Add fsverity release cert
The release cert helps verifying CTS in a release build. Bug: 153112812 Test: build, reboot, see a new key in /proc/keys Change-Id: I6d8f4af6b1b0c023b668e81b7a1c71c7583d93d9
This commit is contained in:
@@ -81,6 +81,7 @@ PRODUCT_PACKAGES += \
|
|||||||
framework-res \
|
framework-res \
|
||||||
framework-sysconfig.xml \
|
framework-sysconfig.xml \
|
||||||
fsck_msdos \
|
fsck_msdos \
|
||||||
|
fsverity-release-cert-der \
|
||||||
fs_config_files_system \
|
fs_config_files_system \
|
||||||
fs_config_dirs_system \
|
fs_config_dirs_system \
|
||||||
group_system \
|
group_system \
|
||||||
|
@@ -3,3 +3,11 @@ android_app_certificate {
|
|||||||
name: "aosp-testkey",
|
name: "aosp-testkey",
|
||||||
certificate: "testkey",
|
certificate: "testkey",
|
||||||
}
|
}
|
||||||
|
|
||||||
|
// Google-owned certificate for CTS testing, since we can't trust arbitrary keys on release devices.
|
||||||
|
prebuilt_etc {
|
||||||
|
name: "fsverity-release-cert-der",
|
||||||
|
src: "fsverity-release.x509.der",
|
||||||
|
sub_dir: "security/fsverity",
|
||||||
|
filename_from_src: true,
|
||||||
|
}
|
||||||
|
BIN
target/product/security/fsverity-release.x509.der
Normal file
BIN
target/product/security/fsverity-release.x509.der
Normal file
Binary file not shown.
Reference in New Issue
Block a user