this is now implemented as part of sbctl-0.14-1 (not my code, though)
Search Criteria
Package Details: sbctl-initcpio-post-hook 1.0-1
Package Actions
| Git Clone URL: | https://aur.archlinux.org/sbctl-initcpio-post-hook.git (read-only, click to copy) |
|---|---|
| Package Base: | sbctl-initcpio-post-hook |
| Description: | a mkinitcpio post hook to sign uki images with sbctl |
| Upstream URL: | https://aur.archlinux.org/packages/sbctl-initcpio-post-hook |
| Licenses: | GPL |
| Submitter: | gdamjan |
| Maintainer: | gdamjan |
| Last Packager: | gdamjan |
| Votes: | 4 |
| Popularity: | 0.000149 |
| First Submitted: | 2023-03-22 02:00 (UTC) |
| Last Updated: | 2023-03-22 02:00 (UTC) |
Dependencies (2)
Required by (0)
Sources (1)
Latest Comments
gdamjan commented on 2024-05-11 20:18 (UTC)
xorly commented on 2024-01-13 12:58 (UTC)
Hi and thank you for this package!
sbctl provides it's own pacman hook to do this https://archlinux.org/packages/extra/x86_64/sbctl/, but it's less reliable and I ended up with unsigned UKI several times (probably different hook trigger conditions).
To disable pacman hook, just create symlink /etc/pacman.d/hooks/zz-sbctl.hook -> /dev/null.
gdamjan commented on 2023-03-22 02:03 (UTC) (edited on 2023-03-22 02:03 (UTC) by gdamjan)
Installs an mkinitcpio post hook in /usr/lib/initcpio/post/sbctl-initcpio-post-hook, that'll use sbctl to sign UKI files whenever they are created.
References:
Pinned Comments
gdamjan commented on 2023-03-22 02:03 (UTC) (edited on 2023-03-22 02:03 (UTC) by gdamjan)
Installs an mkinitcpio post hook in
/usr/lib/initcpio/post/sbctl-initcpio-post-hook, that'll use sbctl to sign UKI files whenever they are created.References: