Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

Bug#1055987: ITP: virt-firmware -- Tools for manipulating edk2 (ovmf/qemu-efi) firmware images

139 views
Skip to first unread message

dann frazier

unread,
Nov 15, 2023, 8:00:06 AM11/15/23
to
Package: wnpp
Severity: wishlist
Owner: dann frazier <da...@debian.org>
X-Debbugs-Cc: debian...@lists.debian.org

* Package name : virt-firmware
Version : 23.10
Upstream Contact: Gerd Hoffmann <kra...@redhat.com>
* URL : https://gitlab.com/kraxel/virt-firmware
* License : GPL-2+
Programming Lang: Python
Description : Tools for manipulating edk2 (ovmf/qemu-efi) firmware images

This is a collection of tools for edk2 firmware images. They support
decoding and printing the content of firmware volumes. Variable stores
(e.g. OVMF_VARS.fd) can be modified, for example to enroll secure boot
certificates. Tools included:

virt-fw-dump - Decodes and prints the content of firmware volumes.

virt-fw-vars - Print and edit variable store volumes. Currently focused on
enrolling certificates and enabling secure boot.

virt-fw-sigdb - Print and edit EFI signature database files.

host-efi-vars - Read efi variables from linux efivarfs and decode/print them.

kernel-bootcfg - Manage efi boot configuration for UKIs (unified kernel
images) when using direct boot (without boot loader like
grub or systemd-boot).

pe-dumpinfo - Information dump for pe (the format used by EFI) binaries.

pe-listsigs - List signatures and certificate chain for pe binaries. Can also
extract certificates & signatures.


My immediate motivation for packaging this is that, as the maintainer of
the edk2 package, I need to remove some deprecated image types - specifically
the OVMF 2M images. These utilities can help users migrate their VMs to
supported types by dumping/loading the variable stores.

In the future, I expect edk2 packaging to evolve into using these tools
to modify images out-of-band, instead of launching QEMU instances to
modify them in-band as part of the build.

Luca Boccassi

unread,
Dec 7, 2023, 4:10:05 PM12/7/23
to
On Wed, 15 Nov 2023 05:54:23 -0700 dann frazier <da...@dannf.org>
wrote:
Hello Dann,

I find myself in need of this package for some CI usage as well, are
you planning to work on this soon? Do you need any help?

Thanks!

--
Kind regards,
Luca Boccassi
signature.asc

dann frazier

unread,
Dec 17, 2023, 11:50:05 AM12/17/23
to
Hi Luca,

Apologies for the delayed response. I believe I have completed the
packaging and am prepared to upload:

https://salsa.debian.org/dannf/virt-firmware

Feel free to review and let me know if you have any feedback.

-dann

Luca Boccassi

unread,
Dec 17, 2023, 2:00:05 PM12/17/23
to
Looks good to me, thanks. Ship it!

dann frazier

unread,
Dec 17, 2023, 3:00:04 PM12/17/23
to
Shipped :)

-dann

0 new messages