integ/security
Li Zhou 8171154a6b secure boot: move pub key to git repo
New git repo cgcs-root/public-keys is available now for public
keys used in secure boot process.
This commit moves the keys from integ to the git repo.
Keys involved:
  boot_pub_key
  tis-boot.crt
  tis-shim.der

For grub-efi, the "src_files" in meta_data.yaml can't cause
the files copied to source code dir when "dl_hook" exists.
So remove the useless "src_files" settings here.

Test plan:
  The tests are done with all the changes which involve
public-keys/integ/root repos for this enhancement about pub keys.
 - PASS: rebuild gurb-efi/efitools/shim packages;
 - PASS: follow the process to build iso image for secure boot;
 - PASS: installation test on AIO-DX lab with secure boot enabled.

Story: 2009221
Task: 47358

Signed-off-by: Li Zhou <li.zhou@windriver.com>
Change-Id: I8cde2acfbe90872151f871c3e01a0e45ad8c4c6c
2023-02-14 01:03:04 -05:00
..
efitools/debian secure boot: move pub key to git repo 2023-02-14 01:03:04 -05:00
keyrings.alt/debian meta_data.yaml: add sha256sum checksum 2022-03-03 14:30:40 +08:00
libtpms/centos Add auto-versioning to starlingx/integ packages 2020-06-24 09:48:28 +08:00
openscap/debian debian: Add missing openscap package 2022-05-24 10:14:51 -04:00
python-keyring Fix debian build-break for python-keyring 2022-10-07 22:01:24 +00:00
shim-signed/centos relocate /pxeboot to /var/pxeboot 2021-12-23 14:29:00 -05:00
shim-unsigned secure boot: move pub key to git repo 2023-02-14 01:03:04 -05:00
spectre-meltdown-checker/centos Add auto-versioning to starlingx/integ packages 2020-06-24 09:48:28 +08:00
swtpm Revert "Fix user ownership for /usr/bin/swtpm_setup.sh" 2020-11-04 20:04:28 +00:00
tboot/centos Add auto-versioning to starlingx/integ packages 2020-06-24 09:48:28 +08:00
tpm2-tools Add auto-versioning to starlingx/integ packages 2020-06-24 09:48:28 +08:00
tss2 Add auto-versioning to starlingx/integ packages 2020-06-24 09:48:28 +08:00