redhat: hmac sign the UKI for FIPS

Dracut's FIPS module contains kernel integrity check for traditional kernels: /boot/vmlinuz-uname-r's HMAC is compared to /boot/.vmlinuz-uname-r.hmac which is created duing kernel build. In preparation to enabling FIPS mode support for UKI, create HMAC for it too.

For the reference, other pieces of the puzzle:

Signed-off-by: Vitaly Kuznetsov vkuznets@redhat.com

Edited by Vitaly Kuznetsov

Merge request reports

Loading