[PATCH 0/5] Introduce UEFI shim support

Michal Privoznik posted 5 patches 5 days, 22 hours ago
docs/formatdomain.rst                                |  5 +++++
src/conf/domain_conf.c                               | 12 ++++++++----
src/conf/domain_conf.h                               |  1 +
src/conf/domain_validate.c                           |  6 ++++++
src/conf/schemas/domaincommon.rng                    |  5 +++++
src/qemu/qemu_capabilities.c                         |  2 ++
src/qemu/qemu_capabilities.h                         |  1 +
src/qemu/qemu_command.c                              |  2 ++
src/qemu/qemu_validate.c                             |  7 +++++++
src/security/security_dac.c                          | 10 ++++++++++
src/security/security_selinux.c                      |  9 +++++++++
src/security/virt-aa-helper.c                        |  4 ++++
tests/qemucapabilitiesdata/caps_10.0.0_s390x.xml     |  1 +
tests/qemucapabilitiesdata/caps_10.0.0_x86_64.xml    |  1 +
.../launch-security-sev-direct.x86_64-latest.args    |  1 +
.../launch-security-sev-direct.x86_64-latest.xml     |  1 +
tests/qemuxmlconfdata/launch-security-sev-direct.xml |  1 +
17 files changed, 65 insertions(+), 4 deletions(-)
[PATCH 0/5] Introduce UEFI shim support
Posted by Michal Privoznik 5 days, 22 hours ago
*** BLURB HERE ***

Michal Prívozník (5):
  conf: Introduce os/shim element
  qemu_capabilities: Introduce QEMU_CAPS_MACHINE_SHIM
  qemu_validate: Check whether UEFI shim is supported
  qemu_command: Generate cmd line for UEFI shim
  security: Set seclabels on UEFI shim

 docs/formatdomain.rst                                |  5 +++++
 src/conf/domain_conf.c                               | 12 ++++++++----
 src/conf/domain_conf.h                               |  1 +
 src/conf/domain_validate.c                           |  6 ++++++
 src/conf/schemas/domaincommon.rng                    |  5 +++++
 src/qemu/qemu_capabilities.c                         |  2 ++
 src/qemu/qemu_capabilities.h                         |  1 +
 src/qemu/qemu_command.c                              |  2 ++
 src/qemu/qemu_validate.c                             |  7 +++++++
 src/security/security_dac.c                          | 10 ++++++++++
 src/security/security_selinux.c                      |  9 +++++++++
 src/security/virt-aa-helper.c                        |  4 ++++
 tests/qemucapabilitiesdata/caps_10.0.0_s390x.xml     |  1 +
 tests/qemucapabilitiesdata/caps_10.0.0_x86_64.xml    |  1 +
 .../launch-security-sev-direct.x86_64-latest.args    |  1 +
 .../launch-security-sev-direct.x86_64-latest.xml     |  1 +
 tests/qemuxmlconfdata/launch-security-sev-direct.xml |  1 +
 17 files changed, 65 insertions(+), 4 deletions(-)

-- 
2.45.3
Re: [PATCH 0/5] Introduce UEFI shim support
Posted by Pavel Hrdina 5 days, 22 hours ago
On Thu, Mar 06, 2025 at 09:36:13AM +0100, Michal Privoznik wrote:
> *** BLURB HERE ***
> 
> Michal Prívozník (5):
>   conf: Introduce os/shim element
>   qemu_capabilities: Introduce QEMU_CAPS_MACHINE_SHIM
>   qemu_validate: Check whether UEFI shim is supported
>   qemu_command: Generate cmd line for UEFI shim
>   security: Set seclabels on UEFI shim

Reviewed-by: Pavel Hrdina <phrdina@redhat.com>