| 3 Dec 2024 |
Moritz Sanft | You can also specify CONFIG_MODULE_SIG=n for that. As for ARM-specific signatures, I'm unaware. | 15:46:56 |
@statecode47:unredacted.org | In reply to @msanft:matrix.org You can also specify CONFIG_MODULE_SIG=n for that. As for ARM-specific signatures, I'm unaware. Seems reasonable, but this way the diff would still appear, because the official images are built with signatures. | 15:47:33 |
| 4 Dec 2024 |
@statecode47:unredacted.org | Ended up being able to locate and delete the signature/certificate part of the image by using binwalk and dd. | 11:33:42 |
raboof | Nice! And the rest was bit-by-bit identical with upstream? That's pleasantly surprising! | 11:42:10 |
@statecode47:unredacted.org | In reply to @raboof:matrix.org Nice! And the rest was bit-by-bit identical with upstream? That's pleasantly surprising! Almost, there's only random gibberish left in a specific byte of the file, which doesn't bother that much, but note that I'm testing reproducible builds of GrapheneOS. AOSP's build system is relatively good in terms of reproducibility and they use Bazel to build the kernel. | 11:46:14 |
@statecode47:unredacted.org | Would it be possible to submit CI tests to the reproducible-builds.org infrastructure? | 20:18:05 |
@statecode47:unredacted.org | * | 21:14:37 |
| @ironbound:hackerspace.pl left the room. | 22:12:38 |