From mboxrd@z Thu Jan 1 00:00:00 1970 Delivery-date: Wed, 22 Apr 2026 16:59:02 +0200 Received: from metis.whiteo.stw.pengutronix.de ([2a0a:edc0:2:b01:1d::104]) by lore.white.stw.pengutronix.de with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.96) (envelope-from ) id 1wFZ2c-00F8ik-0Q for lore@lore.pengutronix.de; Wed, 22 Apr 2026 16:59:02 +0200 Received: from [127.0.0.1] (helo=metis.whiteo.stw.pengutronix.de) by metis.whiteo.stw.pengutronix.de with esmtp (Exim 4.92) (envelope-from ) id 1wFZ2b-0006zL-Vf; Wed, 22 Apr 2026 16:59:01 +0200 Received: from drehscheibe.grey.stw.pengutronix.de ([2a0a:edc0:0:c01:1d::a2]) by metis.whiteo.stw.pengutronix.de with esmtps (TLS1.3:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.92) (envelope-from ) id 1wFZ2H-0006mv-1a; Wed, 22 Apr 2026 16:58:41 +0200 Received: from dude02.red.stw.pengutronix.de ([2a0a:edc0:0:1101:1d::28]) by drehscheibe.grey.stw.pengutronix.de with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.96) (envelope-from ) id 1wFZ2G-006gHX-2d; Wed, 22 Apr 2026 16:58:40 +0200 Received: from [::1] (helo=dude02.red.stw.pengutronix.de) by dude02.red.stw.pengutronix.de with esmtp (Exim 4.98.2) (envelope-from ) id 1wFZ2G-000000022AE-33aN; Wed, 22 Apr 2026 16:58:40 +0200 From: Sascha Hauer Date: Wed, 22 Apr 2026 16:58:38 +0200 Message-Id: <20260422-code-signing-provider-v1-0-ce986114c54d@pengutronix.de> MIME-Version: 1.0 Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: 7bit X-B4-Tracking: v=1; b=H4sIAB7i6GkC/x3MQQqAIBBA0avIrBvISYK6SrQInWw2KiNIEN09a fkW/z9QWYUrrOYB5SZVcuqwgwF/HSkySugGGmkeHRH6HBirxCQpYtHcJLDitDiybiY6nIfeFuV T7v+77e/7AcmwzuJnAAAA X-Change-ID: 20260422-code-signing-provider-394214622a4c To: ptxdist@pengutronix.de X-Mailer: b4 0.14.3 X-Developer-Signature: v=1; a=ed25519-sha256; t=1776869920; l=1025; i=s.hauer@pengutronix.de; s=20230412; h=from:subject:message-id; bh=u9JVKifrvtaSo+sQecvY+RqV8VipOQEEFYt4dD6gkdQ=; b=bqP0rDBXUiF3+AoPtFuPndUZUA+EVRdpG7o1ig5AQohaTMto8qH+9M+AFiZdPS2upCA8hr8su qFMNaR5rlqDDcvnNHJ67ElUgsHDiLa6FdSg7kFqxgv3aecpNDiPkkWa X-Developer-Key: i=s.hauer@pengutronix.de; a=ed25519; pk=4kuc9ocmECiBJKWxYgqyhtZOHj5AWi7+d0n/UjhkwTg= Subject: [ptxdist] [PATCH 0/3] code-signing: add provider support X-BeenThere: ptxdist@pengutronix.de X-Mailman-Version: 2.1.29 Precedence: list List-Id: PTXdist Development Mailing List List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Reply-To: ptxdist@pengutronix.de Sender: "ptxdist" X-SA-Exim-Connect-IP: 127.0.0.1 X-SA-Exim-Mail-From: ptxdist-bounces@pengutronix.de X-SA-Exim-Scanned: No (on metis.whiteo.stw.pengutronix.de); SAEximRunCond expanded to false openssl engines have been deprecated for a long time. Add provider support to the ptxdist code signing infrastructure. Signed-off-by: Sascha Hauer --- Sascha Hauer (3): host-libp11: use correct path for ossl-modules Add host-pkcs11-provider code-signing: enable provider support platforms/code-signing.in | 1 + rules/host-libp11.make | 1 + rules/host-pkcs11-provider.in | 10 ++++++++++ rules/host-pkcs11-provider.make | 33 +++++++++++++++++++++++++++++++++ rules/host-softhsm.in | 1 + rules/host-softhsm.make | 27 +++++++++++++++++++++++++++ rules/pre/010-code-signing.make | 2 +- rules/pre/020-code-signing-softhsm.make | 3 ++- 8 files changed, 76 insertions(+), 2 deletions(-) --- base-commit: 9e28c99dd6a5b30c578b75deb71bd82d41fda429 change-id: 20260422-code-signing-provider-394214622a4c Best regards, -- Sascha Hauer