Bug 2094055 - Bump coreos-installer for s390x Secure Execution
Summary: Bump coreos-installer for s390x Secure Execution
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: OpenShift Container Platform
Classification: Red Hat
Component: RHCOS
Version: 4.11
Hardware: Unspecified
OS: Unspecified
medium
medium
Target Milestone: ---
: 4.11.0
Assignee: Benjamin Gilbert
QA Contact: Michael Nguyen
URL:
Whiteboard:
Depends On: 2093126
Blocks:
TreeView+ depends on / blocked
 
Reported: 2022-06-06 17:25 UTC by Benjamin Gilbert
Modified: 2022-08-10 11:16 UTC (History)
5 users (show)

Fixed In Version: coreos-installer-0.15.0-2.rhaos4.11.el8
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2022-08-10 11:16:21 UTC
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2022:5069 0 None None None 2022-08-10 11:16:36 UTC

Description Benjamin Gilbert 2022-06-06 17:25:45 UTC
Bump coreos-installer in 4.11 to add s390x Secure Execution support.

Comment 1 RHCOS Bug Bot 2022-06-27 15:42:53 UTC
This bug has been reported fixed in a new RHCOS build and is ready for QE verification.  To mark the bug verified, set the Verified field to Tested.  This bug will automatically move to MODIFIED once the fix has landed in a new bootimage.

Comment 2 jschinta 2022-06-30 13:40:01 UTC
Tested with rhcos-411.86.202206301021-0-qemu.s390x.qcow2, the rpm is the correct version and rdcore has the --secex-mode flag:


[core@cosa-devsh ~]$ rpm -qa | grep coreos-installer
coreos-installer-0.15.0-2.rhaos4.11.el8.s390x
coreos-installer-bootinfra-0.15.0-2.rhaos4.11.el8.s390x

[core@cosa-devsh ~]$ /usr/lib/dracut/modules.d/50rdcore/rdcore zipl --help
rdcore-zipl
Runs zipl

USAGE:
    rdcore zipl [OPTIONS] --boot-mount <BOOT_MOUNT>

OPTIONS:
        --boot-mount <BOOT_MOUNT>    Boot device containing BLS entries to use
        --secex-mode <SECEX_MODE>    Zipl mode for Secure Execution [default: auto] [possible values: auto, enforce, disable]
        --rootfs <ROOTFS>            Path to rootfs
        --hostkey <HOSTKEY>          Path to hostkey
        --kargs <KARGS>              Extra kargs
    -h, --help                       Print help information

Comment 4 RHCOS Bug Bot 2022-06-30 22:16:24 UTC
The fix for this bug has landed in a bootimage bump, as tracked in bug 2093126 (now in status MODIFIED).  Moving this bug to MODIFIED.

Comment 7 Michael Nguyen 2022-07-05 19:53:31 UTC
Moved to verified based on pre-verification.

Comment 8 errata-xmlrpc 2022-08-10 11:16:21 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (Important: OpenShift Container Platform 4.11.0 bug fix and security update), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2022:5069


Note You need to log in before you can comment on or make changes to this bug.