mirror of
https://github.com/linuxboot/heads.git
synced 2024-12-18 20:47:55 +00:00
Merge pull request #1861 from tlaurion/oem-factory_reset_hide-detach-sign-user-pin
bugfix: oem-factory-reset: debug mode; hide passphrase output on screen/debug log on gpg --detach-sign of /boot hash digest
This commit is contained in:
commit
4f1405853f
@ -680,7 +680,7 @@ generate_checksums() {
|
|||||||
fi
|
fi
|
||||||
|
|
||||||
DEBUG "Detach-signing boot files under kexec.sig: ${param_files}"
|
DEBUG "Detach-signing boot files under kexec.sig: ${param_files}"
|
||||||
if sha256sum $param_files 2>/dev/null | DO_WITH_DEBUG gpg \
|
if sha256sum $param_files 2>/dev/null | DO_WITH_DEBUG --mask-position 4 gpg \
|
||||||
--pinentry-mode loopback \
|
--pinentry-mode loopback \
|
||||||
--passphrase "${USER_PIN}" \
|
--passphrase "${USER_PIN}" \
|
||||||
--digest-algo SHA256 \
|
--digest-algo SHA256 \
|
||||||
|
Loading…
Reference in New Issue
Block a user