 2022-11-24 15:55:21 +0000
  • 858c0befb3 lanzaboot: include init in cmdline nikstur 2022-11-24 16:51:43 +0100
  • aa86ae9e30 lanzatool: add cmdline args for keys nikstur 2022-11-24 14:12:00 +0100