[CentOS-devel] SecureBoot, Privatebuilders and logs

Tue Jun 24 16:05:20 UTC 2014
Karanbir Singh <mail-lists at karan.org>

hi,

The way I have the CentOS Distro buildsystems running at this point, we
cant have the secureboot signing run within the same infra ( keys, hsms
other things );

The flip side to this is that logs and build results from these machines
( there are 2 in a HA pair, called the kbuilder's ) is not being pushed
to buildlogs, and for the short term future - it wont be. There are a
couple of technical challenges that are going to prevent this from being
solved in the next few weeks.

Components impacted are: shim, grub2, kernel.

Code for these is still going via git.c.o - grub2, shim and kernel
packages with updated centos.cer's replacing the placeholder RH ones are
already in git.centos.org.

I will have this issue resolved longer term, but for now logs from these
builds will not be on buildlogs.centos.org.

-- 
Karanbir Singh
+44-207-0999389 | http://www.karan.org/ | twitter.com/kbsingh
GnuPG Key : http://www.karan.org/publickey.asc