From c8dd84926198da666ca120f94c73667dda2b7962 Mon Sep 17 00:00:00 2001 From: Dimitri John Ledkov Date: Tue, 17 Nov 2020 23:55:12 +0000 Subject: [PATCH 1/2] disk-image-uefi.binary: enable secureboot on the arm64 image. (cherry picked from commit 122364df65ad4ecf768b6a488058bf37a023ab55) --- live-build/ubuntu-cpc/hooks.d/base/disk-image-uefi.binary | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/live-build/ubuntu-cpc/hooks.d/base/disk-image-uefi.binary b/live-build/ubuntu-cpc/hooks.d/base/disk-image-uefi.binary index b3f4613a..a619299b 100755 --- a/live-build/ubuntu-cpc/hooks.d/base/disk-image-uefi.binary +++ b/live-build/ubuntu-cpc/hooks.d/base/disk-image-uefi.binary @@ -117,7 +117,7 @@ install_grub() { # please file a bug against grub2 to include the affected module. case $ARCH in arm64) - chroot mountpoint apt-get -qqy install --no-install-recommends grub-efi-arm64 grub-efi-arm64-bin + chroot mountpoint apt-get -qqy install --no-install-recommends shim-signed grub-efi-arm64-signed efi_target=arm64-efi ;; armhf) From 0c9dd968494cc22c85641325d2f82307eb1fe42e Mon Sep 17 00:00:00 2001 From: Ivan Kapelyukhin Date: Thu, 30 Jun 2022 14:07:58 +0200 Subject: [PATCH 2/2] Update debian/changelog --- debian/changelog | 7 +++++++ 1 file changed, 7 insertions(+) diff --git a/debian/changelog b/debian/changelog index cac1900f..e6233d5f 100644 --- a/debian/changelog +++ b/debian/changelog @@ -1,3 +1,10 @@ +livecd-rootfs (2.664.42) UNRELEASED; urgency=medium + + * ubuntu-cpc: Install `shim-signed` and `grub-efi-arm64-signed` to enable + secureboot on ARM64 images (LP:#1980358) + + -- Ivan Kapelyukhin Thu, 30 Jun 2022 14:06:30 +0200 + livecd-rootfs (2.664.41) focal; urgency=medium [ Ivan Kapelyukhin ]