Add package signing infrastructure
Add package signing key and certificate configuration options to the "Image configuration" submenu. If enabled, the Packages.gz list will be signed as file Packages.sig. The passphrase for the signing key can be sourced from a file or entered by the user. The signing certificate is automatically added to the firmware image if opkg-smime is selected. Signed-off-by: Evan Hunt <each@isc.org> Signed-off-by: Steven Barth <steven@midlink.org> SVN-Revision: 38284
This commit is contained in:
@@ -109,8 +109,12 @@ define Package/opkg/Default/install
|
||||
endef
|
||||
|
||||
Package/opkg/install = $(call Package/opkg/Default/install,$(1),)
|
||||
Package/opkg-smime/install = $(call Package/opkg/Default/install,$(1),-smime)
|
||||
|
||||
define Package/opkg-smime/install
|
||||
$(call Package/opkg/Default/install,$(1),-smime)
|
||||
$(INSTALL_DIR) $(1)/etc/ssl/certs
|
||||
$(if $(CONFIG_OPKGSMIME_CERT),$(INSTALL_DATA) $(call qstrip,$(CONFIG_OPKGSMIME_CERT)) $(1)/etc/ssl/certs/opkg.pem,)
|
||||
endef
|
||||
|
||||
define Build/InstallDev
|
||||
mkdir -p $(1)/usr/include
|
||||
|
||||
@@ -4,4 +4,4 @@ dest ram /tmp
|
||||
lists_dir ext /var/opkg-lists
|
||||
option overlay_root /overlay
|
||||
option check_signature 1
|
||||
option signature_ca_path /etc/ssl/certs/
|
||||
option signature_ca_file /etc/ssl/certs/opkg.pem
|
||||
|
||||
Reference in New Issue
Block a user