openSUSE Project Management Tool: Issueshttps://progress.opensuse.org/https://progress.opensuse.org/themes/openSUSE/favicon/favicon.ico?15829177842024-03-04T15:33:04ZopenSUSE Project Management Tool
Redmine systemd-boot for Tumbleweed - action #156574 (New): shim integration loses kernel pathhttps://progress.opensuse.org/issues/1565742024-03-04T15:33:04Zlnussellnussel@suse.com
<p><a href="https://github.com/rhboot/shim/issues/642" class="external">https://github.com/rhboot/shim/issues/642</a></p>
systemd-boot for Tumbleweed - action #155680 (New): mok keys/uefi certshttps://progress.opensuse.org/issues/1556802024-02-20T08:31:24Zlnussellnussel@suse.com
<p>need a way to enroll mok keys/uefi keys properly instead of doing it in %post</p>
systemd-boot for Tumbleweed - action #155677 (New): rpi firmware updateshttps://progress.opensuse.org/issues/1556772024-02-20T08:31:00Zlnussellnussel@suse.com
<p>rpi has some firmware in eg /usr/lib/firmware/raspberrypi/bootloader-2711 that may need to be updated. need a concept to integrate that</p>
systemd-boot for Tumbleweed - action #155674 (New): sbat updateshttps://progress.opensuse.org/issues/1556742024-02-20T08:30:32Zlnussellnussel@suse.com
<p>shim wants to update the sbat level in %post. Need to handle that in a sane way</p>
systemd-boot for Tumbleweed - action #155425 (New): [upstream] systemd-cryptsetup to display warn...https://progress.opensuse.org/issues/1554252024-02-13T16:26:47Zlnussellnussel@suse.com
<p>if tpm tokens are enrolled but don't unlock the system, it needs to show an error message that the system was potentially modified</p>
systemd-boot for Tumbleweed - action #153775 (New): enable luks2 in yast by defaulthttps://progress.opensuse.org/issues/1537752024-01-17T13:24:13Zlnussellnussel@suse.com
<p>yast still uses luks1. We need to get it to switch to luks2 as base for further work regarding FDE</p>
<p><a href="https://github.com/yast/yast-installation/issues/1088" class="external">https://github.com/yast/yast-installation/issues/1088</a></p>
systemd-boot for Tumbleweed - action #153063 (New): kmp supporthttps://progress.opensuse.org/issues/1530632024-01-03T12:43:43Zlnussellnussel@suse.com
<p>need to add scripts to handle kmps and weak updates</p>
systemd-boot for Tumbleweed - action #153047 (New): transactional-update: selinux fixeshttps://progress.opensuse.org/issues/1530472024-01-03T08:20:49Zlnussellnussel@suse.com
<p>transactional-update needs to use /etc/kernel/cmdline when configuring selinux<br>
<a href="https://github.com/openSUSE/transactional-update/issues/113" class="external">https://github.com/openSUSE/transactional-update/issues/113</a></p>
systemd-boot for Tumbleweed - action #153021 (Closed): switch to using pcrlockhttps://progress.opensuse.org/issues/1530212024-01-02T13:52:08Zlnussellnussel@suse.com
<p>change code from pcr-oracle to systemd pcrlock</p>
systemd-boot for Tumbleweed - action #153019 (New): jeos-firstboot: fix code to with jeos-confighttps://progress.opensuse.org/issues/1530192024-01-02T13:51:35Zlnussellnussel@suse.com
<p>might be interesting to change the enrollment like tpm pcr policy or fido support in the running system</p>
systemd-boot for Tumbleweed - action #153017 (New): jeos-firstboot: combine enroll and diskencrypthttps://progress.opensuse.org/issues/1530172024-01-02T13:50:48Zlnussellnussel@suse.com
<p>enroll and diskencrypt can be done in the same module</p>
systemd-boot for Tumbleweed - action #152953 (New): [upstream] systemd: bootctl list --tersehttps://progress.opensuse.org/issues/1529532023-12-28T13:18:44Zlnussellnussel@suse.com
<p>Implement a terse list mode for bootctl. Useful to get the id to pass to set-default or to edit files. An edit command would be useful too :)</p>
systemd-boot for Tumbleweed - action #152951 (New): [upstream] systemd: fallback to loader.conf i...https://progress.opensuse.org/issues/1529512023-12-28T13:17:37Zlnussellnussel@suse.com
<p>on eg rpi4 with u-boot uefi emulation writing efi variables is not possible. need to fall back to writing loader.conf when setting the default entry</p>
systemd-boot for Tumbleweed - action #152831 (New): [upstream] cryptsetup: implement recovery key...https://progress.opensuse.org/issues/1528312023-12-21T10:11:13Zlnussellnussel@suse.com
<p>cryptsetup luksFormat/reencrypt requires entering a passphrase. It could just as well offer to generate a random recovery key like systemd-cryptenroll. The key could be put in the kernel keyring afterwards so can be retrieved.</p>
systemd-boot for Tumbleweed - action #152823 (Closed): add fido support to qemuhttps://progress.opensuse.org/issues/1528232023-12-21T07:25:17Zlnussellnussel@suse.com
<p>Add canokey-qemu support to qemu in Factory</p>
<p><a href="https://build.opensuse.org/request/show/1129745" class="external">https://build.opensuse.org/request/show/1129745</a><br>
<a href="https://github.com/openSUSE/qemu/blob/factory/rpm/qemu.spec" class="external">https://github.com/openSUSE/qemu/blob/factory/rpm/qemu.spec</a></p>