nemos-team team mailing list archive
-
nemos-team team
-
Mailing list archive
-
Message #00249
[Bug 2043448] Re: [needs-packaging] nemos-dev-key
Hi, I saw that Laider addressed the last remaining issue called here
(the specific debian/copyright Indicator Weather copy-paste typo);
reviewing only this change compared to 1.7, I sponsored the delta.
Since this is a new package and the first time I am sponsporing it, I took a wider look and noted the following opportunities for improvement:
* the control file lists Isaac as original maintainer with his Canonical address; this should be removed
* I've personally just now subscribed to the nemos-team@LP mailing-list, perhaps Laider and others should too
* description of the package is a bit terse, should mention that it is used to sign the boot in generated images for the NemOS project
* subjective/personal perspective: I suspect this is broken down into too many very small packages; could probably be just a single package
* there is no explanation/documentation for the Provides; this is likely a case of someone being able to craft their own key-carrying deb and host that privately (would need to think of hosting this so that only CI/CD for image generation could get access to the private key!)
* there is no documentation as to where the pre-built files (rsa2048_private.pem, rsa2048_public.pem, u-boot-signature.dtsi) are coming from, nor how these were generated; these are fairly obvious (perhaps the u-boot device tree source snippet a bit less), but would seem useful
--
You received this bug notification because you are a member of NemOS
Team, which is a bug assignee.
https://bugs.launchpad.net/bugs/2043448
Title:
[needs-packaging] nemos-dev-key
Status in Ubuntu:
In Progress
Bug description:
[needs-packaging] nemos-dev-key (1.8)
For Erlangen project, we have to provide a nemos-dev-key to the customer via Ubuntu archive (universe).
The nemos-dev-key will be used for arm-trusted-firmware-s32, optee-os-s32, and optee-test-s32
URL: https://launchpad.net/~nemos-team/+archive/ubuntu/archive-target/+packages
Source code: https://code.launchpad.net/~nemos-team/nemos/+git/nemos-dev-key/+ref/ubuntu/devel
License: https://git.launchpad.net/~nemos-team/nemos/+git/nemos-dev-key/tree/debian/copyright
Notes: The nemos-dev-key [Noble]
This package is a dependency for LP: #2034642, LP: #2034648, and LP:
#2039037 to be signed.
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+bug/2043448/+subscriptions
References