[OE-core] [PATCH] rpm: allow to enable RPM file signing

Jia Zhang lans.zhang2008 at gmail.com
Thu Jul 27 06:03:42 UTC 2017


From: Lans Zhang <jia.zhang at windriver.com>

RPM file signing is enabled with --with-imaevm during configuration.
If enabled, the RPM signing tool rpmsign will call libimaevm.so provided
by the recipe ima-evm-utils.

Signed-off-by: Lans Zhang <jia.zhang at windriver.com>
Signed-off-by: Jia Zhang <lans.zhang2008 at gmail.com>
---
 meta/recipes-devtools/rpm/rpm_git.bb | 3 +++
 1 file changed, 3 insertions(+)

diff --git a/meta/recipes-devtools/rpm/rpm_git.bb b/meta/recipes-devtools/rpm/rpm_git.bb
index 2a0dcaf..d9ff2c7 100644
--- a/meta/recipes-devtools/rpm/rpm_git.bb
+++ b/meta/recipes-devtools/rpm/rpm_git.bb
@@ -71,6 +71,9 @@ EXTRA_OECONF_append_class-native = " --sysconfdir=/etc --localstatedir=/var --di
 
 BBCLASSEXTEND = "native nativesdk"
 
+PACKAGECONFIG ??= ""
+PACKAGECONFIG[imaevm] = "--with-imaevm,,ima-evm-utils"
+
 # Direct rpm-native to read configuration from our sysroot, not the one it was compiled in
 # libmagic also has sysroot path contamination, so override it
 do_install_append_class-native() {
-- 
2.7.5




More information about the Openembedded-core mailing list