Leopold Schabel | 5c80aca | 2019-10-22 15:48:58 +0200 | [diff] [blame] | 1 | load("@bazel_gazelle//:def.bzl", "gazelle") |
| 2 | |
| 3 | # gazelle:prefix git.monogon.dev/source/smalltown.git |
Leopold Schabel | ba7bc76 | 2019-10-24 18:34:29 +0200 | [diff] [blame] | 4 | # gazelle:exclude generated |
Leopold Schabel | 5c80aca | 2019-10-22 15:48:58 +0200 | [diff] [blame] | 5 | gazelle(name = "gazelle") |
| 6 | |
| 7 | genrule( |
| 8 | name = "image", |
| 9 | srcs = [ |
| 10 | "@//cmd/mkimage", |
| 11 | "@//build/linux_kernel:image", |
| 12 | ], |
| 13 | outs = [ |
| 14 | "smalltown.img", |
| 15 | ], |
| 16 | cmd = """ |
| 17 | $(location @//cmd/mkimage) $(location @//build/linux_kernel:image) $@ |
| 18 | """, |
| 19 | visibility = ["//visibility:public"], |
| 20 | ) |
| 21 | |
| 22 | genrule( |
| 23 | name = "swtpm_data", |
| 24 | outs = [ |
| 25 | "tpm/tpm2-00.permall", |
Leopold Schabel | 1fbd7d9 | 2019-10-24 03:15:19 +0200 | [diff] [blame] | 26 | "tpm/signkey.pem", |
| 27 | "tpm/issuercert.pem", |
Leopold Schabel | 5c80aca | 2019-10-22 15:48:58 +0200 | [diff] [blame] | 28 | ], |
Leopold Schabel | 5c80aca | 2019-10-22 15:48:58 +0200 | [diff] [blame] | 29 | cmd = """ |
Leopold Schabel | 1fbd7d9 | 2019-10-24 03:15:19 +0200 | [diff] [blame] | 30 | mkdir -p tpm/ca |
| 31 | |
| 32 | cat <<EOF > tpm/swtpm.conf |
| 33 | create_certs_tool= /usr/share/swtpm/swtpm-localca |
| 34 | create_certs_tool_config = tpm/swtpm-localca.conf |
| 35 | create_certs_tool_options = /etc/swtpm-localca.options |
| 36 | EOF |
| 37 | |
| 38 | cat <<EOF > tpm/swtpm-localca.conf |
| 39 | statedir = tpm/ca |
| 40 | signingkey = tpm/ca/signkey.pem |
| 41 | issuercert = tpm/ca/issuercert.pem |
| 42 | certserial = tpm/ca/certserial |
| 43 | EOF |
Leopold Schabel | 5c80aca | 2019-10-22 15:48:58 +0200 | [diff] [blame] | 44 | |
| 45 | swtpm_setup \ |
| 46 | --tpmstate tpm \ |
| 47 | --create-ek-cert \ |
| 48 | --create-platform-cert \ |
| 49 | --allow-signing \ |
| 50 | --tpm2 \ |
| 51 | --display \ |
Leopold Schabel | 1fbd7d9 | 2019-10-24 03:15:19 +0200 | [diff] [blame] | 52 | --pcr-banks sha1,sha256,sha384,sha512 \ |
| 53 | --config tpm/swtpm.conf |
Leopold Schabel | 5c80aca | 2019-10-22 15:48:58 +0200 | [diff] [blame] | 54 | |
Leopold Schabel | 1fbd7d9 | 2019-10-24 03:15:19 +0200 | [diff] [blame] | 55 | cp tpm/tpm2-00.permall $(location tpm/tpm2-00.permall) |
| 56 | cp tpm/ca/issuercert.pem $(location tpm/issuercert.pem) |
| 57 | cp tpm/ca/signkey.pem $(location tpm/signkey.pem) |
Leopold Schabel | 5c80aca | 2019-10-22 15:48:58 +0200 | [diff] [blame] | 58 | """, |
| 59 | visibility = ["//visibility:public"], |
| 60 | ) |