diff --git a/debian/certs/benh@debian.org.cert.pem b/debian/certs/test-signing-certs.pem similarity index 51% rename from debian/certs/benh@debian.org.cert.pem rename to debian/certs/test-signing-certs.pem index 8d49875e5..fc07fa40e 100644 --- a/debian/certs/benh@debian.org.cert.pem +++ b/debian/certs/test-signing-certs.pem @@ -1,4 +1,23 @@ -----BEGIN CERTIFICATE----- +MIIDJjCCAg6gAwIBAgIJAOmHdbieZFH0MA0GCSqGSIb3DQEBCwUAMCgxJjAkBgNV +BAMMHXNlY3VyZS1ib290LXRlc3Qta2V5LWxmYXJhb25lMB4XDTE4MDQwODA5NDYz +OFoXDTE4MDUwODA5NDYzOFowKDEmMCQGA1UEAwwdc2VjdXJlLWJvb3QtdGVzdC1r +ZXktbGZhcmFvbmUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDP2ZKT +CXiUNldWounP5xoLtG6uavjCARJSXhWskBOOKoHsPSekv2db5l8iBLDlkIkuox0B +ozN+tuw/9wv3BVUYyRCLkLhvgHq+EpLUxnmRViO4YuxtkmXkJ8QFy/4RozjKTpPt +ViToFpaFdgJrWwSaIjJVSyeRWX3nm/ir4TCrQB32QG2Fm7rN+k28nigeiSsvDscu +A8zQsdvk3tI1p8Kxez9lFwUvfHPraL0wgA47GE71Lu+8aqrIsjBA+6ZVCwD6OGSN +brqFkYnE43+Yo3HDabu67It7tU+e1+c+Pw2lVij2lWMX9jj0qSShnIby/iqC7nb1 +NgIrjs4WqntGRsD/AgMBAAGjUzBRMB0GA1UdDgQWBBSXwbJc3fmHPKeKWPPXO/cn +0s94/zAfBgNVHSMEGDAWgBSXwbJc3fmHPKeKWPPXO/cn0s94/zAPBgNVHRMBAf8E +BTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAjbSD3myNwzu32tHIJhbiIXX/qtSPt +TNDiWNdMU/GN7NljirWbKG2GJERkmLyuQw1odcEGWcErvyznLzFTHJefCm0PkwwE +zLH3eKwwloR3a/zY+CQsvrC+FIduq3XvRsOKilVR/JSx4PHY75zvntYh0/lvYmFN +4mCTZzHeig9E5ybVOdab4V3WIzWW6f840uTHDoAQ9u194OtAEBabThO/q0uslovj +n0cDwTzuVFIR/GtVlI9ig+jWX/JKuXi3TjLMQckt2s4yog6H6NqiBpje/IYXO8P+ +lsPViykeO1tGalEB2OvB78OBHWWx5IQUqPYvsZnjJA6D3sPmjEBVQz+S +-----END CERTIFICATE----- +-----BEGIN CERTIFICATE----- MIIDYDCCAkgCCQCKAY3KgJMmMDANBgkqhkiG9w0BAQsFADByMQswCQYDVQQGEwJH QjESMBAGA1UEBwwJQ2FtYnJpZGdlMRcwFQYDVQQKDA5EZWJpYW4gUHJvamVjdDEW MBQGA1UEAwwNQmVuIEh1dGNoaW5nczEeMBwGCSqGSIb3DQEJARYPYmVuaEBkZWJp diff --git a/debian/changelog b/debian/changelog index 6051892b1..d8092170c 100644 --- a/debian/changelog +++ b/debian/changelog @@ -57,6 +57,7 @@ linux (4.16-1~exp1) UNRELEASED; urgency=medium * debian/bin/gencontrol_signed.py: Copy maintainer and date into template's changelog * [x86,arm64] Enable code signing again + * certs: Add certificate for test key used in Debian signing service -- Roger Shimizu Fri, 23 Mar 2018 21:10:34 +0900 diff --git a/debian/config/config b/debian/config/config index 259ccb02d..cf44d1513 100644 --- a/debian/config/config +++ b/debian/config/config @@ -70,8 +70,8 @@ CONFIG_EFI_PARTITION=y ## #. Signatures are added in linux-signed CONFIG_MODULE_SIG_KEY="" -#. Actually a list of X.509 certificates, not keys -CONFIG_SYSTEM_TRUSTED_KEYS="debian/certs/benh@debian.org.cert.pem" +#. Actually a file containing X.509 certificates, not keys +CONFIG_SYSTEM_TRUSTED_KEYS="debian/certs/test-signing-certs.pem" ## ## file: crypto/Kconfig