https://bugzilla.novell.com/show_bug.cgi?id=808594
https://bugzilla.novell.com/show_bug.cgi?id=808594#c1
--- Comment #1 from Gary Ching-Pang Lin 2013-03-15 06:58:58 UTC ---
Created an attachment (id=529841)
--> (http://bugzilla.novell.com/attachment.cgi?id=529841)
pesign patch to align signatures
This patch fixes this bug partially. It adjusts the signature size and related
fields. I used pesign to signed a EFI image and it worked with the newer OVMF.
The problem is that the extra padding in the end of the file didn't exist when
pesign-obs-integration extracted the signature attribute, and the digest
changed after the padding was added, i.e. the sign server signed the wrong
hash. I am thinking about how to add the padding properly.
BTW, intel seems to consider relaxing the check. It would be great if the
alignment check were removed in the end.
--
Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.