[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2022-01-11 Thread Dimitri John Ledkov
Note above patches causes regression with SEV feature, which has been subsequently fixed. See https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1956575 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2022-01-04 Thread Launchpad Bug Tracker
This bug was fixed in the package linux - 5.4.0-92.103 --- linux (5.4.0-92.103) focal; urgency=medium * focal/linux: 5.4.0-92.103 -proposed tracker (LP: #1952316) * Packaging resync (LP: #1786013) - [Packaging] resync update-dkms-versions helper - debian/dkms-versions --

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2022-01-04 Thread Launchpad Bug Tracker
This bug was fixed in the package linux - 4.15.0-166.174 --- linux (4.15.0-166.174) bionic; urgency=medium * bionic/linux: 4.15.0-166.174 -proposed tracker (LP: #1953667) * Ubuntu version macros overflow with high ABI numbers (LP: #1953522) - SAUCE: Revert "stable: clamp

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-12-01 Thread Ubuntu Kernel Bot
This bug is awaiting verification that the linux/4.15.0-165.173 kernel in -proposed solves the problem. Please test the kernel and update this bug with the results. If the problem is solved, change the tag 'verification-needed-bionic' to 'verification-done-bionic'. If the problem still exists,

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-11-30 Thread Kleber Sacilotto de Souza
** Changed in: linux (Ubuntu Bionic) Status: New => Fix Committed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1928679 Title: Support importing mokx keys into revocation list from the mok

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-10-18 Thread Launchpad Bug Tracker
This bug was fixed in the package linux-azure-5.8 - 5.8.0-1043.46~20.04.1 --- linux-azure-5.8 (5.8.0-1043.46~20.04.1) focal; urgency=medium * focal/linux-azure-5.8: 5.8.0-1043.46~20.04.1 -proposed tracker (LP: #1944902) * Support builtin revoked certificates (LP: #1932029)

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-10-13 Thread Kelsey Skunberg
** Changed in: linux (Ubuntu Focal) Status: In Progress => Fix Committed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1928679 Title: Support importing mokx keys into revocation list from

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-10-04 Thread Stefan Bader
** Changed in: linux-hwe-5.8 (Ubuntu Focal) Status: In Progress => Fix Committed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1928679 Title: Support importing mokx keys into revocation list

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-10-04 Thread Stefan Bader
** Changed in: linux-hwe-5.8 (Ubuntu) Status: New => Invalid -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1928679 Title: Support importing mokx keys into revocation list from the mok table

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-10-04 Thread Launchpad Bug Tracker
This bug was fixed in the package linux-oem-5.10 - 5.10.0-1049.51 --- linux-oem-5.10 (5.10.0-1049.51) focal; urgency=medium * focal/linux-oem-5.10: 5.10.0-1049.50 -proposed tracker (LP: #1944209) * e1000e extremly slow (LP: #1930754) - SAUCE: e1000e: Separate TGP board type

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-10-04 Thread Stefan Bader
** Also affects: linux-hwe-5.8 (Ubuntu) Importance: Undecided Status: New ** Changed in: linux-hwe-5.8 (Ubuntu Xenial) Status: New => Invalid ** Changed in: linux-hwe-5.8 (Ubuntu Bionic) Status: New => Invalid ** Changed in: linux-hwe-5.8 (Ubuntu Hirsute) Status:

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-10-01 Thread Dimitri John Ledkov
** Merge proposal linked: https://code.launchpad.net/~xnox/ubuntu/+source/linux/+git/focal/+merge/409374 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1928679 Title: Support importing mokx keys

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-09-27 Thread Dimitri John Ledkov
** Also affects: linux-azure-5.8 (Ubuntu) Importance: Undecided Status: New ** Changed in: linux-azure-5.8 (Ubuntu Hirsute) Status: New => Invalid ** Changed in: linux-azure-5.8 (Ubuntu) Status: New => Invalid ** Changed in: linux-azure-5.8 (Ubuntu Bionic) Status:

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-09-27 Thread Dimitri John Ledkov
** Description changed: [Impact] - * Ubuntu's 15.4 based shim ships a very large vendor-dbx (aka mokx) +  * Ubuntu's 15.4 based shim ships a very large vendor-dbx (aka mokx) which revokes many Ubuntu kernel hashes and 2012 signing key. - * Kernel should import those into it's

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-09-10 Thread AceLan Kao
** Also affects: linux-oem-5.10 (Ubuntu) Importance: Undecided Status: New ** Changed in: linux-oem-5.10 (Ubuntu Xenial) Status: New => Invalid ** Changed in: linux-oem-5.10 (Ubuntu Bionic) Status: New => Invalid ** Changed in: linux-oem-5.10 (Ubuntu Focal)

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-09-07 Thread Launchpad Bug Tracker
This bug was fixed in the package linux - 5.11.0-34.36 --- linux (5.11.0-34.36) hirsute; urgency=medium * hirsute/linux: 5.11.0-34.36 -proposed tracker (LP: #1941766) * Server boot failure after adding checks for ACPI IRQ override (LP: #1941657) - Revert "ACPI: resources:

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-09-01 Thread Dimitri John Ledkov
# grep CODENAME /etc/os-release VERSION_CODENAME=focal UBUNTU_CODENAME=focal # uname -r 5.11.0-34-generic dmesg: [0.797134] blacklist: Loading compiled-in revocation X.509 certificates [0.797696] Loaded X.509 cert 'Canonical Ltd. Secure Boot Signing:

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-09-01 Thread Dimitri John Ledkov
# uname -r 5.11.0-34-generic # sudo keyctl list %:.platform 3 keys in keyring: 149920180: ---lswrv 0 0 asymmetric: Microsoft Windows Production PCA 2011: a92902398e16c49778cd90f99e4f9ae17c55af53 434591909: ---lswrv 0 0 asymmetric: Canonical Ltd. Master Certificate Authority:

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-09-01 Thread Dimitri John Ledkov
Disabled initrd less boot, and installing linux-generic kernel from proposed. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1928679 Title: Support importing mokx keys into revocation list from the

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-09-01 Thread Dimitri John Ledkov
Verifying using hirsute: # uname -r 5.11.0-1014-kvm # grep CODENAME /etc/os-release VERSION_CODENAME=hirsute UBUNTU_CODENAME=hirsute # keyctl list %:.blacklist Can't find 'keyring:.blacklist' Upgraded kernel: # uname -r 5.11.0-1015-kvm # keyctl list %:.blacklist 1 key in keyring: 330780907:

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-08-18 Thread Launchpad Bug Tracker
This bug was fixed in the package linux - 5.13.0-14.14 --- linux (5.13.0-14.14) impish; urgency=medium * impish/linux: 5.13.0-14.14 -proposed tracker (LP: #1938565) * Miscellaneous Ubuntu changes - SAUCE: Revert "UBUNTU: SAUCE: random: Make getrandom() ready earlier" -

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-08-17 Thread Ubuntu Kernel Bot
This bug is awaiting verification that the kernel in -proposed solves the problem. Please test the kernel and update this bug with the results. If the problem is solved, change the tag 'verification-needed- hirsute' to 'verification-done-hirsute'. If the problem still exists, change the tag

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-08-12 Thread Kelsey Skunberg
** Changed in: linux (Ubuntu Hirsute) Status: New => Fix Committed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1928679 Title: Support importing mokx keys into revocation list from the mok

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-08-04 Thread Dimitri John Ledkov
** Also affects: linux (Ubuntu Bionic) Importance: Undecided Status: New ** Also affects: linux (Ubuntu Focal) Importance: Undecided Status: New ** Also affects: linux (Ubuntu Hirsute) Importance: Undecided Status: New ** Also affects: linux (Ubuntu Xenial)

[Bug 1928679] Re: Support importing mokx keys into revocation list from the mok table

2021-06-05 Thread Ubuntu Kernel Bot
This bug is awaiting verification that the kernel in -proposed solves the problem. Please test the kernel and update this bug with the results. If the problem is solved, change the tag 'verification-needed- focal' to 'verification-done-focal'. If the problem still exists, change the tag