render / rpms / edk2

Forked from rpms/edk2 3 months ago
Clone

Blame edk2.spec

b846ca
# RPM doesn't detect that code in /usr/share is python3, this forces it
b846ca
# https://fedoraproject.org/wiki/Changes/Avoid_usr_bin_python_in_RPM_Build#Python_bytecompilation
b846ca
%global __python %{__python3}
b846ca
fdb3e7
%global edk2_stable_date 202008
740797
%global edk2_stable_str  edk2-stable%{edk2_stable_date}
fdb3e7
%global openssl_version  1.1.1g
8f1507
%global qosb_version     20200228-gitc3e16b3
740797
%global softfloat_version 20180726-gitb64af41
Paolo Bonzini 9f191d
b9bff0
# Enable this to skip secureboot enrollment, if problems pop up
b9bff0
%global skip_enroll 0
43c2e0
Patrick Uiterwijk 079220
%define qosb_testing 0
Patrick Uiterwijk 079220
Patrick Uiterwijk 079220
%ifarch x86_64
Patrick Uiterwijk 079220
%define qosb_testing 1
Patrick Uiterwijk 079220
%endif
Paolo Bonzini 2e34e0
%if 0%{?fedora:1}
Paolo Bonzini 568a37
%define cross 1
Paolo Bonzini 2e34e0
%endif
Paolo Bonzini 568a37
Paolo Bonzini 568a37
%ifarch %{ix86} x86_64
Paolo Bonzini 2e34e0
%if 0%{?fedora:1}
Paolo Bonzini 568a37
%define build_ovmf_ia32 1
Paolo Bonzini 2e34e0
%endif
Paolo Bonzini 568a37
%ifarch x86_64
Paolo Bonzini 568a37
%define build_ovmf_x64 1
Paolo Bonzini 568a37
%endif
Paolo Bonzini 568a37
%endif
Paolo Bonzini 568a37
%ifarch aarch64
Paolo Bonzini 568a37
%define build_aavmf_aarch64 1
Paolo Bonzini 568a37
%endif
Paolo Bonzini 568a37
%ifarch %{arm}
Paolo Bonzini 568a37
%define build_aavmf_arm 1
Paolo Bonzini 568a37
%endif
Paolo Bonzini 568a37
%if 0%{?cross:1}
Paolo Bonzini 568a37
%define build_ovmf_x64 1
Paolo Bonzini 568a37
%define build_ovmf_ia32 1
Paolo Bonzini 568a37
%define build_aavmf_aarch64 1
Paolo Bonzini 568a37
%define build_aavmf_arm 1
Paolo Bonzini 568a37
%endif
Paolo Bonzini 568a37
49ef31
Name:           edk2
740797
# Even though edk2 stable releases are YYYYMM, we need
740797
# to use YYYMMDD to avoid needing to bump package epoch
740797
# due to previous 'git' Version:
740797
Version:        %{edk2_stable_date}01stable
032154
Release:        3%{dist}
49ef31
Summary:        EFI Development Kit II
Paolo Bonzini 9f191d
eb7115
License:        BSD-2-Clause-Patent
Gerd Hoffmann b0c3af
URL:            http://www.tianocore.org/edk2/
9fc821
fdb3e7
Source0:        https://github.com/tianocore/edk2/archive/%{edk2_stable_str}.tar.gz#/%{edk2_stable_str}.tar.gz
b17819
Source1:        openssl-%{openssl_version}-hobbled.tar.xz
Paolo Bonzini 348500
Source2:        ovmf-whitepaper-c770f8c.txt
b9bff0
#Source3:        https://github.com/puiterwijk/qemu-ovmf-secureboot/archive/v{qosb_version}/qemu-ovmf-secureboot-{qosb_version}.tar.gz
b9bff0
Source3:        qemu-ovmf-secureboot-%{qosb_version}.tar.xz
740797
Source4:        softfloat-%{softfloat_version}.tar.xz
b9bff0
Source5:        RedHatSecureBootPkKek1.pem
Paolo Bonzini 348500
Source10:       hobble-openssl
Paolo Bonzini 348500
Source11:       build-iso.sh
Paolo Bonzini 348500
Source12:       update-tarball.sh
Paolo Bonzini 348500
Source13:       openssl-patch-to-tarball.sh
b17819
Kashyap Chamarthy 674b3c
# Fedora-specific JSON "descriptor files"
167ead
Source14:       40-edk2-ovmf-x64-sb-enrolled.json
167ead
Source15:       50-edk2-ovmf-x64-sb.json
167ead
Source16:       60-edk2-ovmf-x64.json
167ead
Source17:       40-edk2-ovmf-ia32-sb-enrolled.json
167ead
Source18:       50-edk2-ovmf-ia32-sb.json
167ead
Source19:       60-edk2-ovmf-ia32.json
167ead
Source20:       70-edk2-aarch64-verbose.json
167ead
Source21:       70-edk2-arm-verbose.json
Kashyap Chamarthy 674b3c
Paolo Bonzini 2e34e0
# non-upstream patches
6ac749
Patch0001: 0001-OvmfPkg-silence-EFI_D_VERBOSE-0x00400000-in-NvmExpre.patch
6ac749
Patch0002: 0002-OvmfPkg-silence-EFI_D_VERBOSE-0x00400000-in-the-DXE-.patch
6ac749
Patch0003: 0003-OvmfPkg-enable-DEBUG_VERBOSE.patch
6ac749
Patch0004: 0004-OvmfPkg-increase-max-debug-message-length-to-512.patch
Paolo Bonzini 7ae6f1
Patch0005: 0005-advertise-OpenSSL-on-TianoCore-splash-screen-boot-lo.patch
Paolo Bonzini 7ae6f1
Patch0006: 0006-OvmfPkg-QemuVideoDxe-enable-debug-messages-in-VbeShi.patch
Paolo Bonzini 7ae6f1
Patch0007: 0007-MdeModulePkg-TerminalDxe-add-other-text-resolutions.patch
Paolo Bonzini 7ae6f1
Patch0008: 0008-MdeModulePkg-TerminalDxe-set-xterm-resolution-on-mod.patch
Paolo Bonzini 7ae6f1
Patch0009: 0009-OvmfPkg-take-PcdResizeXterm-from-the-QEMU-command-li.patch
fdb3e7
Patch0010: 0010-ArmVirtPkg-take-PcdResizeXterm-from-the-QEMU-command.patch
fdb3e7
Patch0011: 0011-OvmfPkg-allow-exclusion-of-the-shell-from-the-firmwa.patch
fdb3e7
Patch0012: 0012-ArmPlatformPkg-introduce-fixed-PCD-for-early-hello-m.patch
fdb3e7
Patch0013: 0013-ArmPlatformPkg-PrePeiCore-write-early-hello-message-.patch
fdb3e7
Patch0014: 0014-ArmVirtPkg-set-early-hello-message-RH-only.patch
fdb3e7
Patch0015: 0015-Tweak-the-tools_def-to-support-cross-compiling.patch
fdb3e7
Patch0016: 0016-BaseTools-do-not-build-BrotliCompress-RH-only.patch
Paolo Bonzini 7ae6f1
Paolo Bonzini 568a37
%if 0%{?cross:1}
Paolo Bonzini 568a37
%endif
Gerd Hoffmann b0c3af
Paolo Bonzini 2e34e0
%if 0%{?fedora:1}
Gerd Hoffmann b0c3af
#
Paolo Bonzini 498015
# actual firmware builds support cross-compiling.  edk2-tools
Paolo Bonzini 498015
# in theory should build everywhere without much trouble, but
Gerd Hoffmann b0c3af
# in practice the edk2 build system barfs on archs it doesn't know
Gerd Hoffmann b0c3af
# (such as ppc), so lets limit things to the known-good ones.
Gerd Hoffmann b0c3af
#
Gerd Hoffmann b0c3af
ExclusiveArch:  %{ix86} x86_64 %{arm} aarch64
Paolo Bonzini 2e34e0
%else
Paolo Bonzini 2e34e0
ExclusiveArch:  x86_64 aarch64
Paolo Bonzini 2e34e0
%endif
Gerd Hoffmann b0c3af
Peter Robinson d173a3
BuildRequires:  gcc gcc-c++
b846ca
BuildRequires:  python3 python3-devel
49ef31
BuildRequires:  libuuid-devel
Paolo Bonzini 568a37
%if 0%{?cross:1}
1db20e
BuildRequires:  gcc-aarch64-linux-gnu
Gerd Hoffmann d31a56
BuildRequires:  gcc-arm-linux-gnu
Paolo Bonzini 498015
BuildRequires:  gcc-x86_64-linux-gnu
Paolo Bonzini 568a37
%endif
Gerd Hoffmann b0c3af
BuildRequires:  iasl
Gerd Hoffmann b0c3af
BuildRequires:  nasm
Paolo Bonzini 6ea72c
BuildRequires:  qemu-img
Gerd Hoffmann b0c3af
BuildRequires:  genisoimage
b846ca
BuildRequires:  bc
b9bff0
BuildRequires:  sed
ce2011
BuildRequires:  perl
6a1f1a
BuildRequires:  findutils
Paolo Bonzini 9f191d
Patrick Uiterwijk 079220
# These are for QOSB
Patrick Uiterwijk 079220
BuildRequires:  python3-requests
48f745
BuildRequires:  qemu-system-x86
Patrick Uiterwijk 079220
%if %{?qosb_testing}
Patrick Uiterwijk 079220
# This is used for testing the enrollment: builds are run in a chroot, lacking
Patrick Uiterwijk 079220
# a kernel. The testing is only performed on x86_64 for now, but we can't make
Patrick Uiterwijk 079220
# the BuildRequires only on a specific arch, as that'd come through in the SRPM
Patrick Uiterwijk 079220
# NOTE: The actual enrollment needs to happen in all builds for all architectures,
Patrick Uiterwijk 079220
# because OVMF is built as noarch, which means that koji enforces that the build
Patrick Uiterwijk 079220
# results don't actually differ per arch, and then it picks a random arches' build
Patrick Uiterwijk 079220
# for the actual RPM.
Patrick Uiterwijk 079220
BuildRequires:  kernel-core
Patrick Uiterwijk 079220
%endif
1db20e
Paolo Bonzini 9f191d
%description
Kay Sievers bf879e
EDK II is a development code base for creating UEFI drivers, applications
Kay Sievers bf879e
and firmware images.
Paolo Bonzini 9f191d
Paolo Bonzini 9f191d
%package tools
49ef31
Summary:        EFI Development Kit II Tools
Paolo Bonzini 9f191d
%description tools
Paolo Bonzini 9f191d
This package provides tools that are needed to
Paolo Bonzini 9f191d
build EFI executables and ROMs using the GNU tools.
Paolo Bonzini 9f191d
Paolo Bonzini 9f191d
%package tools-python
49ef31
Summary:        EFI Development Kit II Tools
b846ca
Requires:       python3
Paolo Bonzini 9f191d
BuildArch:      noarch
Paolo Bonzini 9f191d
Paolo Bonzini 9f191d
%description tools-python
Paolo Bonzini 9f191d
This package provides tools that are needed to build EFI executables
Paolo Bonzini 9f191d
and ROMs using the GNU tools.  You do not need to install this package;
Paolo Bonzini 9f191d
you probably want to install edk2-tools only.
Paolo Bonzini 9f191d
Paolo Bonzini 9f191d
%package tools-doc
49ef31
Summary:        Documentation for EFI Development Kit II Tools
Gerd Hoffmann b0c3af
BuildArch:      noarch
Paolo Bonzini 9f191d
%description tools-doc
Paolo Bonzini 9f191d
This package documents the tools that are needed to
Paolo Bonzini 9f191d
build EFI executables and ROMs using the GNU tools.
Paolo Bonzini 9f191d
Patrick Uiterwijk 079220
%package qosb
Patrick Uiterwijk 079220
Summary:        Tool to enroll secureboot
a2a539
Requires:       python3
Patrick Uiterwijk 079220
Buildarch:      noarch
Patrick Uiterwijk 079220
%description qosb
Patrick Uiterwijk 079220
This package contains QOSB (QEMU OVMF Secure Boot), which can enroll OVMF
Patrick Uiterwijk 079220
variable files to enforce Secure Boot.
Patrick Uiterwijk 079220
Patrick Uiterwijk 079220
Paolo Bonzini 568a37
%if 0%{?build_ovmf_x64:1}
Gerd Hoffmann b0c3af
%package ovmf
Gerd Hoffmann b0c3af
Summary:        Open Virtual Machine Firmware
Paolo Bonzini 720bc3
# OVMF includes the Secure Boot and IPv6 features; it has a builtin OpenSSL
Paolo Bonzini 720bc3
# library.
eb7115
License:        BSD-2-Clause-Patent and OpenSSL
Paolo Bonzini 83f3ca
Provides:       bundled(openssl)
Paolo Bonzini 568a37
Provides:       OVMF = %{version}-%{release}
Paolo Bonzini 568a37
Obsoletes:      OVMF < %{version}-%{release}
Gerd Hoffmann b0c3af
BuildArch:      noarch
Gerd Hoffmann b0c3af
%description ovmf
Gerd Hoffmann b0c3af
EFI Development Kit II
Gerd Hoffmann b0c3af
Open Virtual Machine Firmware (x64)
Paolo Bonzini 568a37
%endif
Gerd Hoffmann b0c3af
Paolo Bonzini 568a37
%if 0%{?build_ovmf_ia32:1}
ad70d1
%package ovmf-ia32
ad70d1
Summary:        Open Virtual Machine Firmware
Paolo Bonzini 720bc3
# OVMF includes the Secure Boot and IPv6 features; it has a builtin OpenSSL
Paolo Bonzini 720bc3
# library.
eb7115
License:        BSD-2-Clause-Patent and OpenSSL
Paolo Bonzini 83f3ca
Provides:       bundled(openssl)
ad70d1
BuildArch:      noarch
ad70d1
%description ovmf-ia32
ad70d1
EFI Development Kit II
ad70d1
Open Virtual Machine Firmware (ia32)
Paolo Bonzini 568a37
%endif
ad70d1
Paolo Bonzini 568a37
%if 0%{?build_aavmf_aarch64:1}
Gerd Hoffmann b0c3af
%package aarch64
Gerd Hoffmann b0c3af
Summary:        AARCH64 Virtual Machine Firmware
Paolo Bonzini 568a37
Provides:       AAVMF = %{version}-%{release}
Paolo Bonzini 568a37
Obsoletes:      AAVMF < %{version}-%{release}
Gerd Hoffmann b0c3af
BuildArch:      noarch
Peter Robinson 5237d7
# No Secure Boot for AAVMF yet, but we include OpenSSL for the IPv6/HTTP boot stack.
eb7115
License:        BSD-2-Clause-Patent and OpenSSL
Paolo Bonzini 83f3ca
Provides:       bundled(openssl)
Gerd Hoffmann b0c3af
%description aarch64
Gerd Hoffmann b0c3af
EFI Development Kit II
Gerd Hoffmann b0c3af
AARCH64 UEFI Firmware
Paolo Bonzini 568a37
%endif
1db20e
Paolo Bonzini 568a37
%if 0%{?build_aavmf_arm:1}
Gerd Hoffmann d31a56
%package arm
Gerd Hoffmann d31a56
Summary:        ARM Virtual Machine Firmware
Gerd Hoffmann d31a56
BuildArch:      noarch
Peter Robinson 5237d7
# No Secure Boot for ARMv7, but we include OpenSSL for the IPv6/HTTP boot stack.
Peter Robinson 5237d7
License:        BSD-2-Clause-Patent and OpenSSL
Gerd Hoffmann d31a56
%description arm
Gerd Hoffmann d31a56
EFI Development Kit II
Peter Robinson 5237d7
ARMv7 UEFI Firmware
Paolo Bonzini 568a37
%endif
Gerd Hoffmann d31a56
Gerd Hoffmann b0c3af
Paolo Bonzini 9f191d
%prep
b846ca
%setup -q -n edk2-%{edk2_stable_str}
Gerd Hoffmann b0c3af
Paolo Bonzini 348500
# Ensure old shell and binary packages are not used
Paolo Bonzini 348500
rm -rf EdkShellBinPkg
Paolo Bonzini 348500
rm -rf EdkShellPkg
Paolo Bonzini 348500
rm -rf FatBinPkg
Paolo Bonzini 348500
rm -rf ShellBinPkg
Paolo Bonzini 348500
9fc821
# copy whitepaper into place
Paolo Bonzini 348500
cp -a -- %{SOURCE2} .
9fc821
# extract openssl into place
Peter Robinson 5237d7
tar -xf %{SOURCE1} --strip-components=1 --directory CryptoPkg/Library/OpensslLib/openssl
ce2011
(cd CryptoPkg/Library/OpensslLib && perl process_files.pl)
740797
# extract softfloat into place
Peter Robinson 5237d7
tar -xf %{SOURCE4} --strip-components=1 --directory ArmPkg/Library/ArmSoftFloatLib/berkeley-softfloat-3/
Paolo Bonzini 91c79a
Patrick Uiterwijk 079220
# Extract QOSB
Peter Robinson 5237d7
tar -xf %{SOURCE3}
Patrick Uiterwijk 079220
mv qemu-ovmf-secureboot-%{qosb_version}/README.md README.qosb
Patrick Uiterwijk 079220
mv qemu-ovmf-secureboot-%{qosb_version}/LICENSE LICENSE.qosb
Patrick Uiterwijk 079220
Paolo Bonzini 91c79a
%autopatch -p1
Paolo Bonzini 348500
base64 --decode < MdeModulePkg/Logo/Logo-OpenSSL.bmp.b64 > MdeModulePkg/Logo/Logo-OpenSSL.bmp
1db20e
b9bff0
# Extract OEM string from the RH cert, as described here
b9bff0
# https://bugzilla.tianocore.org/show_bug.cgi?id=1747#c2
b9bff0
sed \
b9bff0
  -e 's/^-----BEGIN CERTIFICATE-----$/4e32566d-8e9e-4f52-81d3-5bb9715f9727:/' \
b9bff0
  -e '/^-----END CERTIFICATE-----$/d' \
b9bff0
  %{_sourcedir}/RedHatSecureBootPkKek1.pem \
b9bff0
| tr -d '\n' \
b9bff0
> PkKek1.oemstr
740797
740797
Gerd Hoffmann b0c3af
%build
0a0d66
export PYTHON_COMMAND=%{__python3}
Gerd Hoffmann b0c3af
source ./edksetup.sh
Gerd Hoffmann b0c3af
Thierry Vignaud 8553aa
# compiler
Paolo Bonzini 720bc3
CC_FLAGS="-t GCC5"
Gerd Hoffmann b0c3af
Gerd Hoffmann b0c3af
# parallel builds
Gerd Hoffmann b0c3af
JOBS="%{?_smp_mflags}"
Gerd Hoffmann b0c3af
JOBS="${JOBS#-j}"
Gerd Hoffmann b0c3af
if test "$JOBS" != ""; then
Gerd Hoffmann b0c3af
        CC_FLAGS="${CC_FLAGS} -n $JOBS"
Gerd Hoffmann b0c3af
fi
Gerd Hoffmann b0c3af
Gerd Hoffmann b0c3af
# common features
740797
CC_FLAGS="$CC_FLAGS --cmd-len=65536 -b DEBUG --hash"
Paolo Bonzini 720bc3
CC_FLAGS="$CC_FLAGS -D NETWORK_IP6_ENABLE"
Peter Robinson 5237d7
CC_FLAGS="$CC_FLAGS -D NETWORK_TLS_ENABLE"
Peter Robinson 5237d7
CC_FLAGS="$CC_FLAGS -D NETWORK_HTTP_BOOT_ENABLE"
032154
CC_FLAGS="$CC_FLAGS -D TPM_ENABLE"
Gerd Hoffmann b0c3af
Gerd Hoffmann b0c3af
# ovmf features
Gerd Hoffmann b0c3af
OVMF_FLAGS="${CC_FLAGS}"
410bf1
OVMF_FLAGS="${OVMF_FLAGS} -D FD_SIZE_2MB"
Gerd Hoffmann b0c3af
Gerd Hoffmann b0c3af
# ovmf + secure boot features
Gerd Hoffmann b0c3af
OVMF_SB_FLAGS="${OVMF_FLAGS}"
Gerd Hoffmann b0c3af
OVMF_SB_FLAGS="${OVMF_SB_FLAGS} -D SECURE_BOOT_ENABLE"
Gerd Hoffmann b0c3af
OVMF_SB_FLAGS="${OVMF_SB_FLAGS} -D SMM_REQUIRE"
Gerd Hoffmann b0c3af
OVMF_SB_FLAGS="${OVMF_SB_FLAGS} -D EXCLUDE_SHELL_FROM_FD"
Gerd Hoffmann b0c3af
Gerd Hoffmann b0c3af
# arm firmware features
Gerd Hoffmann b0c3af
ARM_FLAGS="${CC_FLAGS}"
Gerd Hoffmann b0c3af
1db20e
unset MAKEFLAGS
Tom Stellard 67c92c
%make_build -C BaseTools \
285b94
  EXTRA_OPTFLAGS="%{optflags}" \
285b94
  EXTRA_LDFLAGS="%{__global_ldflags}"
Gerd Hoffmann 798d0f
sed -i -e 's/-Werror//' Conf/tools_def.txt
Gerd Hoffmann b0c3af
ad70d1
Paolo Bonzini 568a37
%if 0%{?cross:1}
Paolo Bonzini 720bc3
export GCC5_IA32_PREFIX="x86_64-linux-gnu-"
Paolo Bonzini 720bc3
export GCC5_X64_PREFIX="x86_64-linux-gnu-"
Paolo Bonzini 720bc3
export GCC5_AARCH64_PREFIX="aarch64-linux-gnu-"
Paolo Bonzini 720bc3
export GCC5_ARM_PREFIX="arm-linux-gnu-"
Paolo Bonzini 568a37
%endif
Paolo Bonzini 568a37
Paolo Bonzini 568a37
# build ovmf (x64)
Paolo Bonzini 568a37
%if 0%{?build_ovmf_x64:1}
Gerd Hoffmann b0c3af
mkdir -p ovmf
Gerd Hoffmann b0c3af
build ${OVMF_FLAGS} -a X64 -p OvmfPkg/OvmfPkgX64.dsc
ad70d1
cp Build/OvmfX64/*/FV/OVMF_*.fd ovmf/
Gerd Hoffmann b0c3af
rm -rf Build/OvmfX64
Gerd Hoffmann b0c3af
ad70d1
# build ovmf (x64) with secure boot
Gerd Hoffmann b0c3af
build ${OVMF_SB_FLAGS} -a IA32 -a X64 -p OvmfPkg/OvmfPkgIa32X64.dsc
Gerd Hoffmann b0c3af
cp Build/Ovmf3264/*/FV/OVMF_CODE.fd ovmf/OVMF_CODE.secboot.fd
Gerd Hoffmann b0c3af
ad70d1
# build ovmf (x64) shell iso with EnrollDefaultKeys
ad70d1
cp Build/Ovmf3264/*/X64/Shell.efi ovmf/
Gerd Hoffmann b0c3af
cp Build/Ovmf3264/*/X64/EnrollDefaultKeys.efi ovmf
ad70d1
sh %{_sourcedir}/build-iso.sh ovmf/
Patrick Uiterwijk 079220
740797
%if !%{skip_enroll}
Patrick Uiterwijk 079220
python3 qemu-ovmf-secureboot-%{qosb_version}/ovmf-vars-generator \
740797
    --qemu-binary /usr/bin/qemu-system-x86_64 \
740797
    --ovmf-binary ovmf/OVMF_CODE.secboot.fd \
740797
    --ovmf-template-vars ovmf/OVMF_VARS.fd \
740797
    --uefi-shell-iso ovmf/UefiShell.iso \
b9bff0
    --oem-string "$(< PkKek1.oemstr)" \
740797
    --skip-testing \
740797
    ovmf/OVMF_VARS.secboot.fd
167ead
%else
167ead
# This isn't going to actually give secureboot, but makes json files happy
167ead
# if we need to test disabling ovmf-vars-generator
167ead
cp ovmf/OVMF_VARS.fd ovmf/OVMF_VARS.secboot.fd
740797
%endif
Paolo Bonzini 568a37
%endif
Gerd Hoffmann b0c3af
ad70d1
ad70d1
# build ovmf-ia32
Paolo Bonzini 568a37
%if 0%{?build_ovmf_ia32:1}
ad70d1
mkdir -p ovmf-ia32
ad70d1
build ${OVMF_FLAGS} -a IA32 -p OvmfPkg/OvmfPkgIa32.dsc
429a27
cp Build/OvmfIa32/*/FV/OVMF_CODE*.fd ovmf-ia32/
429a27
# cp VARS files from from ovmf/, which are all we need
429a27
cp ovmf/OVMF_VARS*.fd ovmf-ia32/
ad70d1
rm -rf Build/OvmfIa32
ad70d1
ad70d1
# build ovmf-ia32 with secure boot
ad70d1
build ${OVMF_SB_FLAGS} -a IA32 -p OvmfPkg/OvmfPkgIa32.dsc
ad70d1
cp Build/OvmfIa32/*/FV/OVMF_CODE.fd ovmf-ia32/OVMF_CODE.secboot.fd
ad70d1
ad70d1
# build ovmf-ia32 shell iso with EnrollDefaultKeys
ad70d1
cp Build/OvmfIa32/*/IA32/Shell.efi ovmf-ia32/Shell.efi
ad70d1
cp Build/OvmfIa32/*/IA32/EnrollDefaultKeys.efi ovmf-ia32/EnrollDefaultKeys.efi
ad70d1
sh %{_sourcedir}/build-iso.sh ovmf-ia32/
Paolo Bonzini 568a37
%endif
ad70d1
ad70d1
Gerd Hoffmann d31a56
# build aarch64 firmware
Paolo Bonzini 568a37
%if 0%{?build_aavmf_aarch64:1}
Gerd Hoffmann b0c3af
mkdir -p aarch64
Gerd Hoffmann b0c3af
build $ARM_FLAGS -a AARCH64 -p ArmVirtPkg/ArmVirtQemu.dsc
Gerd Hoffmann b0c3af
cp Build/ArmVirtQemu-AARCH64/DEBUG_*/FV/*.fd aarch64
Gerd Hoffmann b0c3af
dd of="aarch64/QEMU_EFI-pflash.raw" if="/dev/zero" bs=1M count=64
Gerd Hoffmann b0c3af
dd of="aarch64/QEMU_EFI-pflash.raw" if="aarch64/QEMU_EFI.fd" conv=notrunc
Gerd Hoffmann b0c3af
dd of="aarch64/vars-template-pflash.raw" if="/dev/zero" bs=1M count=64
Paolo Bonzini 568a37
%endif
1db20e
ad70d1
Peter Robinson 5237d7
# build ARMv7 firmware
Paolo Bonzini 568a37
%if 0%{?build_aavmf_arm:1}
Gerd Hoffmann d31a56
mkdir -p arm
Gerd Hoffmann d31a56
build $ARM_FLAGS -a ARM -p ArmVirtPkg/ArmVirtQemu.dsc
Gerd Hoffmann d31a56
cp Build/ArmVirtQemu-ARM/DEBUG_*/FV/*.fd arm
Gerd Hoffmann d31a56
dd of="arm/QEMU_EFI-pflash.raw" if="/dev/zero" bs=1M count=64
Gerd Hoffmann d31a56
dd of="arm/QEMU_EFI-pflash.raw" if="arm/QEMU_EFI.fd" conv=notrunc
Gerd Hoffmann d31a56
dd of="arm/vars-template-pflash.raw" if="/dev/zero" bs=1M count=64
Paolo Bonzini 568a37
%endif
Paolo Bonzini 9f191d
740797
740797
Patrick Uiterwijk 079220
%check
Patrick Uiterwijk 079220
%if 0%{?build_ovmf_x64:1}
Patrick Uiterwijk 079220
%if 0%{?qosb_testing}
740797
%if !%{skip_enroll}
6a1f1a
KERNELPATH="$(find /lib/modules -name vmlinuz | head -1)"
Patrick Uiterwijk 079220
python3 qemu-ovmf-secureboot-%{qosb_version}/ovmf-vars-generator \
740797
    --qemu-binary /usr/bin/qemu-system-x86_64 \
740797
    --ovmf-binary ovmf/OVMF_CODE.secboot.fd \
740797
    --ovmf-template-vars ovmf/OVMF_VARS.fd \
740797
    --uefi-shell-iso ovmf/UefiShell.iso \
740797
    --skip-enrollment \
740797
    --print-output \
740797
    --no-download \
0ea421
    -vv \
6a1f1a
    --kernel-path "$KERNELPATH" \
740797
    ovmf/OVMF_VARS.secboot.fd
Patrick Uiterwijk 079220
%endif
Patrick Uiterwijk 079220
%endif
740797
%endif
740797
740797
Patrick Uiterwijk 079220
Paolo Bonzini 9f191d
%install
Paolo Bonzini 720bc3
cp CryptoPkg/Library/OpensslLib/openssl/LICENSE LICENSE.openssl
Gerd Hoffmann b0c3af
mkdir -p %{buildroot}%{_bindir} \
Gerd Hoffmann b0c3af
         %{buildroot}%{_datadir}/%{name}/Conf \
Gerd Hoffmann b0c3af
         %{buildroot}%{_datadir}/%{name}/Scripts
Gerd Hoffmann b0c3af
install BaseTools/Source/C/bin/* \
49ef31
        %{buildroot}%{_bindir}
Gerd Hoffmann b0c3af
install BaseTools/BinWrappers/PosixLike/LzmaF86Compress \
Gerd Hoffmann b0c3af
        %{buildroot}%{_bindir}
Gerd Hoffmann b0c3af
install BaseTools/BuildEnv \
Paolo Bonzini 0655ef
        %{buildroot}%{_datadir}/%{name}
Gerd Hoffmann b0c3af
install BaseTools/Conf/*.template \
Paolo Bonzini d282ae
        %{buildroot}%{_datadir}/%{name}/Conf
Gerd Hoffmann b0c3af
install BaseTools/Scripts/GccBase.lds \
Paolo Bonzini d282ae
        %{buildroot}%{_datadir}/%{name}/Scripts
Paolo Bonzini d282ae
Gerd Hoffmann b0c3af
cp -R BaseTools/Source/Python %{buildroot}%{_datadir}/%{name}/Python
Paolo Bonzini d282ae
for i in build BPDG Ecc GenDepex GenFds GenPatchPcdTable PatchPcdValue TargetTool Trim UPT; do
Gerd Hoffmann b0c3af
echo '#!/bin/sh
Gerd Hoffmann b0c3af
export PYTHONPATH=%{_datadir}/%{name}/Python
b846ca
exec python3 '%{_datadir}/%{name}/Python/$i/$i.py' "$@"' > %{buildroot}%{_bindir}/$i
Paolo Bonzini 9f191d
  chmod +x %{buildroot}%{_bindir}/$i
Paolo Bonzini 9f191d
done
Paolo Bonzini 9f191d
167ead
# For distro-provided firmware packages, the specification
167ead
# (https://git.qemu.org/?p=qemu.git;a=blob;f=docs/interop/firmware.json)
167ead
# says the JSON "descriptor files" to be searched in this directory:
167ead
# `/usr/share/firmware/`.  Create it.
167ead
mkdir -p %{buildroot}/%{_datadir}/qemu/firmware
167ead
Gerd Hoffmann b0c3af
mkdir -p %{buildroot}/usr/share/%{name}
Paolo Bonzini 568a37
%if 0%{?build_ovmf_x64:1}
Gerd Hoffmann b0c3af
cp -a ovmf %{buildroot}/usr/share/%{name}
Paolo Bonzini 568a37
# Libvirt hardcodes this directory name
Paolo Bonzini 568a37
mkdir %{buildroot}/usr/share/OVMF
Paolo Bonzini 568a37
ln -sf ../%{name}/ovmf/OVMF_CODE.fd                %{buildroot}/usr/share/OVMF
Paolo Bonzini 568a37
ln -sf ../%{name}/ovmf/OVMF_CODE.secboot.fd        %{buildroot}/usr/share/OVMF
Paolo Bonzini 498742
ln -sf ../%{name}/ovmf/OVMF_VARS.fd                %{buildroot}/usr/share/OVMF
Patrick Uiterwijk 079220
ln -sf ../%{name}/ovmf/OVMF_VARS.secboot.fd        %{buildroot}/usr/share/OVMF
Paolo Bonzini 568a37
ln -sf ../%{name}/ovmf/UefiShell.iso               %{buildroot}/usr/share/OVMF
Kashyap Chamarthy 674b3c
167ead
for f in %{_sourcedir}/*edk2-ovmf-x64*.json; do
167ead
    install -pm 644 $f %{buildroot}/%{_datadir}/qemu/firmware
167ead
done
Paolo Bonzini 568a37
%endif
167ead
167ead
Paolo Bonzini 568a37
%if 0%{?build_ovmf_ia32:1}
ad70d1
cp -a ovmf-ia32 %{buildroot}/usr/share/%{name}
Kashyap Chamarthy 674b3c
167ead
for f in %{_sourcedir}/*edk2-ovmf-ia32*.json; do
167ead
    install -pm 644 $f %{buildroot}/%{_datadir}/qemu/firmware
167ead
done
Paolo Bonzini 568a37
%endif
167ead
167ead
Paolo Bonzini 568a37
%if 0%{?build_aavmf_aarch64:1}
Gerd Hoffmann b0c3af
cp -a aarch64 %{buildroot}/usr/share/%{name}
Paolo Bonzini 568a37
# Libvirt hardcodes this directory name
Paolo Bonzini 568a37
mkdir %{buildroot}/usr/share/AAVMF
Paolo Bonzini 568a37
ln -sf ../%{name}/aarch64/QEMU_EFI-pflash.raw      %{buildroot}/usr/share/AAVMF/AAVMF_CODE.fd
Paolo Bonzini 568a37
ln -sf ../%{name}/aarch64/vars-template-pflash.raw %{buildroot}/usr/share/AAVMF/AAVMF_VARS.fd
Kashyap Chamarthy 674b3c
167ead
for f in %{_sourcedir}/*edk2-aarch64*.json; do
167ead
    install -pm 644 $f %{buildroot}/%{_datadir}/qemu/firmware
167ead
done
Paolo Bonzini 568a37
%endif
167ead
167ead
Paolo Bonzini 568a37
%if 0%{?build_aavmf_arm:1}
Gerd Hoffmann d31a56
cp -a arm %{buildroot}/usr/share/%{name}
Paolo Bonzini 568a37
ln -sf ../%{name}/arm/QEMU_EFI-pflash.raw          %{buildroot}/usr/share/AAVMF/AAVMF32_CODE.fd
167ead
167ead
for f in %{_sourcedir}/*edk2-arm*.json; do
167ead
    install -pm 644 $f %{buildroot}/%{_datadir}/qemu/firmware
167ead
done
Paolo Bonzini 568a37
%endif
1db20e
a6540d
%if 0%{?py_byte_compile:1}
a6540d
# https://docs.fedoraproject.org/en-US/packaging-guidelines/Python_Appendix/#manual-bytecompilation
a6540d
%py_byte_compile %{python3} %{buildroot}%{_datadir}/edk2/Python
a6540d
%endif
a6540d
167ead
Patrick Uiterwijk 079220
install qemu-ovmf-secureboot-%{qosb_version}/ovmf-vars-generator %{buildroot}%{_bindir}
Patrick Uiterwijk 079220
Gerd Hoffmann b0c3af
Paolo Bonzini 9f191d
%files tools
Paolo Bonzini 348500
%license License.txt
Paolo Bonzini 720bc3
%license LICENSE.openssl
Paolo Bonzini 7ae6f1
%{_bindir}/DevicePath
Paolo Bonzini 9f191d
%{_bindir}/EfiRom
Paolo Bonzini 9f191d
%{_bindir}/GenCrc32
Paolo Bonzini 9f191d
%{_bindir}/GenFfs
Paolo Bonzini 9f191d
%{_bindir}/GenFv
Paolo Bonzini 9f191d
%{_bindir}/GenFw
Paolo Bonzini 9f191d
%{_bindir}/GenSec
Paolo Bonzini 9f191d
%{_bindir}/LzmaCompress
Paolo Bonzini d282ae
%{_bindir}/LzmaF86Compress
Paolo Bonzini 9f191d
%{_bindir}/Split
Paolo Bonzini d282ae
%{_bindir}/TianoCompress
Paolo Bonzini 9f191d
%{_bindir}/VfrCompile
Paolo Bonzini 9f191d
%{_bindir}/VolInfo
Gerd Hoffmann b0c3af
%dir %{_datadir}/%{name}
Paolo Bonzini 0655ef
%{_datadir}/%{name}/BuildEnv
Gerd Hoffmann b0c3af
%{_datadir}/%{name}/Conf
Gerd Hoffmann b0c3af
%{_datadir}/%{name}/Scripts
Paolo Bonzini 9f191d
Paolo Bonzini 9f191d
%files tools-python
Paolo Bonzini d282ae
%{_bindir}/build
Paolo Bonzini 9f191d
%{_bindir}/BPDG
Paolo Bonzini d282ae
%{_bindir}/Ecc
Paolo Bonzini 9f191d
%{_bindir}/GenDepex
Paolo Bonzini 9f191d
%{_bindir}/GenFds
Paolo Bonzini 9f191d
%{_bindir}/GenPatchPcdTable
Paolo Bonzini 9f191d
%{_bindir}/PatchPcdValue
Paolo Bonzini 9f191d
%{_bindir}/TargetTool
Paolo Bonzini 9f191d
%{_bindir}/Trim
Paolo Bonzini 9f191d
%{_bindir}/UPT
Gerd Hoffmann b0c3af
%dir %{_datadir}/%{name}
Gerd Hoffmann b0c3af
%{_datadir}/%{name}/Python
Paolo Bonzini 9f191d
Paolo Bonzini 9f191d
%files tools-doc
Gerd Hoffmann b0c3af
%doc BaseTools/UserManuals/*.rtf
Gerd Hoffmann b0c3af
Patrick Uiterwijk 079220
%files qosb
Patrick Uiterwijk 079220
%license LICENSE.qosb
Patrick Uiterwijk 079220
%doc README.qosb
Patrick Uiterwijk 079220
%{_bindir}/ovmf-vars-generator
Patrick Uiterwijk 079220
Paolo Bonzini 568a37
%if 0%{?build_ovmf_x64:1}
Gerd Hoffmann b0c3af
%files ovmf
Gerd Hoffmann b0c3af
%license OvmfPkg/License.txt
Gerd Hoffmann b0c3af
%license LICENSE.openssl
Gerd Hoffmann b0c3af
%doc OvmfPkg/README
Paolo Bonzini 348500
%doc ovmf-whitepaper-c770f8c.txt
Gerd Hoffmann b0c3af
%dir /usr/share/%{name}
Gerd Hoffmann b0c3af
%dir /usr/share/%{name}/ovmf
Kashyap Chamarthy 674b3c
%dir /usr/share/qemu/firmware
Gerd Hoffmann b0c3af
/usr/share/%{name}/ovmf/OVMF*.fd
Gerd Hoffmann b0c3af
/usr/share/%{name}/ovmf/*.efi
Gerd Hoffmann b0c3af
/usr/share/%{name}/ovmf/*.iso
167ead
/usr/share/qemu/firmware/*edk2-ovmf-x64*.json
Paolo Bonzini 568a37
/usr/share/OVMF
Paolo Bonzini 568a37
%endif
Gerd Hoffmann b0c3af
Paolo Bonzini 568a37
%if 0%{?build_ovmf_ia32:1}
ad70d1
%files ovmf-ia32
ad70d1
%license OvmfPkg/License.txt
ad70d1
%license LICENSE.openssl
ad70d1
%doc OvmfPkg/README
Paolo Bonzini 348500
%doc ovmf-whitepaper-c770f8c.txt
ad70d1
%dir /usr/share/%{name}
ad70d1
%dir /usr/share/%{name}/ovmf-ia32
Kashyap Chamarthy 674b3c
%dir /usr/share/qemu/firmware
ad70d1
/usr/share/%{name}/ovmf-ia32/OVMF*.fd
ad70d1
/usr/share/%{name}/ovmf-ia32/*.efi
ad70d1
/usr/share/%{name}/ovmf-ia32/*.iso
167ead
/usr/share/qemu/firmware/*edk2-ovmf-ia32*.json
Paolo Bonzini 568a37
%endif
ad70d1
Paolo Bonzini 568a37
%if 0%{?build_aavmf_aarch64:1}
Gerd Hoffmann b0c3af
%files aarch64
Paolo Bonzini 348500
%license OvmfPkg/License.txt
Paolo Bonzini 348500
%license LICENSE.openssl
Gerd Hoffmann b0c3af
%dir /usr/share/%{name}
Gerd Hoffmann b0c3af
%dir /usr/share/%{name}/aarch64
Kashyap Chamarthy 674b3c
%dir /usr/share/qemu/firmware
Gerd Hoffmann b0c3af
/usr/share/%{name}/aarch64/QEMU*.fd
Gerd Hoffmann b0c3af
/usr/share/%{name}/aarch64/*.raw
167ead
/usr/share/qemu/firmware/*edk2-aarch64*.json
Paolo Bonzini 568a37
/usr/share/AAVMF/AAVMF_*
Paolo Bonzini 568a37
%endif
1db20e
Paolo Bonzini 568a37
%if 0%{?build_aavmf_arm:1}
Gerd Hoffmann d31a56
%files arm
Paolo Bonzini 348500
%license OvmfPkg/License.txt
Paolo Bonzini 348500
%license LICENSE.openssl
Gerd Hoffmann d31a56
%dir /usr/share/%{name}
Gerd Hoffmann d31a56
%dir /usr/share/%{name}/arm
Kashyap Chamarthy 674b3c
%dir /usr/share/qemu/firmware
Gerd Hoffmann d31a56
/usr/share/%{name}/arm/QEMU*.fd
Gerd Hoffmann d31a56
/usr/share/%{name}/arm/*.raw
167ead
/usr/share/qemu/firmware/*edk2-arm*.json
Paolo Bonzini 568a37
/usr/share/AAVMF/AAVMF32_*
Paolo Bonzini 568a37
%endif
Gerd Hoffmann d31a56
Paolo Bonzini 9f191d
Paolo Bonzini 9f191d
%changelog
032154
* Thu Dec 03 2020 Cole Robinson <aintdiscole@gmail.com> - 20200801stable-3
032154
- Really fix TPM breakage (bz 1897367)
032154
ce2011
* Tue Nov 24 2020 Cole Robinson <aintdiscole@gmail.com> - 20200801stable-2
ce2011
- Fix openssl usage, unbreak TPM (bz 1897367)
ce2011
fdb3e7
* Wed Sep 16 2020 Cole Robinson <crobinso@redhat.com> - 20200801stable-1
fdb3e7
- Update to edk2 stable 202008
fdb3e7
Peter Robinson 5237d7
* Sat Sep 12 2020 Peter Robinson <pbrobinson@fedoraproject.org> - 20200201stable-6
Peter Robinson 5237d7
- Tweaks for aarch64/ARMv7 builds
Peter Robinson 5237d7
- Minor cleanups
Peter Robinson 5237d7
a6540d
* Tue Aug 04 2020 Cole Robinson <aintdiscole@gmail.com> - 20200201stable-5
a6540d
- Fix build failures on rawhide
a6540d
Fedora Release Engineering cf3e37
* Sat Aug 01 2020 Fedora Release Engineering <releng@fedoraproject.org> - 20200201stable-4
Fedora Release Engineering cf3e37
- Second attempt - Rebuilt for
Fedora Release Engineering cf3e37
  https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
Fedora Release Engineering cf3e37
Fedora Release Engineering 78cb77
* Mon Jul 27 2020 Fedora Release Engineering <releng@fedoraproject.org> - 20200201stable-3
Fedora Release Engineering 78cb77
- Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
Fedora Release Engineering 78cb77
Tom Stellard 67c92c
* Mon Jul 13 2020 Tom Stellard <tstellar@redhat.com> - 20200201stable-2
Tom Stellard 67c92c
- Use make macros
Tom Stellard 67c92c
- https://fedoraproject.org/wiki/Changes/UseMakeBuildInstallMacro
Tom Stellard 67c92c
0a0d66
* Mon Apr 13 2020 Cole Robinson <aintdiscole@gmail.com> - 20200201stable-1
0a0d66
- Update to stable-202002
0a0d66
Fedora Release Engineering bccf75
* Tue Jan 28 2020 Fedora Release Engineering <releng@fedoraproject.org> - 20190501stable-5
Fedora Release Engineering bccf75
- Rebuilt for https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
Fedora Release Engineering bccf75
966ede
* Fri Sep 06 2019 Patrick Uiterwijk <puiterwijk@redhat.com> - 20190501stable-4
966ede
- Updated HTTP_BOOT option to new upstream value
966ede
Fedora Release Engineering 14344b
* Wed Jul 24 2019 Fedora Release Engineering <releng@fedoraproject.org> - 20190501stable-3
Fedora Release Engineering 14344b
- Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
Fedora Release Engineering 14344b
b9bff0
* Mon Jul 15 2019 Cole Robinson <aintdiscole@gmail.com> - 20190501stable-2
b9bff0
- License is now BSD-2-Clause-Patent
b9bff0
- Re-enable secureboot enrollment
b9bff0
- Use qemu-ovmf-secureboot from git
b9bff0
740797
* Thu Jul 11 2019 Cole Robinson <crobinso@redhat.com> - 20190501stable-1
740797
- Update to stable-201905
740797
- Update to openssl-1.1.1b
1b8f62
- Ship VARS file for ovmf-ia32 (bug 1688596)
Kashyap Chamarthy 674b3c
- Ship Fedora-variant JSON "firmware descriptor files"
Kashyap Chamarthy 674b3c
- Resolves rhbz#1728652
740797
e9ffba
* Mon Mar 18 2019 Cole Robinson <aintdiscole@gmail.com> - 20190308stable-1
e9ffba
- Use YYYYMMDD versioning to fix upgrade path
e9ffba
e9ffba
* Fri Mar 15 2019 Cole Robinson <aintdiscole@gmail.com> - 201903stable-1
b846ca
- Update to stable-201903
b846ca
- Update to openssl-1.1.0j
b846ca
- Move to python3 deps
b846ca
Fedora Release Engineering bffed9
* Thu Jan 31 2019 Fedora Release Engineering <releng@fedoraproject.org> - 20180815gitcb5f4f45ce-6
Fedora Release Engineering bffed9
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
Fedora Release Engineering bffed9
a2a539
* Wed Nov 14 2018 Patrick Uiterwijk <puiterwijk@redhat.com> - 20180815gitcb5f4f45ce-5
a2a539
- Add -qosb dependency on python3
a2a539
Paolo Bonzini ec71ad
* Fri Nov 9 2018 Paolo Bonzini <pbonzini@redhat.com> - 20180815gitcb5f4f45ce-4
Paolo Bonzini ec71ad
- Fix network boot via grub (bz 1648476)
Paolo Bonzini ec71ad
Paolo Bonzini 3aa095
* Wed Sep 12 2018 Paolo Bonzini <pbonzini@redhat.com> - 20180815gitcb5f4f45ce-3
Paolo Bonzini 3aa095
- Explicitly compile the scripts using py_byte_compile
Paolo Bonzini 3aa095
285b94
* Fri Aug 31 2018 Cole Robinson <crobinso@redhat.com> - 20180815gitcb5f4f45ce-2
285b94
- Fix passing through RPM build flags (bz 1540244)
285b94
9fc821
* Tue Aug 21 2018 Cole Robinson <crobinso@redhat.com> - 20180815gitcb5f4f45ce-1
9fc821
- Update to edk2 git cb5f4f45ce, edk2-stable201808
3c6531
- Update to qemu-ovmf-secureboot-1.1.3
3c6531
- Enable TPM2 support
9fc821
Paolo Bonzini 83f3ca
* Mon Jul 23 2018 Paolo Bonzini <pbonzini@redhat.com> - 20180529gitee3198e672e2-5
Paolo Bonzini 83f3ca
- Fixes for AMD SEV on OVMF_CODE.fd
Paolo Bonzini 83f3ca
- Add Provides for bundled OpenSSL
Paolo Bonzini 83f3ca
Paolo Bonzini 720bc3
* Wed Jul 18 2018 Paolo Bonzini <pbonzini@redhat.com> - 20180529gitee3198e672e2-4
Paolo Bonzini 720bc3
- Enable IPv6
Paolo Bonzini 720bc3
Fedora Release Engineering 20639a
* Thu Jul 12 2018 Fedora Release Engineering <releng@fedoraproject.org> - 20180529gitee3198e672e2-3
Fedora Release Engineering 20639a
- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
Fedora Release Engineering 20639a
Paolo Bonzini 9fbea3
* Wed Jun 20 2018 Paolo Bonzini <pbonzini@redhat.com> - 20180529gitee3198e672e2-2
Paolo Bonzini 9fbea3
- Backport two bug fixes from RHEL: connect again virtio-rng devices, and
Paolo Bonzini 9fbea3
  connect consoles unconditionally in OVMF (ARM firmware already did it)
Paolo Bonzini 9fbea3
Paolo Bonzini 7ae6f1
* Tue May 29 2018 Paolo Bonzini <pbonzini@redhat.com> - 20180529gitee3198e672e2-1
Paolo Bonzini 9fbea3
- Rebase to ee3198e672e2
Paolo Bonzini 7ae6f1
b7103c
* Tue May 01 2018 Cole Robinson <crobinso@redhat.com> - 20171011git92d07e4-7
b7103c
- Bump release for new build
b7103c
Patrick Uiterwijk 079220
* Fri Mar 30 2018 Patrick Uiterwijk <puiterwijk@redhat.com> - 20171011git92d07e4-6
Patrick Uiterwijk 079220
- Add qemu-ovmf-secureboot (qosb)
Patrick Uiterwijk 079220
- Generate pre-enrolled Secure Boot OVMF VARS files
Patrick Uiterwijk 079220
Paolo Bonzini 6ea72c
* Wed Mar 07 2018 Paolo Bonzini <pbonzini@redhat.com> - 20171011git92d07e4-5
Paolo Bonzini 6ea72c
- Fix GCC 8 compilation
Paolo Bonzini 6ea72c
- Replace dosfstools and mtools with qemu-img vvfat
Paolo Bonzini 6ea72c
Fedora Release Engineering d3e5a8
* Wed Feb 07 2018 Fedora Release Engineering <releng@fedoraproject.org> - 20171011git92d07e4-4
Fedora Release Engineering d3e5a8
- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
Fedora Release Engineering d3e5a8
Paolo Bonzini 91c79a
* Fri Jan 19 2018 Paolo Bonzini <pbonzini@redhat.com> - 20170209git296153c5-3
Paolo Bonzini 91c79a
- Add OpenSSL patches from Fedora
Paolo Bonzini 91c79a
- Enable TLS_MODE
Paolo Bonzini 91c79a
Paolo Bonzini 2e34e0
* Fri Nov 17 2017 Paolo Bonzini <pbonzini@redhat.com> - 20170209git296153c5-2
Paolo Bonzini 2e34e0
- Backport patches 19-21 from RHEL
Paolo Bonzini 2e34e0
- Add patches 22-24 to fix SEV slowness
Paolo Bonzini 2e34e0
- Add fedora conditionals
Paolo Bonzini 2e34e0
Paolo Bonzini 2e34e0
* Tue Nov 14 2017 Paolo Bonzini <pbonzini@redhat.com> - 20171011git92d07e4-1
Paolo Bonzini 348500
- Import source and patches from RHEL version
Paolo Bonzini 348500
- Update OpenSSL to 1.1.0e
Paolo Bonzini 348500
- Refresh 0099-Tweak-the-tools_def-to-support-cross-compiling.patch
Paolo Bonzini 348500
Paolo Bonzini 568a37
* Mon Nov 13 2017 Paolo Bonzini <pbonzini@redhat.com> - 20170209git296153c5-6
Paolo Bonzini 568a37
- Allow non-cross builds
Paolo Bonzini 568a37
- Install /usr/share/OVMF and /usr/share/AAVMF
Paolo Bonzini 568a37
Fedora Release Engineering c356e9
* Wed Aug 02 2017 Fedora Release Engineering <releng@fedoraproject.org> - 20170209git296153c5-5
Fedora Release Engineering c356e9
- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild
Fedora Release Engineering c356e9
Fedora Release Engineering 3f09d5
* Wed Jul 26 2017 Fedora Release Engineering <releng@fedoraproject.org> - 20170209git296153c5-4
Fedora Release Engineering 3f09d5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
Fedora Release Engineering 3f09d5
ad70d1
* Wed Mar 15 2017 Cole Robinson <crobinso@redhat.com> - 20170209git296153c5-3
ad70d1
- Ship ovmf-ia32 package (bz 1424722)
ad70d1
ed852e
* Thu Feb 16 2017 Cole Robinson <crobinso@redhat.com> - 20170209git296153c5-2
ed852e
- Update EnrollDefaultKeys patch (bz #1398743)
ed852e
Paolo Bonzini d7ad69
* Mon Feb 13 2017 Paolo Bonzini <pbonzini@redhat.com> - 20170209git296153c5-1
Paolo Bonzini d7ad69
- Rebase to git master
Paolo Bonzini d7ad69
- New patch 0010 fixes failure to build from source.
Paolo Bonzini d7ad69
Fedora Release Engineering 5b845e
* Fri Feb 10 2017 Fedora Release Engineering <releng@fedoraproject.org> - 20161105git3b25ca8-2
Fedora Release Engineering 5b845e
- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild
Fedora Release Engineering 5b845e
b17819
* Sun Nov 06 2016 Cole Robinson <crobinso@redhat.com> - 20161105git3b25ca8-1
b17819
- Rebase to git master
b17819
Tom Callaway da615e
* Fri Sep  9 2016 Tom Callaway <spot@fedoraproject.org> - 20160418gita8c39ba-5
Tom Callaway da615e
- replace legally problematic openssl source with "hobbled" tarball
Tom Callaway da615e
Gerd Hoffmann d31a56
* Thu Jul 21 2016 Gerd Hoffmann <kraxel@redhat.com> - 20160418gita8c39ba-4
Gerd Hoffmann d31a56
- Also build for armv7.
Gerd Hoffmann d31a56
Gerd Hoffmann d31a56
* Tue Jul 19 2016 Gerd Hoffmann <kraxel@redhat.com> 20160418gita8c39ba-3
Gerd Hoffmann 18632e
- Update EnrollDefaultKeys patch.
Gerd Hoffmann 18632e
Paolo Bonzini 498015
* Fri Jul 8 2016 Paolo Bonzini <pbonzini@redhat.com> - 20160418gita8c39ba-2
Paolo Bonzini 498015
- Distribute edk2-ovmf on aarch64
Paolo Bonzini 498015
1db20e
* Sat May 21 2016 Cole Robinson <crobinso@redhat.com> - 20160418gita8c39ba-1
1db20e
- Distribute edk2-aarch64 on x86 (bz #1338027)
1db20e
Gerd Hoffmann b0c3af
* Mon Apr 18 2016 Gerd Hoffmann <kraxel@redhat.com> 20160418gita8c39ba-0
Gerd Hoffmann b0c3af
- Update to latest git.
Gerd Hoffmann b0c3af
- Add firmware builds (FatPkg is free now).
Gerd Hoffmann b0c3af
7e2328
* Mon Feb 15 2016 Cole Robinson <crobinso@redhat.com> 20151127svn18975-3
7e2328
- Fix FTBFS gcc warning (bz 1307439)
7e2328
f62d42
* Wed Feb 03 2016 Fedora Release Engineering <releng@fedoraproject.org> - 20151127svn18975-2
f62d42
- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild
f62d42
7e2328
* Fri Nov 27 2015 Paolo Bonzini <pbonzini@redhat.com> - 20151127svn18975-1
Paolo Bonzini ac38c1
- Rebase to 20151127svn18975-1
Paolo Bonzini ac38c1
- Linker script renamed to GccBase.lds
Paolo Bonzini ac38c1
2478ec
* Wed Jun 17 2015 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 20150519svn17469-2
2478ec
- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild
2478ec
Paolo Bonzini ac38c1
* Tue May 19 2015 Paolo Bonzini <pbonzini@redhat.com> - 20150519svn17469-1
Paolo Bonzini 98fad1
- Rebase to 20150519svn17469-1
Paolo Bonzini 98fad1
- edk2-remove-tree-check.patch now upstream
Paolo Bonzini 98fad1
Kalev Lember e9a765
* Sat May 02 2015 Kalev Lember <kalevlember@gmail.com> - 20140724svn2670-6
Kalev Lember e9a765
- Rebuilt for GCC 5 C++11 ABI change
Kalev Lember e9a765
Peter Robinson c83d14
* Sat Aug 16 2014 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 20140724svn2670-5
Peter Robinson c83d14
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
Peter Robinson c83d14
Paolo Bonzini d2839d
* Thu Jul 24 2014 Paolo Bonzini <pbonzini@redhat.com> - 20140724svn2670-1
Paolo Bonzini d2839d
- Rebase to 20140724svn2670-1
Paolo Bonzini d2839d
Paolo Bonzini 7fb401
* Tue Jun 24 2014 Paolo Bonzini <pbonzini@redhat.com> - 20140624svn2649-1
Paolo Bonzini 7fb401
- Use standalone .tar.xz from buildtools repo
Paolo Bonzini 7fb401
Paolo Bonzini 0655ef
* Tue Jun 24 2014 Paolo Bonzini <pbonzini@redhat.com> - 20140328svn15376-4
Paolo Bonzini 0655ef
- Install BuildTools/BaseEnv
Paolo Bonzini 0655ef
Paolo Bonzini d282ae
* Mon Jun 23 2014 Paolo Bonzini <pbonzini@redhat.com> - 20140328svn15376-3
Paolo Bonzini d282ae
- Rebase to get GCC48 configuration
Paolo Bonzini d282ae
- Package EDK_TOOLS_PATH as /usr/share/edk2
Paolo Bonzini d282ae
- Package "build" and LzmaF86Compress too, as well as the new
Paolo Bonzini d282ae
  tools Ecc and TianoCompress.
Paolo Bonzini d282ae
4d0780
* Sat Jun 07 2014 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 20131114svn14844-2
4d0780
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
4d0780
Paolo Bonzini f8ed42
* Thu Nov 14 2013 Paolo Bonzini <pbonzini@redhat.com> - 20131114svn14844-1
Paolo Bonzini f8ed42
- Upgrade to r14844.
Paolo Bonzini 60a9a2
- Remove upstreamed parts of patch 1.
Paolo Bonzini f8ed42
Paolo Bonzini 79e160
* Fri Nov 8 2013 Paolo Bonzini <pbonzini@redhat.com> - 20130515svn14365-7
Paolo Bonzini 79e160
- Make BaseTools compile on ARM.
Paolo Bonzini 79e160
Paolo Bonzini 517112
* Fri Aug 30 2013 Paolo Bonzini <pbonzini@redhat.com> - 20130515svn14365-6
Paolo Bonzini 517112
- Revert previous change; firmware packages should be noarch, and building
Paolo Bonzini 517112
  BaseTools twice is simply wrong.
Paolo Bonzini 517112
Kay Sievers a1a88e
* Mon Aug 19 2013 Kay Sievers <kay@redhat.com> - 20130515svn14365-5
Kay Sievers a1a88e
- Add sub-package with EFI shell
Kay Sievers a1a88e
e144da
* Sat Aug 03 2013 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 20130515svn14365-4
e144da
- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
e144da
Dan Horák 151636
* Thu May 23 2013 Dan Horák <dan[at]danny.cz> 20130515svn14365-3
Dan Horák 151636
- set ExclusiveArch
Dan Horák 151636
Paolo Bonzini 9f191d
* Thu May 16 2013 Paolo Bonzini <pbonzini@redhat.com> 20130515svn14365-2
Paolo Bonzini 9f191d
- Fix edk2-tools-python Requires
Paolo Bonzini 9f191d
Paolo Bonzini 9f191d
* Wed May 15 2013 Paolo Bonzini <pbonzini@redhat.com> 20130515svn14365-1
Paolo Bonzini 9f191d
- Split edk2-tools-doc and edk2-tools-python
Paolo Bonzini 9f191d
- Fix Python BuildRequires
Paolo Bonzini 9f191d
- Remove FatBinPkg at package creation time.
Paolo Bonzini 9f191d
- Use fully versioned dependency.
Paolo Bonzini 9f191d
- Add comment on how to generate the sources.
Paolo Bonzini 9f191d
Paolo Bonzini 9f191d
* Thu May 2 2013 Paolo Bonzini <pbonzini@redhat.com> 20130502.g732d199-1
Paolo Bonzini 9f191d
- Create.