-
Notifications
You must be signed in to change notification settings - Fork 3
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Akmods does not sign compiled module when using rpm-ostree #499
Comments
This is due to the fact that rpm-ostree install commands run a in fresh deployment and do not share the keys from the host Workarounds: |
Updated the doc in fedora-silverblue/silverblue-docs#161 |
Just out of curiosity, is there a plan for this issue to be resolved? |
May I ask what the technical limitation is which prevents this issue from being resolved? I saw @travier mention some potential solutions from user suggestions.
Is there discussion taking place regarding which (if any) of these solutions should be implemented? |
This issue is re-created from old content of #272, which has been removed from GitHub following the author's request (no details) according to GitHub support.
See the (old) archive at: https://web.archive.org/web/20220531094412/https://github.com/fedora-silverblue/issue-tracker/issues/272
Describe the bug
When using rpm-ostree, akmods does not sign compiled module with keys found in /etc/pki/akmods.
To Reproduce
# /usr/sbin/kmodgenca
# mokutil --import /etc/pki/akmods/certs/public_key.der
Expected behavior
Modules will get signed with the keys, just like when I run akmods manually.
OS version:
The text was updated successfully, but these errors were encountered: