-
s390-tools (2.20.0-0ubuntu3.3) jammy; urgency=medium
* Add the following commits as patches:
- d/p/lp-2059303-genprotimg-support-Armonk-in-IBM-signing-key-subject.patch
- d/p/lp-2059303-libpv-Support-Armonk-in-IBM-signing-key-subject.patch
- d/p/lp-2059303-pvattest-Fix-root-ca-parsing.patch
to fix Secure Execution tooling and accept new IBM host-key
subject locality. LP: #2059303
-- Frank Heimes <email address hidden> Wed, 03 Apr 2024 15:46:42 +0200
-
s390-tools (2.20.0-0ubuntu3.2) jammy; urgency=medium
* Fix zipl segfaults when "parameters=" is missing (LP: #1974109) with:
d/p/6ff8202f-zipl-Add-missing-check-for-a-nullpointer.patch
* Add KVM Secure Execution Attestation Userspace Tool to enhance secure
execution (hardware feature: FC 115) exploitation (LP: #1959987) with:
d/p/38639269-libpv-New-library-for-PV-tools.patch
d/p/3ab06d77-pvattest-Create-perform-and-verify-attestation-measu.patch
d/p/26148740-pvattest-tools-Add-tool-for-attestation.patch
* Fix re-enciphering of EP11 identity key of KMIP plugin (LP: #1990520) with:
d/p/4e2ebe03-libseckey-Fix-re-enciphering-of-EP11-secure-key.patch
* Fix KMIP plugin fails to connection to KMIP server (LP: #1990524) with:
d/p/6c5c5f7e-libseckey-Adapt-keymgmt_match-implementation-to-Open.patch
* d/p/5768d55-zipl-boot-add-secure-boot-trailer.patch
Add secure boot trailer in zipl stage 3 to keep compatibility with
upcoming IBM zSystems firmware updates. (LP: #1996069)
* Add d/p/92b8409-dbginfo.sh-ensure-type-commands-compatible-with-dash.patch
and d/p/9f93af6-dbginfo.sh-ensure-compatibility-with-bin-dash.patch
to achieve dbginfo.sh compatibility with /bin/dash shell. (LP: #1996477)
-- Frank Heimes <email address hidden> Wed, 16 Nov 2022 18:14:00 +0200
-
s390-tools (2.20.0-0ubuntu3.1) jammy; urgency=medium
* Fix chreipl-fcp-mpath (LP: #1971993)
- Move chreipl-fcp-mpath* from /lib/udev/rules.d to /lib/udev.
- d/control:
+ Build-Depend on bsdextrautils for hexdump
+ Add multiple explicit Depends on udev
+ s390-tools-chreipl-fcp-mpath: drop unnecessary Depends on lvm2
- No longer change attributes of chreipl-fcp-mpath-common.sh to 755,
since only the input script '.in' has a she-bang, but not the '.sh'
anymore (was done with commit c2f8988).
- Add d/p/0d15a07-chreipl-fcp-mpath-bundle-a-pre-cooked-man-page.patch
to bundle a pre-cooked version of the man page for chreipl-fcp-mpath
Required minor context adjustment for CHANGELOG.md hunk
and changes in d/rules.
- Add missing README.md to s390-tools-chreipl-fcp-mpath.doc
(and with that also the README.md for genprotimg to s390-tools.docs).
* Add new CPU-MF Counters for new IBM Z hardware (LP: #1960119) by:
- d/p/2515832-util_arch-Add-IBM-z16-as-known-machine.patch and
- d/p/cce5f51-cpumf-lscpumf-Add-IBM-z16-extended-counter-set-def.patch
* Add exploitation support of new IBM Z crypto hardware (LP: #1959548) with:
- d/p/b16a6d4f-lszcrypt-add-CEX8S-support.patch
- d/p/bcbb6fca-zcryptstats-add-CEX8-support.patch
- d/p/4382901d-lszcrypt-show-AP-bus-msg-size-limit-capability.patch
- d/p/27dce331-lszcrypt-add-support-for-checkstop-state.patch
- d/p/a29b3c89-lszcrypt-new-options-to-show-only-accel-cca-or-ep11-.patch
- d/p/a8b0d7ac-lszcrypt-new-options-to-filter-cards-queues-only.patch
- d/p/46fd42af-lszcrypt-new-option-to-show-the-serial-numbers-of-CC.patch
* Stabilization of data collection in dbginfo.sh script (LP: #1971959)
by adding several upstream patches:
- d/p/*-dbginfo.sh-*.patch
- whereas one needed minor context adjutment for the CHANGELOG.md hunk:
d/p/50a4740-dbginfo.sh-replace-which-by-builtin-command-type-for.patch
* Fix cmsfs-fuse mount failure due to unknown option '-o hard_remove'
(LP: #1978323) with:
d/p/0981df6-cmsfs-fuse-fix-enabling-of-hard_remove-option.patch
-- Frank Heimes <email address hidden> Fri, 20 May 2022 13:48:34 +0200
-
s390-tools (2.20.0-0ubuntu3) jammy; urgency=medium
* No-change rebuild to match s390-tools-signed version
-- Graham Inggs <email address hidden> Wed, 13 Apr 2022 10:32:45 +0000
-
s390-tools (2.20.0-0ubuntu2) jammy; urgency=medium
* d/p/78b0533-genprotimg-remove-DigiCert-root-CA-pinning.patch
Fix for genprotimg failing to process z15 host key documents
after April 2022. (LP: #1968260)
* d/p/673ff37-genprotimg-check_hostkeydoc-relax-default-issuer-che.patch
Fixing check_hostkeydoc since it's checking the certificate issuer
too strictly. (LP: #1968259)
-- Frank Heimes <email address hidden> Fri, 08 Apr 2022 16:01:38 +0200
-
s390-tools (2.20.0-0ubuntu1) jammy; urgency=medium
* New upstream release. LP: #1959420
* Refresh several patches
* Remove d/p/0001-libkmipclient-Fix-parsing-of-hex-values-for-XML-and-.patch
since it's upstream with >= v2.18
* Add d/adjust-runlevels-in-dumpconf-initd-script.patch to fix issue
with runlevels in init.d/dumpconf
* Add upstream commit/patch
e8fca95-zdev-Fix-off-by-one-errors-in-cio_ignore-handling.patch
* Add upstream commit/patch 455ad95-zdump-Fix-dev-mem-reading.patch
* Remove d/p/zipl-optional.patch an replaced it by upstream commit/patch
d/p/ee2c6d4-zipl-Allow-optional-entries-that-are-left-out-when-f.patch
* Change d/control to:
- remove the udeb packages from d/c, d/r and d/s390-tools*-udeb.*
- add support for and updated Build-Depends to libfuse3-dev LP: #1935666
- add new binary package s390-tools-chreipl-fcp-mpath
incl. s390-tools-cpuplugd.install
- change s390-tools Depends from perl to ${perl:Depends}
- remove unneeded Depends on ${misc:Depends} from the lib*-dev packages
* Change d/rules to fix permissions
* Expand d/debian/s390-tools.install to include 81-dpm.rules
* Add patches for KVM: Secure Execution guest dump encryption with
customer keys LP: #1959965
- d/p/a9e13a2d-genprotimg-introduce-macro-for-the-control-flags-and.patch
- d/p/0906293c-genprotimg-enable-pckmo-and-disable-pckmo-are-mutual.patch
- d/p/5394cd36-genprotimg-add-PV-guest-dump-support.patch
-- Frank Heimes <email address hidden> Sun, 06 Feb 2022 11:27:24 +0100
-
s390-tools (2.17.0-0ubuntu3) jammy; urgency=medium
* No-change rebuild for openssl3
-- Lukas Märdian <email address hidden> Mon, 31 Jan 2022 12:55:03 +0100
-
s390-tools (2.17.0-0ubuntu2) impish; urgency=medium
* d/p/0001-libkmipclient-Fix-parsing-of-hex-values-for-XML-and-.patch
Fix parsing of hex values for XML and JSON encoding in libkmipclient.
(LP: #1938947)
-- Frank Heimes <email address hidden> Wed, 08 Sep 2021 09:10:54 +0200