[19.10 FEAT] Secure boot in kernel

Bug #1829027 reported by bugproxy on 2019-05-14
16
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Ubuntu on IBM z Systems
High
Frank Heimes
linux (Ubuntu)
Undecided
Frank Heimes

Bug Description

Secure Boot in support of NIAP OSPP v4.2 for Common Criteria Certification

bugproxy (bugproxy) on 2019-05-14
tags: added: architecture-s39064 bugnameltc-176005 severity-high targetmilestone-inin1910
Changed in ubuntu:
assignee: nobody → Skipper Bug Screeners (skipper-screen-team)
affects: ubuntu → linux (Ubuntu)
Frank Heimes (fheimes) wrote :

Waiting for the kernel commit IDs.
Setting it to incomplete for now.
Will not assign to kernel team, but check the commits (that are supported to be upstream with 5.2) by myself.

Changed in ubuntu-z-systems:
assignee: nobody → Frank Heimes (frank-heimes)
Changed in linux (Ubuntu):
assignee: Skipper Bug Screeners (skipper-screen-team) → Frank Heimes (frank-heimes)
Changed in ubuntu-z-systems:
status: New → Incomplete
importance: Undecided → High
Frank Heimes (fheimes) wrote :

Moving over info from:
https://bugs.launchpad.net/ubuntu-z-systems/+bug/1825351/comments/3
to here.
commit IDs:
c9896acc7851109d4e84c1e3a54cb1b9794dea6b
268a78404973594d1a7ec3a2b6a2474e0543a435
99feaa717e558cf4f2ad0faf53acac3cf9cc7438
e23a8020ce4e094e10d717d39a8ce799243bf8c1
653beba24d4cd281b078eab48c9bce956939061c
8e4964261374aaec9f4a83de076ceb11c8cdc044
d0d249d75dda1b101624316a52d117be07b8ccff

f6780686525cc69a16a893cac0dd6adfbf25b7ff

Please can you confirm that here are all the ones needed and in case not expand or adjust the list?
Thx

Dimitri John Ledkov (xnox) wrote :

blocked until we have v5.2 (rc or final in the archive)

information type: Private → Public

------- Comment From <email address hidden> 2019-07-10 08:23 EDT-------
git commit for kernel 5.2
https://github.com/torvalds/linux/commit/8e49642613

Frank Heimes (fheimes) wrote :

$ rmadison --arch=s390x linux-generic | grep eoan-proposed
 linux-generic | 5.2.0.8.9 | eoan-proposed | s390x
$ git tag --contains c9896acc7851109d4e84c1e3a54cb1b9794dea6b
Ubuntu-5.2.0-8.9
v5.2
$ git tag --contains 268a78404973594d1a7ec3a2b6a2474e0543a435
Ubuntu-5.2.0-8.9
v5.2
$ git tag --contains 99feaa717e558cf4f2ad0faf53acac3cf9cc7438
Ubuntu-5.2.0-8.9
v5.2
$ git tag --contains e23a8020ce4e094e10d717d39a8ce799243bf8c1
Ubuntu-5.2.0-8.9
v5.2
$ git tag --contains 653beba24d4cd281b078eab48c9bce956939061c
Ubuntu-5.2.0-8.9
v5.2
$ git tag --contains 8e4964261374aaec9f4a83de076ceb11c8cdc044
Ubuntu-5.2.0-8.9
v5.2
$ git tag --contains d0d249d75dda1b101624316a52d117be07b8ccff
Ubuntu-5.2.0-8.9
v5.2
$ git tag --contains f6780686525cc69a16a893cac0dd6adfbf25b7ff
Ubuntu-5.2.0-8.9
v5.2
Hence changing status to Fix Committed.

Changed in linux (Ubuntu):
status: New → Fix Committed
Changed in ubuntu-z-systems:
status: Incomplete → Fix Committed
Frank Heimes (fheimes) wrote :

Since kernel 5.2 eventually landed in eoan's release pocket:
  linux-generic | 5.2.0.8.9 | eoan | s390
I'm changing this LP ticket to Fix Released.

Changed in linux (Ubuntu):
status: Fix Committed → Fix Released
Changed in ubuntu-z-systems:
status: Fix Committed → Fix Released
bugproxy (bugproxy) wrote :

------- Comment From <email address hidden> 2019-07-16 06:32 EDT-------
IBM bugzilla status -> closed, Fix Released with Eoan

To post a comment you must log in.
This report contains Public information  Edit
Everyone can see this information.

Other bug subscribers