Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

flasher: improve logging with secure boot #3491

Merged
merged 1 commit into from
Oct 9, 2024
Merged

Conversation

jakogut
Copy link
Contributor

@jakogut jakogut commented Aug 13, 2024

Print the PCR digest values used to create the PCR policy used to seal the LUKS passphrase during flashing. These values can be cross referenced with the logs during secure boot to diagnose policy check failures.

Change-type: patch


Contributor checklist

Reviewer Guidelines

  • When submitting a review, please pick:
    • 'Approve' if this change would be acceptable in the codebase (even if there are minor or cosmetic tweaks that could be improved).
    • 'Request Changes' if this change would not be acceptable in our codebase (e.g. bugs, changes that will make development harder in future, security/performance issues, etc).
    • 'Comment' if you don't feel you have enough information to decide either way (e.g. if you have major questions, or you don't understand the context of the change sufficiently to fully review yourself, but want to make a comment)

@jakogut jakogut temporarily deployed to balena-cloud.com August 13, 2024 19:12 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 13, 2024 19:12 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 13, 2024 19:12 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 13, 2024 19:12 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 13, 2024 19:12 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 13, 2024 19:12 — with GitHub Actions Inactive
@jakogut jakogut requested a review from mtoman August 13, 2024 19:13
Copy link

github-actions bot commented Aug 13, 2024

Website deployed to CF Pages, 👀 preview link https://e6794fb0.balena-os.pages.dev

@flowzone-app flowzone-app bot enabled auto-merge August 13, 2024 19:17
@jakogut jakogut temporarily deployed to balena-cloud.com August 13, 2024 19:47 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 13, 2024 19:47 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 13, 2024 19:47 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 13, 2024 19:50 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 13, 2024 19:50 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 13, 2024 19:50 — with GitHub Actions Inactive
@jakogut jakogut force-pushed the flasher-tpm-logging branch from 890618f to b123e25 Compare August 14, 2024 23:50
@jakogut jakogut temporarily deployed to balena-cloud.com August 14, 2024 23:50 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 14, 2024 23:50 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 14, 2024 23:50 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 14, 2024 23:50 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 14, 2024 23:50 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 14, 2024 23:50 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 15, 2024 00:25 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 15, 2024 00:25 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 15, 2024 00:25 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 15, 2024 00:43 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com August 15, 2024 00:43 — with GitHub Actions Inactive
@jakogut
Copy link
Contributor Author

jakogut commented Aug 21, 2024

@balena-ci I self-certify!

@jakogut jakogut force-pushed the flasher-tpm-logging branch from b123e25 to 459773c Compare September 11, 2024 16:16
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut had a problem deploying to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Failure
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-staging.com October 9, 2024 16:06 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com October 9, 2024 16:53 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com October 9, 2024 16:53 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com October 9, 2024 16:53 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com October 9, 2024 17:12 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com October 9, 2024 17:12 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com October 9, 2024 17:12 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com October 9, 2024 17:21 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com October 9, 2024 17:21 — with GitHub Actions Inactive
@jakogut jakogut temporarily deployed to balena-cloud.com October 9, 2024 17:21 — with GitHub Actions Inactive
@flowzone-app flowzone-app bot merged commit dd8cf69 into master Oct 9, 2024
157 of 159 checks passed
@flowzone-app flowzone-app bot deleted the flasher-tpm-logging branch October 9, 2024 18:01
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants