Merge pull request #925 from Yuanandcircle/T7233

T7233: Fix wrong MOK certs path in the script of build-kernel.sh
This commit is contained in:
Christian Breunig 2025-03-12 15:19:28 +01:00 committed by GitHub
commit 0423450c3a
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194

View File

@ -41,7 +41,7 @@ sed -i -e "s/CN =.*/CN=VyOS build time autogenerated kernel key/" certs/default_
TRUSTED_KEYS_FILE=trusted_keys.pem TRUSTED_KEYS_FILE=trusted_keys.pem
# start with empty key file # start with empty key file
echo -n "" > $TRUSTED_KEYS_FILE echo -n "" > $TRUSTED_KEYS_FILE
CERTS=$(find ../../../data/live-build-config/includes.chroot/var/lib/shim-signed/mok -name "*.pem" -type f || true) CERTS=$(find ../../../../data/live-build-config/includes.chroot/var/lib/shim-signed/mok -name "*.pem" -type f || true)
if [ ! -z "${CERTS}" ]; then if [ ! -z "${CERTS}" ]; then
# add known public keys to Kernel certificate chain # add known public keys to Kernel certificate chain
for file in $CERTS; do for file in $CERTS; do