Francis Lam
a14a4fb419
qemu-coreboot: change configs to enable gui-init testing
2018-12-01 10:10:04 -08:00
Kyle Rankin
7f8738d6d8
Add empty keyring detection, clean up main menu
...
To help with onboarding new users to Heads, this change will detect when
Heads does not have any keys in its keyring and will guide the user
through adding a key to the running BIOS. It's important that this
happen *before* guiding them through setting up an initial TOTP/HOTP
secret because adding a GPG key changes the BIOS, so the user would have
to generate TOTP/HOTP secrets 2x unless we handle the keyring case
first.
In addition to this change I've simplified the main menu so that the
majority of the options appear under an 'advanced' menu.
2018-11-30 15:32:29 -08:00
Francis Lam
c559d71725
cairo: restore reproducibility
...
libtool needs to be patched to not write rpath to targets
2018-11-24 09:18:32 -08:00
Trammell hudson
760429601a
Merge branch 'update_blob_script' of https://github.com/kylerankin/heads
2018-11-23 12:32:13 -05:00
Trammell hudson
31a62849ea
Merge branch 'key-update' of https://github.com/flammit/heads
2018-11-23 12:30:12 -05:00
Martin Kepplinger
371b65ff58
fix install directory handling for git and builds
...
The install directly should basically behave like the "build" directory.
Since it's tracked by git, containing a gitignore file, we shouldn't
have it in the toplevel gitignore (just like the build directory).
But then, the toplevel Makefile's real.clean target removes the install
directory. This is changed so that only it's content is being removed.
2018-11-23 12:29:08 -05:00
Francis Lam
fd3d69cdac
update tails distro signing key
2018-11-18 10:49:37 -08:00
Francis Lam
25113cb8c2
Fix coreboot build for kgpe-d16
2018-11-10 13:41:01 -08:00
Kyle Rankin
e3343b5aff
Fix permissions on get_blobs.sh
2018-11-08 09:22:24 -08:00
Kyle Rankin
f20d45a426
Update Librem get_blobs.sh script to point to proper upstream URLs
2018-11-08 09:18:26 -08:00
Trammell Hudson
d8a3be47af
Merge branch 'coreboot-4.8' of https://github.com/flammit/heads
2018-11-07 17:04:23 -05:00
Trammell Hudson
7f83a0a028
Merge branch 'fbwhiptail_url' of https://github.com/merge/heads
2018-11-07 16:41:28 -05:00
Trammell Hudson
af81e34292
Merge branch 'patch-2' of https://github.com/tlaurion/heads
2018-11-07 16:40:02 -05:00
Trammell Hudson
6eb214a3f1
Merge branch 'usb-scan_fix' of https://github.com/tlaurion/heads
2018-11-07 16:38:51 -05:00
Trammell Hudson
8fec61f6e8
Merge branch 'cryptsetup-reencrypt' of https://github.com/tlaurion/heads
2018-11-07 16:38:12 -05:00
Trammell Hudson
3f53cfe05b
Merge branch 'add_librem_key_support' of https://github.com/kylerankin/heads
2018-11-07 16:37:01 -05:00
Kyle Rankin
79a09e7424
Ignore PCR5 when sealing key when Librem Key is enabled
...
When the Librem Key is enabled, the kernel loads USB modules at boot,
this causes PCR5 to change and breaks unsealing the LUKS key (if set).
This change retains the protection of the PCR5 check unless Librem Key
is enabled.
2018-11-07 13:27:52 -08:00
Francis Lam
fe0f957bfc
Make lvm and slang build reproducibly again
2018-10-28 10:59:33 -07:00
Youness Alaoui
03a09a1e1a
Add patches to update coreboot crossgcc to v1.52
...
crossgcc is now using gcc 8.1.0 which will compile without issues
if your host system has gcc 8.x
This is required if we are to build on a new system (such as latest Fedora)
2018-10-27 15:05:43 -07:00
Francis Lam
79c1434610
Fix DOTCONFIG in coreboot module and clean up configs
2018-10-27 14:03:45 -07:00
Trammell hudson
0bb78d343f
Use defconfig for coreboot builds
2018-10-27 11:02:23 -07:00
Francis Lam
0113ecc806
Update coreboot patches condition on CONFIG_MEASURED_BOOT
2018-10-27 11:02:23 -07:00
Francis Lam
8601268a1f
Remove duplicate measurements on librem components
...
also fix indentation issues
2018-10-27 11:02:23 -07:00
Francis Lam
dd3ae6ee06
Update patches for librem boards
2018-10-27 11:02:23 -07:00
Francis Lam
c326ff62c7
Start updating to coreboot 4.8.1
...
missing librem patches
2018-10-27 11:02:23 -07:00
Trammell Hudson
72c42fa5ea
qemu-linuxboot: enable cgroups for u-root
2018-10-24 14:28:34 -04:00
Thierry Laurion
3755ddb47a
$TMP_MENU_FILE is an unknown variable. Replaced with /tmp/iso_menu.txt so usb-scan works.
2018-10-22 11:01:05 -04:00
Martin Kepplinger
255181c02f
fix the fbwhiptail source URL
...
The current source URL is not available anymore.
kakaroto changed his copy of heads to point to his own github account's fbwhiptail:
b13cc5e68d
But it seems that source.puri.sm/coreboot is a more accessible home for the
project.
2018-10-18 13:47:54 +02:00
Thierry Laurion
1d2fb02668
Adding cryptsetup-reencrypt support
2018-10-08 16:28:05 -04:00
tlaurion
c0aeb614ec
Update .ash_history
...
mount-usb is better
2018-10-04 22:01:54 -04:00
Trammell hudson
e177de63d0
Enable verbose bootup debugging and ensure that the serial IO base port is configured
2018-09-28 06:25:00 -04:00
Trammell hudson
aeb59e1b48
coreboot must be extracted before the xgcc symlink
2018-09-18 16:06:35 -04:00
Trammell hudson
6183d58ecc
fix config spacing and path to xgcc
2018-09-18 16:04:28 -04:00
Trammell hudson
9ab033aa06
use externally built coreboot compilers
2018-09-18 15:59:48 -04:00
Trammell hudson
866358d5c7
rollback to 16.04?
2018-09-18 15:12:41 -04:00
Trammell hudson
66b51d3296
quiet hashing process slightly
2018-09-18 13:07:40 -04:00
Trammell hudson
fdb8268fc9
remove coreboot-gcc target (it will be built anyway) and add x230
2018-09-18 13:07:14 -04:00
Trammell hudson
a5a11e8213
fix missing ) in hashes
2018-09-18 12:35:19 -04:00
Trammell hudson
54748c663a
hash the kernel
2018-09-18 12:09:47 -04:00
Trammell hudson
eafe001097
fix yaml
2018-09-18 12:09:16 -04:00
Trammell hudson
7a39cc78f4
create hashes and store them in the circleci artifacts
2018-09-18 12:08:16 -04:00
Trammell hudson
553964157b
use a smaller image, maybe we will not run out of space
2018-09-18 10:43:36 -04:00
Trammell hudson
d3bf7aab64
does tput cause the problem with circleci?
2018-09-18 09:59:09 -04:00
Trammell hudson
606600586c
coreboot-gcc target
2018-09-18 09:27:18 -04:00
Trammell hudson
f712d7aefe
move limits.h dependency into modules/linux
2018-09-18 07:24:19 -04:00
Trammell hudson
e03f375bfd
use osresearch/heads-builder docker image with pre-built compilers
2018-09-18 07:14:39 -04:00
Trammell hudson
c494d0a5fd
fix wget and allow packages to be overridden
2018-09-18 07:14:02 -04:00
Trammell hudson
5555e9e8ac
circleci needs to use the new 4.2.1 make
2018-09-18 06:55:16 -04:00
Trammell hudson
292a8bec81
patch for __alloca missing on ubuntu 18.04 ( #352 )
2018-09-18 06:33:15 -04:00
Trammell hudson
bec3335cf6
verbose builds to avoid quiet timeouts
2018-09-16 17:56:17 -04:00