blob: 0ac9ccab6af059f74fc1798b12ddbd312c009c0a [file] [log] [blame]
Patrick Williams520786c2023-06-25 16:20:36 -05001# short-description: Create an EFI disk image with systemd-boot and dm-verity
Andrew Geisslerd1d22e62020-10-16 10:14:32 -05002# A dm-verity variant of the regular wks for IA machines. We need to fetch
3# the partition images from the IMGDEPLOYDIR as the rootfs source plugin will
4# not recreate the exact block device corresponding with the hash tree. We must
5# not alter the label or any other setting on the image.
6# Based on OE-core's systemd-bootdisk.wks and meta-security's beaglebone-yocto-verity.wks.in file
7#
8# This .wks only works with the dm-verity-img class.
Andrew Geisslerdc9d6142023-05-19 09:38:37 -05009# Also note that the use of microcode.cpio introduces a meta-intel layer dependency.
Andrew Geisslerd1d22e62020-10-16 10:14:32 -050010
11part /boot --source bootimg-efi --sourceparams="loader=systemd-boot,initrd=microcode.cpio" --ondisk sda --label msdos --active --align 1024 --use-uuid
12
Patrick Williams03514f12024-04-05 07:04:11 -050013part / --source rawcopy --ondisk sda --sourceparams="file=${IMGDEPLOYDIR}/${DM_VERITY_IMAGE}-${MACHINE}${IMAGE_NAME_SUFFIX}.${DM_VERITY_IMAGE_TYPE}.verity" --use-uuid
Andrew Geisslerd1d22e62020-10-16 10:14:32 -050014
15part swap --ondisk sda --size 44 --label swap1 --fstype=swap --use-uuid
16
17bootloader --ptable gpt --timeout=5 --append=" "