)
-def certificate_common_name(state: MkosiState, certificate: Path) -> str:
+def certificate_common_name(certificate: Path) -> str:
output = run([
"openssl",
"x509",
pesign_prepare(state)
run(["pesign",
"--certdir", state.workspace / "pesign",
- "--certificate", certificate_common_name(state, state.config.secure_boot_certificate),
+ "--certificate", certificate_common_name(state.config.secure_boot_certificate),
"--sign",
"--force",
"--in", input,
cmd += [
"--signtool", "pesign",
"--secureboot-certificate-dir", state.workspace / "pesign",
- "--secureboot-certificate-name", certificate_common_name(state, state.config.secure_boot_certificate),
+ "--secureboot-certificate-name", certificate_common_name(state.config.secure_boot_certificate),
]
sign_expected_pcr = (state.config.sign_expected_pcr == ConfigFeature.enabled or