<feed xmlns='http://www.w3.org/2005/Atom'>
<title>staging/pepe2k/scripts, branch v22.03.0</title>
<subtitle>Staging tree of Piotr Dymacz</subtitle>
<id>https://git.openwrt.org/openwrt/staging/pepe2k/atom?h=v22.03.0</id>
<link rel='self' href='https://git.openwrt.org/openwrt/staging/pepe2k/atom?h=v22.03.0'/>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/pepe2k/'/>
<updated>2022-07-21T14:58:00Z</updated>
<entry>
<title>image: add support for Netgear encrypted image</title>
<updated>2022-07-21T14:58:00Z</updated>
<author>
<name>Wenli Looi</name>
</author>
<published>2022-07-02T20:16:21Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/pepe2k/commit/?id=d5858c6d97366f545e4efc50c2656b0cd3ac2928'/>
<id>urn:sha1:d5858c6d97366f545e4efc50c2656b0cd3ac2928</id>
<content type='text'>
Netgear encrypted image is used in various devices including WAX202,
WAX206, and EX6400v3. This image format also requires a dummy squashfs4
image which is added here as well.

References in WAX202 GPL source:
https://www.downloads.netgear.com/files/GPL/WAX202_V1.0.5.1_Source.rar

* openwrt/bootloader/u-boot-mt7621-2018.09-gitb178829-20200526/board/ralink/common/dual_image.c
  Bootloader code that verifies the presence of a squashfs4 image, thus
  a dummy image is added here.

* openwrt/tools/imgencoder/src/gj_enc.c
  Contains code that generates the encrypted image. There is support for
  adding an RSA signature, but it does not look like the signature is
  verified by the stock firmware or bootloader.

* openwrt/tools/imgencoder/src/imagekey.h
  Contains the encryption key and IV. It appears the same key/IV is used
  for other Netgear devices including WAX206 and EX6400v3.

Signed-off-by: Wenli Looi &lt;wlooi@ucalgary.ca&gt;
(cherry picked from commit efca76ffce5cf464e82d8269d79877f442209a0a)
</content>
</entry>
<entry>
<title>scripts: fix CAMEO tag generator</title>
<updated>2022-07-09T01:09:40Z</updated>
<author>
<name>Sander Vanheule</name>
</author>
<published>2022-07-05T08:16:08Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/pepe2k/commit/?id=90810982732f195f09502a9d388efa6ebe549a8d'/>
<id>urn:sha1:90810982732f195f09502a9d388efa6ebe549a8d</id>
<content type='text'>
What should have been only cosmetic changes, ended up in breaking the
script. Rename UIMAGE_CRC_SLICE back to (the original) UIMAGE_CRC_OFF.

Fixes issue #10204 "cameo-tag.py broken"

Reported-by: Markus Stockhausen &lt;markus.stockhausen@gmx.de&gt;
Fixes: f9e840b65700 ("scripts: add CAMEO tag generator")
Signed-off-by: Sander Vanheule &lt;sander@svanheule.net&gt;
(cherry picked from commit ebfe66e494e57f4b421f1190d6bff1d361db1b3d)
</content>
</entry>
<entry>
<title>scripts: add CAMEO tag generator</title>
<updated>2022-07-09T01:09:16Z</updated>
<author>
<name>Markus Stockhausen</name>
</author>
<published>2022-07-05T06:46:21Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/pepe2k/commit/?id=b151362d199e803c42e8c9e5411aab169fd770f2'/>
<id>urn:sha1:b151362d199e803c42e8c9e5411aab169fd770f2</id>
<content type='text'>
This script inserts CAMEO tags into an uImage to make U-Boot
of DGS-1210 switches happy.

Signed-off-by: Markus Stockhausen &lt;markus.stockhausen@gmx.de&gt;
Suggested-by: Sander Vanheule &lt;sander@svanheule.net&gt; # Mutual checksum algorithm
[commit title prefix, trailing whitespace, OpenWrt capitalisation, move
CRC calculation comment, use UIMAGE_NAME_*, remove parentheses for
return, use f-string instead of str()]
Signed-off-by: Sander Vanheule &lt;sander@svanheule.net&gt;
(cherry picked from commit f9e840b65700e1cdff6d066d39c163bac936d046)
</content>
</entry>
<entry>
<title>scripts: add cameo image header generator</title>
<updated>2022-07-09T01:08:43Z</updated>
<author>
<name>Luiz Angelo Daros de Luca</name>
</author>
<published>2022-06-24T19:05:16Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/pepe2k/commit/?id=b2876e6a3a47179b2652595d00101912638648f7'/>
<id>urn:sha1:b2876e6a3a47179b2652595d00101912638648f7</id>
<content type='text'>
The cameo header is a 0x40-byte header used by D-Link DGS 1210 switches
and Apresia ApresiaLightGS series. cameo-imghdr.py is a clean-room
reimplementation of imghdr present in the DGS-1210-28-GPL package.

Signed-off-by: Luiz Angelo Daros de Luca &lt;luizluca@gmail.com&gt;
[fix board_version argument's help text]
Signed-off-by: Sander Vanheule &lt;sander@svanheule.net&gt;
(cherry picked from commit 2fd66e058b0804b9c561d8d6858363fdf5bd7aea)
</content>
</entry>
<entry>
<title>scripts/gen_image_generic.sh: fix order of files in EFI bootfs</title>
<updated>2022-04-15T13:12:13Z</updated>
<author>
<name>Daniel Golle</name>
</author>
<published>2022-04-14T23:46:28Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/pepe2k/commit/?id=3e16ed30638762cbffc2bb94514a62239ce2a66b'/>
<id>urn:sha1:3e16ed30638762cbffc2bb94514a62239ce2a66b</id>
<content type='text'>
mtools recursive copy (mcopy -s ...) is using READDIR(3) to iterate
over the directory entries, hence they end up in the FAT filesystem in
traversal order which breaks reproducibility (rather than being added
to the FAT filesystem in a reproducible order). Implement recursive
copy in gen_image_generic.sh in Shell code instead, as in that way we
can force files to be copied in reproducible order.

Fixes: aece8f5ae8 ("scripts/gen_image_generic.sh: generate reproducible EFI filesystem")
Signed-off-by: Daniel Golle &lt;daniel@makrotopia.org&gt;
(cherry picked from commit 4d289ae7e63893f90957b77962c6b60574d35441)
</content>
</entry>
<entry>
<title>scripts/gen_image_generic.sh: generate reproducible EFI filesystem</title>
<updated>2022-04-15T13:11:54Z</updated>
<author>
<name>Daniel Golle</name>
</author>
<published>2022-04-11T14:25:27Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/pepe2k/commit/?id=5e617186404ce578adf4ec3f2f1c90fd671c8f9b'/>
<id>urn:sha1:5e617186404ce578adf4ec3f2f1c90fd671c8f9b</id>
<content type='text'>
Generate FAT filesystem for EFI boot in a reproducible way:
 * use '--invariant' option of mkfs.fat
 * set timestamps of all files to SOURCE_DATE_EPOCH
 * make sure files are ordered locale-independent

Signed-off-by: Daniel Golle &lt;daniel@makrotopia.org&gt;
(cherry picked from commit aece8f5ae8d15e5e79b8e34a176895209709afb6)
</content>
</entry>
<entry>
<title>scripts/gen_image_generic.sh: make ext4 bootfs reproducible</title>
<updated>2022-04-15T13:11:49Z</updated>
<author>
<name>Daniel Golle</name>
</author>
<published>2022-03-28T17:13:45Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/pepe2k/commit/?id=a376efae8f17a94b6c9eb04fa7ef05a5abf73397'/>
<id>urn:sha1:a376efae8f17a94b6c9eb04fa7ef05a5abf73397</id>
<content type='text'>
Set fixed timestamp for kernel other files in /boot filesystem.
This should help making x86 *combined* images reproducible.

Signed-off-by: Daniel Golle &lt;daniel@makrotopia.org&gt;
(cherry picked from commit 068ea2cde04e2666fb05731cea941bccfaeddc25)
</content>
</entry>
<entry>
<title>scripts: make sure sort-order is independent from locale</title>
<updated>2022-04-06T16:35:49Z</updated>
<author>
<name>Daniel Golle</name>
</author>
<published>2022-04-06T16:25:16Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/pepe2k/commit/?id=087795323576ab8f4478f5aa3568adaec717d26f'/>
<id>urn:sha1:087795323576ab8f4478f5aa3568adaec717d26f</id>
<content type='text'>
Set LC_ALL=C environment variable when calling 'sort' as the sort
order otherwise depends on the locale set.

Fixes: 56ce110b73 ("scripts: make sure conffiles are sorted")
Signed-off-by: Daniel Golle &lt;daniel@makrotopia.org&gt;
(cherry picked from commit 1d77dca3b32dd883bcc2213675cf21111ac1beca)
</content>
</entry>
<entry>
<title>build: store sha256_unsigned in JSON</title>
<updated>2022-04-06T13:03:58Z</updated>
<author>
<name>Paul Spooren</name>
</author>
<published>2022-03-28T02:29:09Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/pepe2k/commit/?id=a5cf20d1974f8247ed87fad4a61216cc75eddfdb'/>
<id>urn:sha1:a5cf20d1974f8247ed87fad4a61216cc75eddfdb</id>
<content type='text'>
Introduce `sha256_unsigned` which is a checksum of the image _before_ a
signature is attached. This is helpful to compare image reproducibility.

Since the `.sha256sum` file is located in the $(KDIR) folder, switch
$(BIN_DIR) with $(KDIR) to simplify the code. The value of $(BIN_DIR)
itself is not stored inside the resulting JSON file, so it can be
replaced.

Signed-off-by: Paul Spooren &lt;mail@aparcar.org&gt;
(cherry picked from commit 8822a8d850ba2df69b81289758959bb90643a696)
</content>
</entry>
<entry>
<title>scripts: make sure conffiles are sorted</title>
<updated>2022-04-06T12:59:44Z</updated>
<author>
<name>Paul Spooren</name>
</author>
<published>2022-03-31T21:51:29Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/pepe2k/commit/?id=ec2bc81c78585755491f9a1a3f30edb6312025f0'/>
<id>urn:sha1:ec2bc81c78585755491f9a1a3f30edb6312025f0</id>
<content type='text'>
It may happen that conffiles are in different order on different builds.
Make sure they have the same order by sorting them.

FIX: #9612

Signed-off-by: Paul Spooren &lt;mail@aparcar.org&gt;
(cherry picked from commit 56ce110b73970bcd65d309440baada84c8e1504b)
</content>
</entry>
</feed>
