[Bug 1923832] Re: Provide generic preinstalled images for arm64, amd64

2021-04-16 Thread Dimitri John Ledkov
@rcj these are ubuntu-server daily-prinstalled images. See http://cdimage.ubuntu.com/ubuntu-server/daily-preinstalled/pending/ currently it's arm64+pi armhf+pi riscv64+unleashed riscv64+unmatched, and this wants to add arm64+generic and amd64+generic variants. -- You received this bug notificat

[Bug 1779721] Re: systemd-networkd does not configure DHCPv4

2021-04-16 Thread Dimitri John Ledkov
** Changed in: systemd (Ubuntu) Assignee: Dimitri John Ledkov (xnox) => (unassigned) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1779721 Title: systemd-networkd does not configure DHCPv4

[Bug 1924761] [NEW] unleashed fails to boot of sd-card with u-boot-sifive from hirsute

2021-04-16 Thread Dimitri John Ledkov
Public bug reported: unleashed fails to boot of sd-card with u-boot-sifive from hirsute 1) focal's u-boot-sifive on loader1/loader2 boots hirsute's 5.11 kernel fine. 2) upgrading loader1/loader2 to u-boot-sifive from hirsute makes the sd- card boot of sifive fail with This is a banner for port

[Bug 1921539] Re: Add support for SBAT

2021-04-15 Thread Dimitri John Ledkov
@ycheng-twn securution/foundations would like to recheck fwupd.efi binaries. we will not release new shim to groovy, until we know that fwupd.efi is compatible. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.ne

[Bug 1920107] Re: Failed messages of sd-umount shown with reboot/shutdown

2021-04-15 Thread Dimitri John Ledkov
The way uc20 is booted, and how bind mounts are setup means that we do force unmount eventually. It matters which snaps are installed, and which processes have memory mapped which files. Many things should probably be marked for lazyunmount. Please provide details why is held up /oldroot/run/mnt

[Bug 1923150] Re: unexpected error pop-up after 'apt install nvidia-driver-455'

2021-04-15 Thread Dimitri John Ledkov
20.04.1 is obsolete point release. Can you please try with 20.04.2? ** Changed in: nvidia-graphics-drivers-455 (Ubuntu) Status: New => Incomplete -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1

[Bug 1923832] Re: Provide generic preinstalled images for arm64, amd64

2021-04-15 Thread Dimitri John Ledkov
** Changed in: livecd-rootfs (Ubuntu) Importance: Undecided => Critical ** Changed in: livecd-rootfs (Ubuntu) Status: New => In Progress -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1923832

[Bug 1923150] Re: unexpected error pop-up after 'apt install nvidia-driver-455'

2021-04-15 Thread Dimitri John Ledkov
** Also affects: apt (Ubuntu) Importance: Undecided Status: New ** Tags added: rls-hh-incoming -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1923150 Title: unexpected error pop-up after '

[Bug 1923832] Re: Provide generic preinstalled images for arm64, amd64

2021-04-14 Thread Dimitri John Ledkov
dropping armhf from scope of this bug for now, until grub is SRUed with working armhf support. ** Summary changed: - Provide generic preinstalled images for armhf, arm64, amd64 + Provide generic preinstalled images for arm64, amd64 ** Description changed: - Provide generic preinstalled images f

[Bug 1923833] Re: removal of more udeb packages

2021-04-14 Thread Dimitri John Ledkov
I did not ask for this to be removed. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1923833 Title: removal of more udeb packages To manage notifications about this bug go to: https://bugs.launchpad

[Bug 1923881] Re: Lubuntu and Ubuntu Studio Hirsute incorrectly launch Ubiquity installer

2021-04-14 Thread Dimitri John Ledkov
or do you not need localechooser-data at all for calamares? -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1923881 Title: Lubuntu and Ubuntu Studio Hirsute incorrectly launch Ubiquity installer To

[Bug 1923881] Re: Lubuntu and Ubuntu Studio Hirsute incorrectly launch Ubiquity installer

2021-04-14 Thread Dimitri John Ledkov
leh sigh. I think the right way forward is for ubiquity to publish _standalone_ ubiquity-localechooser-data like package, which otherwise has no other ubiquity dependencies. ** Also affects: ubiquity (Ubuntu) Importance: Undecided Status: New ** Changed in: ubiquity (Ubuntu) Sta

[Bug 1918137] Re: Ubuntu 21.04 Hirsute: i386 package cleaning process

2021-04-14 Thread Dimitri John Ledkov
21.04 still ships i386 as a partial architecture. Hence it has not been removed. ** Changed in: ubuntu Status: Confirmed => Invalid -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1918137 Title:

[Bug 1851427] Re: Consider updating GNUTLS for TLSv1.3 and unified config w/Focal

2021-04-14 Thread Dimitri John Ledkov
** Changed in: gnutls28 (Ubuntu) Importance: Undecided => Wishlist -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1851427 Title: Consider updating GNUTLS for TLSv1.3 and unified config w/Focal To

[Bug 1875920] Re: New default %PROFILE_MEDIUM breaks root ceritificates which use SHA1

2021-04-14 Thread Dimitri John Ledkov
I would not want to fix this. CA that use SHA1 are insecure. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1875920 Title: New default %PROFILE_MEDIUM breaks root ceritificates which use SHA1 To m

[Bug 1923832] [NEW] Provide generic preinstalled images for armhf, arm64, amd64

2021-04-14 Thread Dimitri John Ledkov
Public bug reported: Provide generic preinstalled images for armhf, arm64, amd64 They should broadly look like ubuntu-cpc cloud image, however they should be 1) RAW .xz compressed disk images 2) use linux-generic, instead of linux-virtual 3) have CIDATA partition with sample datasource files tha

[Bug 1923827] [NEW] Inconsistent ESP sizes

2021-04-14 Thread Dimitri John Ledkov
Public bug reported: It seems that ESP sizes differ between * desktop * server subiquity * server maas * server preinstalled * cloud-images I see numbers like 512MiB, 538 (?!), 204 (?), 106MiB. I guess all of them should be 512MiB. But I guess increasing ESP size can be seen as a regression by c

[Bug 1920781] Re: Mobile phone hotspot unusable due to systemd-resolved not liking the DNS

2021-04-13 Thread Dimitri John Ledkov
@callegar It would be nice to see the full resolvectl status. Because depending on which things you have configured it might be expected to have DNSSEC validation working, and the request is routed to multiple interfaces, and none of them return results or the results fail to validate. Also note

[Bug 1923363] Re: [FFe] Users are not added to the dialout group

2021-04-13 Thread Dimitri John Ledkov
@vorlon this is the same user that already is in `sudo` & `lxd` groups, thus they can do that anyway. To use the real UART rx/tx pins one has to disable bluetooth and use /dev/ttyAMA0 For gpio pins, I see that some use group `gpio` and then mark /dev/gpiomem to be owned by gpio group. We should

[Bug 1923635] Re: ubuntu must support upgrading images with grub in removable path

2021-04-13 Thread Dimitri John Ledkov
When upgrading shim-signed, it will install new shim in /boot/bootx64.efi and in /ubuntu/shimx64.efi, it will also install grub with sbat section to /ubuntu/grubx64.efi. If the machine was booting /boot/grubx64.efi before, it will fail, as /boot/grubx64.efi will remain an old one without sbat sect

[Bug 1923635] [NEW] ubuntu must support upgrading images with grub in removable path

2021-04-13 Thread Dimitri John Ledkov
*** This bug is a security vulnerability *** Public security bug reported: ubuntu must support upgrading images with grub in removable path Currently whilst we install shim into removable path, we never upgrade grubx64.efi in the removable path. This leads to inconsistent behavior, where upgrad

[Bug 1921539] Re: Add support for SBAT

2021-04-13 Thread Dimitri John Ledkov
New shim is available in hirsute-proposed now, and I guess since this is now available in groovy-proposed, we can copy shim into groovy-proposed to complete end to end testing with the new shim. ** Changed in: fwupd-signed (Ubuntu Hirsute) Status: In Progress => Fix Released -- You receiv

[Bug 1921539] Re: Add support for SBAT

2021-04-13 Thread Dimitri John Ledkov
Ideally I would want us to split fwupd into fwupd-unsigned & fwupd- unsigned, like we did with grub. That way * fwupd will drop shipping .efi binaries * fwupd-unsigned will only build and submit .efi binary for signing * fwupd-signed will ship signed .efi binary with fwupd-unsigned & fwupd-signed

[Bug 1921134] Re: SBAT shim 15.4 release

2021-04-13 Thread Dimitri John Ledkov
** Tags removed: block-proposed-hirsute -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1921134 Title: SBAT shim 15.4 release To manage notifications about this bug go to: https://bugs.launchpad.net/

[Bug 1919177] Re: Azure: issues with accelerated networking on Hirsute

2021-04-13 Thread Dimitri John Ledkov
** Also affects: linux-azure (Ubuntu) Importance: Undecided Status: New ** Changed in: linux-azure (Ubuntu) Milestone: None => ubuntu-21.04 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/

[Bug 1923162] Re: riscv64 images fail to boot in qemu

2021-04-13 Thread Dimitri John Ledkov
So the issue around providing fdtdir was that qemu did not know what fdt file to attempt loading, and hence was failing to boot. Now that we dropped fdtdir in extlinux.conf, all riscv64 boards need to use preboot to pick up fdt from the .itb. This was already the case on unleashed and smode, but n

[Bug 1915536] Re: one grub

2021-04-13 Thread Dimitri John Ledkov
** Changed in: grub2-unsigned (Ubuntu Groovy) Status: Fix Committed => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1915536 Title: one grub To manage notifications about this b

[Bug 1921134] Re: SBAT shim 15.4 release

2021-04-13 Thread Dimitri John Ledkov
** Tags added: block-proposed-hirsute ** Tags added: block-proposed-bionic block-proposed-focal block- proposed-groovy block-proposed-xenial -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1921134 Titl

[Bug 1923162] Re: riscv64 images fail to boot in qemu

2021-04-12 Thread Dimitri John Ledkov
** Tags added: fr-1282 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1923162 Title: riscv64 images fail to boot in qemu To manage notifications about this bug go to: https://bugs.launchpad.net/ubun

[Bug 1920055] Re: debootstrap

2021-04-12 Thread Dimitri John Ledkov
confirmed with cpc team, it's good now. ** Changed in: debootstrap (Ubuntu Hirsute) Status: Triaged => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1920055 Title: debootstrap

[Bug 1923464] [NEW] ideally should boot rootfs from a matching hard drive

2021-04-12 Thread Dimitri John Ledkov
Public bug reported: Ideally we should strive to boot rootfs from a matching hard drive. I.e. if we are booting rootfs by UUID, we should try to find the one that came from the same drive as where ESP (UEFI) came from, or u-boot spl / u-boot got loaded from (loader1/loader2). Such that for examp

[Bug 1903288] Re: Power guest secure boot with static keys: kernel portion

2021-04-12 Thread Dimitri John Ledkov
BTW. is https://patchwork.kernel.org/project/linux- integrity/patch/20210330131636.21711-4-na...@linux.ibm.com/ of any help to us? Ideally we'd want to do that, but load the 2017 & 2019 keys there into the .ima keyring instead of the kernel module signing ones. -- You received this bug notifica

[Bug 1923162] Re: riscv64 images fail to boot in qemu

2021-04-12 Thread Dimitri John Ledkov
It appears that although fdtdir option from u-boot-menu works on bare metal, it breaks qemu booting. Thus revert it from now, seeking more details from u-boot upstream. ** Also affects: u-boot-menu (Ubuntu) Importance: Undecided Status: New ** Changed in: u-boot-menu (Ubuntu) St

[Bug 1923162] Re: riscv64 images fail to boot in qemu

2021-04-09 Thread Dimitri John Ledkov
** Also affects: linux-riscv (Ubuntu) Importance: Undecided Status: New -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1923162 Title: riscv64 images fail to boot in qemu To manage notifica

[Bug 1923084] Re: duplicate consoles on riscv64

2021-04-09 Thread Dimitri John Ledkov
** Description changed: When booting on SiFive boards, there are two gettys launched on the same console. There is sifive serial console which is the active/only physical console. But also, there is serial console exposed over legacy opensbi extension; which in linux kernel is im

[Bug 1923162] Re: riscv64 images fail to boot in qemu

2021-04-09 Thread Dimitri John Ledkov
** Attachment added: "direct-qemu-riscv.txt" https://bugs.launchpad.net/ubuntu/+source/u-boot/+bug/1923162/+attachment/5485930/+files/direct-qemu-riscv.txt -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/

[Bug 1923162] Re: riscv64 images fail to boot in qemu

2021-04-09 Thread Dimitri John Ledkov
This is reproducible with any uboot from focal/groovy/hirsute. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1923162 Title: riscv64 images fail to boot in qemu To manage notifications about this bu

[Bug 1923162] [NEW] riscv64 images fail to boot in qemu

2021-04-09 Thread Dimitri John Ledkov
Public bug reported: When booting v5.11 based riscv unmatched image in qemu with uboot, it fails to boot. When booting v5.11 based riscv unmatched kernel+initrd directly, it boots fine. Somehow, it seems that u-boot fails to correctly load & start v5.11 kernel. ** Affects: u-boot (Ubuntu)

[Bug 1923162] Re: riscv64 images fail to boot in qemu

2021-04-09 Thread Dimitri John Ledkov
** Attachment added: "uboot-qemu-riscv.txt" https://bugs.launchpad.net/ubuntu/+source/u-boot/+bug/1923162/+attachment/5485929/+files/uboot-qemu-riscv.txt -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bu

[Bug 1923084] [NEW] duplicate consoles on riscv64

2021-04-08 Thread Dimitri John Ledkov
Public bug reported: When booting on SiFive boards, there are two gettys launched on the same console. There is sifive serial console which is the active/only physical console. But also, there is serial console exposed over legacy opensbi extension; which in linux kernel is implemented as hvc0 c

[Bug 1903312] Re: Ubiquity not selecting correct timezone when connected to Internet

2021-04-08 Thread Dimitri John Ledkov
New York I think is a default fallback when there is no internet connectivity. Is internet connected properly? -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1903312 Title: Ubiquity not selecting co

[Bug 1922293] Re: Snaps appear broken on 21.04 Beta with ZFS

2021-04-07 Thread Dimitri John Ledkov
somehow i was expecting the snap mount units to start after local- fs.target, and for zfs.target to complete by then. But it looks like that's not how things are ordered unfortunately. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. ht

[Bug 1920640] Re: EXPKEYSIG C8CAB6595FDFF622 Ubuntu Debug Symbol Archive Automatic Signing Key (2016)

2021-04-06 Thread Dimitri John Ledkov
It is possible that you have the key in _two_ keyrings in trusted.gpg.d/ & in trusted.gpg itself. It would be best for you to do the following: 1) sudo apt remove --purge ubuntu-dbgsym-keyring 2) sudo apt-key del 0xC8CAB6595FDFF622 3) sudo apt-key list | grep C8CAB6595FDFF622 => it should be em

[Bug 1922735] Re: Incorrect grub menu appears in live session

2021-04-06 Thread Dimitri John Ledkov
Accessibility icon & language selection from preboot environment was only ever possible on x86, when booting in bios mode, when booting with isolinux. focal was the last release to use isolinux. All releases since focal use unified grub2 bootloader on x64 for both bios & efi boot, thus the experi

[Bug 1922581] Re: 5s boot delay added when System BootOrder not found

2021-04-06 Thread Dimitri John Ledkov
** Changed in: shim (Ubuntu) Status: New => Confirmed ** Changed in: shim (Ubuntu) Importance: Undecided => High -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1922581 Title: 5s boot delay

[Bug 1922581] Re: 5s boot delay added when System BootOrder not found

2021-04-06 Thread Dimitri John Ledkov
Note that vTPM presence is at stake here too. Without vTPM there are no delays. ** Description changed: # Overview - Recent changes in boot logic moved grub from "removable disk" path to "/efi/ubuntu" in order to fix grub package updates. This had the side-effect of adding a 5-second boot de

[Bug 1921445] Re: bootstrapping 1.50

2021-04-01 Thread Dimitri John Ledkov
1.50.0+dfsg1+llvm-0ubuntu5 is allowed to migrate. ** Changed in: rustc (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1921445 Title: bootstrapping 1.50 T

[Bug 1920916] Re: cold boot panics on unmatched board, soft reboot is fine

2021-04-01 Thread Dimitri John Ledkov
** Changed in: linux-riscv (Ubuntu) Milestone: None => ubuntu-21.04 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1920916 Title: cold boot panics on unmatched board, soft reboot is fine To mana

[Bug 1918970] Re: Unable to netboot Ubuntu 18.04 and older on an IBM Z DPM Partition - no manual nor automatic qeth device configuration

2021-03-31 Thread Dimitri John Ledkov
Alternative to all of the above, you could choose to "enable all the devices" hack on 18.04. Aka if the MAAS initrd includes a script to do `chzdev -e --all` by default on 18.04. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https:/

[Bug 1918970] Re: Unable to boot Ubuntu 18.04 and older on an IBM Z DPM Partition

2021-03-31 Thread Dimitri John Ledkov
In https://launchpad.net/ubuntu/+source/initramfs-tools/0.133ubuntu3 in eoan+ manual chzdev -e got added to activate qeth devices, if they have been specified in the ip= command, i.e. if enc300 is the device in the ip= command. This has not been backported to bionic. To boot without specifying th

[Bug 1921134] Re: SBAT shim 15.4 release

2021-03-31 Thread Dimitri John Ledkov
** Summary changed: - SBAT shim 15.3 release + SBAT shim 15.4 release ** Description changed: [Impact] -  * New upstream shim release 15.3 +  * New upstream shim release 15.4  * It includes and enforces SBAT validation [Test Plan]  * https://wiki.ubuntu.com/UEFI/SecureBoot/ShimU

[Bug 1921387] Re: launchpad signing shimaa64.efi fails to validate

2021-03-31 Thread Dimitri John Ledkov
So shim upstream has changed how sections are ordered now, such that in shim 15.4 can now be signed by either old or new sbsigntool, and it verifies correctly in either case. However, I still think it is a good idea to upgrade to the better sbsigntool to correctly sign even the odd looking binarie

[Bug 1920825] Re: FTBFS and autopkgtest failure in Hirsute (badly generated symbols files)

2021-03-31 Thread Dimitri John Ledkov
patch #7 looks good to me! -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1920825 Title: FTBFS and autopkgtest failure in Hirsute (badly generated symbols files) To manage notifications about this

[Bug 1920825] Re: FTBFS and autopkgtest failure in Hirsute (badly generated symbols files)

2021-03-30 Thread Dimitri John Ledkov
somehow settings --with / --without did not help, to exclude the filter commands. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1920825 Title: FTBFS and autopkgtest failure in Hirsute (badly generat

[Bug 1920825] Re: FTBFS and autopkgtest failure in Hirsute (badly generated symbols files)

2021-03-30 Thread Dimitri John Ledkov
If we only want to replace environment variables and nothing else, we can use #!/usr/share/dh-exec/dh-exec-subst-env then even with DEB_BUILD_PROFILES set, the lines preserve the leading whitespace. It would be nice for DEB_BUILD_PROFILES to preserve leading whitespace and/or only strip it for f

[Bug 1920640] Re: EXPKEYSIG C8CAB6595FDFF622 Ubuntu Debug Symbol Archive Automatic Signing Key (2016)

2021-03-29 Thread Dimitri John Ledkov
** Description changed: [Impact] - * Cannot update apt metadata from ddebs.ubuntu.com whilst using ubuntu- +  * Cannot update apt metadata from ddebs.ubuntu.com whilst using ubuntu- dbgsym-keyring package [Test Plan] +  * Install ubuntu-dbgsym-keyring package +  * Add ddebs.ubuntu.

[Bug 1915536] Re: one grub

2021-03-29 Thread Dimitri John Ledkov
For SRU release - all three source packages must be released / copied together. It is best to monitor that copies are successful, as previously src:grub2-unsigned failed to copy. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://

[Bug 1915536] Re: one grub

2021-03-29 Thread Dimitri John Ledkov
** Changed in: grub2-unsigned (Ubuntu Groovy) Status: New => Fix Committed ** Changed in: grub2-unsigned (Ubuntu Focal) Status: New => Fix Committed ** Changed in: grub2-unsigned (Ubuntu Bionic) Status: New => Fix Committed ** Changed in: grub2-unsigned (Ubuntu Xenial)

[Bug 1917509] Re: Call for testing: grub2 security updates

2021-03-29 Thread Dimitri John Ledkov
I've marked the SRU bug reports as verification-done, there was positive test feedback from Certification too. We are in a position to start release the one-grub updates to at least some series in stages. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subs

[Bug 1917509] Re: Call for testing: grub2 security updates

2021-03-29 Thread Dimitri John Ledkov
@kleber this has been fixed in xenial & bionic now. Retriggering tests against grub2-signed alone, should all work now. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1917509 Title: Call for testing:

[Bug 1920008] Re: grub2-signed depends on grub2-common

2021-03-29 Thread Dimitri John Ledkov
Similar on groovy # dpkg-query -W | grep grub grub-common 2.04-1ubuntu35.4 grub-efi-amd64 2.04-1ubuntu35.4 grub-efi-amd64-bin 2.04-1ubuntu35.4 grub-efi-amd64-signed 1.155.4+2.04-1ubuntu35.4 grub2-common2.04-1ubuntu35.4 # apt install grub-efi-amd64-signed Reading package lists... D

[Bug 1920008] Re: grub2-signed depends on grub2-common

2021-03-29 Thread Dimitri John Ledkov
On focal: # dpkg-query -W | grep grub grub-common 2.04-1ubuntu26.9 grub-efi-amd64 2.04-1ubuntu26.9 grub-efi-amd64-bin 2.04-1ubuntu26.9 grub-efi-amd64-signed 1.142.11+2.04-1ubuntu26.9 grub2-common2.04-1ubuntu26.9 grub2-common from release is good enough for one grub (it is same maj

[Bug 1920008] Re: grub2-signed depends on grub2-common

2021-03-29 Thread Dimitri John Ledkov
In bionic chroot, without proposed, installed grub-efi-amd64-signed # dpkg-query -W | grep grub grub-common 2.02-2ubuntu8.21 grub-efi-amd64 2.02-2ubuntu8.21 grub-efi-amd64-bin 2.02-2ubuntu8.21 grub-efi-amd64-signed 1.93.24+2.02-2ubuntu8.21 grub2-common2.02-2ubuntu8.21 Enable -prop

[Bug 1920008] Re: grub2-signed depends on grub2-common

2021-03-29 Thread Dimitri John Ledkov
In xenial chroot, without proposed, installed grub-efi-amd64-signed # dpkg-query -W | grep grub grub-common 2.02~beta2-36ubuntu3.29 grub-efi-amd64 2.02~beta2-36ubuntu3.29 grub-efi-amd64-bin 2.02~beta2-36ubuntu3.29 grub-efi-amd64-signed 1.66.29+2.02~beta2-36ubuntu3.29 grub2-common2.

[Bug 1920640] Re: EXPKEYSIG C8CAB6595FDFF622 Ubuntu Debug Symbol Archive Automatic Signing Key (2016)

2021-03-26 Thread Dimitri John Ledkov
** Changed in: ubuntu-keyring (Ubuntu Hirsute) Status: Fix Released => Fix Committed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1920640 Title: EXPKEYSIG C8CAB6595FDFF622 Ubuntu Debug Symbo

[Bug 1921546] Re: [FFe] ubuntu-server to recommend needrestart

2021-03-26 Thread Dimitri John Ledkov
** Description changed: needrestart MIR has been completed. https://bugs.launchpad.net/ubuntu/+source/needrestart/+bug/1907422 We are post FF, thus I am asking FFe to include needrestart as recommends in the ubuntu-server package. This change will results in needrestart being insta

[Bug 1921546] [NEW] [FFe] ubuntu-server to recommend needrestart

2021-03-26 Thread Dimitri John Ledkov
Public bug reported: needrestart MIR has been completed. https://bugs.launchpad.net/ubuntu/+source/needrestart/+bug/1907422 We are post FF, thus I am asking FFe to include needrestart as recommends in the ubuntu-server package. This change will results in needrestart being installed by default i

[Bug 1915722] Re: rustc 1.50 and cargo 0.51 will be required by a future version of firefox

2021-03-26 Thread Dimitri John Ledkov
situation in hirsute is not sorted yet. we had to revert & remove 1.50 from hirsute, and currently 1.49 is published there once again. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1915722 Title: r

[Bug 1921445] [NEW] bootstrapping 1.50

2021-03-25 Thread Dimitri John Ledkov
Public bug reported: bootstrapping 1.50 ** Affects: rustc (Ubuntu) Importance: Undecided Status: New ** Tags: block-proposed update-excuse -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bug

[Bug 1920987] Re: IANA tzdata file format cannot represent different country code for a given timezone in different time periods [ i.e. Europe/Simferopol country code changes ]; iso 3166-2 has no RU s

2021-03-25 Thread Dimitri John Ledkov
"America" does not maintain neither tzdata nor ISO 3166-2 database, both of which are delegated to international community of Internet Standards via RFC & to a committee headquartered in Genera with delegates from all around the world. All of which has lots of experience with classifying and updati

[Bug 1920640] Re: EXPKEYSIG C8CAB6595FDFF622 Ubuntu Debug Symbol Archive Automatic Signing Key (2016)

2021-03-25 Thread Dimitri John Ledkov
** Changed in: ubuntu-keyring (Ubuntu Focal) Status: Confirmed => In Progress ** Changed in: ubuntu-keyring (Ubuntu Bionic) Status: Confirmed => In Progress -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.la

[Bug 1920640] Re: EXPKEYSIG C8CAB6595FDFF622 Ubuntu Debug Symbol Archive Automatic Signing Key (2016)

2021-03-25 Thread Dimitri John Ledkov
** Changed in: ubuntu-keyring (Ubuntu Groovy) Status: Confirmed => In Progress -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1920640 Title: EXPKEYSIG C8CAB6595FDFF622 Ubuntu Debug Symbol Arch

[Bug 1920640] Re: EXPKEYSIG C8CAB6595FDFF622 Ubuntu Debug Symbol Archive Automatic Signing Key (2016)

2021-03-25 Thread Dimitri John Ledkov
** Description changed: + [Impact] + + * Cannot update apt metadata from ddebs.ubuntu.com whilst using ubuntu- + dbgsym-keyring package + + [Test Plan] + + * Install ubuntu-dbgsym-keyring package + * Add ddebs.ubuntu.com repository for your release + * sudo apt update must be successful +

[Bug 1921387] Re: launchpad signing shimaa64.efi fails to validate

2021-03-25 Thread Dimitri John Ledkov
Verifying existing binaries with new sbsigntool: # wget http://archive.ubuntu.com/ubuntu/dists/bionic/main/uefi/fwupdate-amd64/current/fwupx64.efi.signed # wget http://archive.ubuntu.com/ubuntu/dists/bionic/main/uefi/fwupdate-amd64/current/control/uefi.crt # sbverify --cert ./uefi.crt ./fwupx64.

[Bug 1921387] Re: launchpad signing shimaa64.efi fails to validate

2021-03-25 Thread Dimitri John Ledkov
# wget https://launchpad.net/ubuntu/+source/sbsigntool/0.9.2-2ubuntu1~18.04.1/+build/21207939/+files/sbsigntool_0.9.2-2ubuntu1~18.04.1_amd64.deb # apt install ./sbsigntool_0.9.2-2ubuntu1~18.04.1_amd64.deb # dpkg-query -W sbsigntool sbsigntool 0.9.2-2ubuntu1~18.04.1 # sbverify --cert 15.3-0u

[Bug 1921387] Re: launchpad signing shimaa64.efi fails to validate

2021-03-25 Thread Dimitri John Ledkov
# dpkg-query -W sbsigntool sbsigntool 0.6-3.2ubuntu2 # sbverify --cert 15.3-0ubuntu1~ppa1/control/uefi.crt 15.3-0ubuntu1~ppa1/shimaa64.efi.signed warning: gap in section table: .data : 0x0007f000 - 0x000b3800, .sbat : 0x000b4000 - 0x000b5000, gaps in the section table may result

[Bug 1921405] Re: preseeded snaps prevent installing chromium-browser deb2snap in chroot, again

2021-03-25 Thread Dimitri John Ledkov
TASK [apps/app_web : install browsers] * fatal: [focal-uefi]: FAILED! => changed=false cache_update_time: 1616679270 cache_updated: false msg: |- '/usr/bin/apt-get -y -o "Dpkg::Options::=--force-confdef" -o "Dpkg::Options::=--force-confold" i

[Bug 1921405] [NEW] preseeded snaps prevent installing chromium-browser deb2snap in chroot, again

2021-03-25 Thread Dimitri John Ledkov
Public bug reported: preseeded snaps prevent installing chromium-browser deb2snap in chroot, again potentially https://bugs.launchpad.net/ubuntu/+source/chromium- browser/+bug/1882232 regressed since preseeded snaps landed in focal desktop. ** Affects: chromium-browser (Ubuntu) Importance:

[Bug 1921387] Re: launchpad signing shimaa64.efi fails to validate

2021-03-25 Thread Dimitri John Ledkov
Also good to check that existing bionic x64 binaries still verify correctly. I.e. grub / kernel. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1921387 Title: launchpad signing shimaa64.efi fails to

[Bug 1921387] Re: launchpad signing shimaa64.efi fails to validate

2021-03-25 Thread Dimitri John Ledkov
** Description changed: [Impact]  * Calculating the hash of the binary is ill defined if there are gaps in sections, or sections are not aligned to ensure that signature table is aligned.  * This results in sbsign/sbverify to calculate incorrect hash when there are gaps, such as

[Bug 1921387] Re: launchpad signing shimaa64.efi fails to validate

2021-03-25 Thread Dimitri John Ledkov
** Description changed: [Impact]  * Calculating the hash of the binary is ill defined if there are gaps in sections, or sections are not aligned to ensure that signature table is aligned.  * This results in sbsign/sbverify to calculate incorrect hash when there are gaps, such as

[Bug 1921387] Re: launchpad signing shimaa64.efi fails to validate

2021-03-25 Thread Dimitri John Ledkov
** Description changed: - launchpad signing shimaa64.efi fails to validate + [Impact] + + * Calculating the hash of the binary is ill defined if there are gaps + in sections, or sections are not aligned to ensure that signature table + is aligned. + + * This results in sbsign/sbverify to calcu

[Bug 1921387] [NEW] launchpad signing shimaa64.efi fails to validate

2021-03-25 Thread Dimitri John Ledkov
Public bug reported: launchpad signing shimaa64.efi fails to validate cd $(mktemp -d) wget http://ppa.launchpad.net/xnox/nonvirt/ubuntu/dists/hirsute/main/signed /shim-arm64/15.3-0ubuntu1~ppa1/signed.tar.gz tar xvf ./signed.tar.gz sbverify --cert 15.3-0ubuntu1~ppa1/control/uefi.crt 15.3-0ubunt

[Bug 1461412] Re: Mok Not In System Keyring

2021-03-25 Thread Dimitri John Ledkov
That was old keyring location. They should now be in the platform keyring Can you check that the certs you expect are in: $ sudo keyctl list %:.platform ? ** Changed in: efitools (Ubuntu) Status: Confirmed => Incomplete -- You received this bug notification because you are a member of

[Bug 1920987] Re: IANA tzdata file format cannot represent different country code for a given timezone in different time periods [ i.e. Europe/Simferopol country code changes ]; iso 3166-2 has no RU s

2021-03-24 Thread Dimitri John Ledkov
To be fair, Sevastopol has always had a special status of a federal city - across all times. Closes analogy being Vatican City. It was federal city separate from Crimea during whichever government defacto government ruling be it USSR, Ukranian SSR, Ukrain or Russian Federation. -- You received th

[Bug 1920987] Re: IANA tzdata file format cannot represent different country code for a given timezone in different time periods [ i.e. Europe/Simferopol country code changes ]

2021-03-24 Thread Dimitri John Ledkov
In the iso-codes package there is a related issue, ISO 3166-2:RU contains no codes for the Russian-administered Republic of Crimea and Federal City of Sevastopol. Instead the UA codes are still specified, i.e. UA-43 for Crimea. ** Also affects: iso-codes (Ubuntu) Importance: Undecided St

[Bug 1917780] Re: initramfs-tools does not include fsck binaries in the initrd if all mount pass are 0

2021-03-24 Thread Dimitri John Ledkov
** Description changed: - initramfs-tools does not include fsck in initrd if MNT_PASS equals zero - in the fstab entries. + [Impact] + + * initramfs-tools does not include fsck in initrd if MNT_PASS equals + zero in the fstab entries. This has lead to the following situation : when droppi

[Bug 1921134] [NEW] SBAT shim 15.3 release

2021-03-24 Thread Dimitri John Ledkov
*** This bug is a security vulnerability *** Public security bug reported: [Impact]  * New upstream shim release 15.3  * It includes and enforces SBAT validation [Test Plan]  * https://wiki.ubuntu.com/UEFI/SecureBoot/ShimUpdateProcess/TestPlan [Where problems could occur]  * Upgrading to new

[Bug 1838712] Re: TPM event log does not contain kernel validation key

2021-03-24 Thread Dimitri John Ledkov
** Changed in: shim (Ubuntu) Status: New => Incomplete -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1838712 Title: TPM event log does not contain kernel validation key To manage notificatio

[Bug 1920987] Re: IANA tzdata file format cannot represent different country code for a given timezone in different time periods [ i.e. Europe/Simferopol country code changes ]

2021-03-24 Thread Dimitri John Ledkov
Setting the status of the bug report to Opinion, as it doesn't fit the scope of Ubuntu project. It has to be fixed by IANA in upstream releases of tzdata. Once they come up with a better solution in the file format, the bug can change to confirmed to be integrated in Ubuntu. -- You received this

[Bug 1920987] Re: Europe/Simferopol, Crimea is RUSSIA

2021-03-24 Thread Dimitri John Ledkov
Is there anything in particular about all the other packages that you marked them as affected? I suspect that they all use Ubuntu's provided tzdata as the source of information, and hence they will all be reflecting simply whatever tzdata tells them. Hence any changes will be automatically reflecte

[Bug 1920987] Re: Europe/Simferopol, Crimea is RUSSIA

2021-03-24 Thread Dimitri John Ledkov
The upstream IANA tzdata file format is very restrictive and cannot change and reflect country codes correctly, across correct historical dates. >From "europe" file: Zone Europe/Simferopol 2:16:24 - LMT 1880 2:16 - SMT 1924 May 2 # Simferopol Mean T

[Bug 1920933] Re: live desktop system booted with ip=dhcp has the right lease, hostname not set at all

2021-03-23 Thread Dimitri John Ledkov
Also note https://bugs.launchpad.net/subiquity/+bug/1905932 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1920933 Title: live desktop system booted with ip=dhcp has the right lease, hostname not s

[Bug 1920916] Re: cold boot panics on unmatched board, soft reboot is fine

2021-03-23 Thread Dimitri John Ledkov
Looks like we carry out of date l2_cache patch https://paste.ubuntu.com/p/y6hWvqYhdF/ ** Changed in: linux-riscv (Ubuntu) Status: New => In Progress ** Changed in: linux-riscv (Ubuntu) Assignee: (unassigned) => Dimitri John Ledkov (xnox) -- You received this bug notifi

[Bug 1920916] Re: cold boot panics on unmatched board, soft reboot is fine

2021-03-23 Thread Dimitri John Ledkov
** Summary changed: - sometimes cold boot hangs on unmatched board + cold boot panics on unmatched board, soft reboot is fine ** Attachment added: "screenlog.0" https://bugs.launchpad.net/ubuntu/+source/linux-riscv/+bug/1920916/+attachment/5480079/+files/screenlog.0 ** Description changed:

[Bug 1920933] Re: live desktop system booted with ip=dhcp has the right lease, hostname not set at all

2021-03-23 Thread Dimitri John Ledkov
** Also affects: netplan.io (Ubuntu) Importance: Undecided Status: New ** Also affects: initramfs-tools (Ubuntu) Importance: Undecided Status: New -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launch

[Bug 1920916] [NEW] sometimes cold boot hangs on unmatched board

2021-03-23 Thread Dimitri John Ledkov
Public bug reported: [ 16.319808] pci :04:00.0: enabling device ( -> 0002) [ 16.325596] Kernel panic - not syncing: L2CACHE: DirFail @ 0x.0001CB00 [ 16.325665] L2CACHE: No. of Banks in the cache: 4 [ 16.332152] CPU: 0 PID: 0 Comm: swapper/0 Not tainted 5.11.0-1002-generic

[Bug 1920804] Re: Apt does not seem to automatically consider non-candidates when resolving deps

2021-03-22 Thread Dimitri John Ledkov
As per private conversation, it's not a bug but a feature to only consider candidates by default. ** Changed in: apt (Ubuntu) Status: New => Won't Fix -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/b

[Bug 1920804] Re: Apt does not seem to automatically consider non-candidates when resolving deps

2021-03-22 Thread Dimitri John Ledkov
never mind `apt build-dep` also fails. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1920804 Title: Apt does not seem to automatically consider non-candidates when resolving deps To manage notifi

[Bug 1920804] [NEW] Apt does not seem to automatically consider non-candidates when resolving deps

2021-03-22 Thread Dimitri John Ledkov
Public bug reported: # apt show sbuild-build-depends-main-dummy Package: sbuild-build-depends-main-dummy Version: 0.invalid.0 Maintainer: Debian buildd-tools Developers Installed-Size: unknown Depends: debhelper (>= 9), debhelper-compat (= 12), dpkg-dev (>= 1.17.14), python3, cargo (>= 0.40.0),

<    4   5   6   7   8   9   10   11   12   13   >