Bugzilla – Bug 1087847
The staging certificate in shim conflicted with the same one in kernel-source
Last modified: 2020-10-16 10:25:19 UTC
When shim is built in the staging project, it will install the staging certificate to /etc/uefi/certs. Since the naming policy is to cut the first 8 hex of the sha1 checksum of the certificate, if the kernel is also built in the same staging project, both shim and kernel would install the same staging certificate to /etc/uefi/certs and the file conflict happens.
We can avoid the conflict by adding a suffix, say "-shim", to the certificate installed by shim.
NOTE: It won't happen in the release project since shim only contains the official CA certificate while the kernel contains the official SIGN certificate.
The fix was merged. Close this bug.
This is an autogenerated message for OBS integration:
This bug (1087847) was mentioned in
https://build.opensuse.org/request/show/702795 Factory / shim