Bug#718225: live-build should authenticate files it downloads

2025-01-15 Thread Roland Clobus
Hello Aaron, On 15/01/2025 03:52, Aaron Rainbolt wrote: If you're using live-build, I'd highly recommend setting the various `--mirror` and `--parent-mirror` settings in your `lb config` commands explicitly, specifying HTTPS repos for each of those settings. It's not a perfect solution, but as l

Using live-build with custom Secure Boot keys

2025-01-15 Thread Adam McManus
I'm attempting to create a live-build USB with custom Secure Boot keys and failing. I have a config/hooks/live/1000-sign-boot.hook.binary file that is signing all *.efi files (verified when booting the live system without secure boot enabled), and it is also signing live/vmlinuz-*-amd64. However,